URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: danilogarro.it
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2020-08-12 17:57:05 UTC
Total malware sites :1
A record(s) observed :5

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-04-29 00:04:11 104.21.56.195Not listedAS13335 CLOUDFLARENETn/ano
2020-10-08 13:39:11 172.67.155.210Not listedAS13335 CLOUDFLARENETn/ano
2020-08-12 17:57:06 80.211.145.43host43-145-211-80.serverdedicati.aruba.itNot listedAS31034 ARUBA-ASN- ITno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-08-12 17:57:06http://danilogarro.it/27I2g7vdUI/Documentation/Offlinedoc emotet ext epoch2 heodo ext spamhaus

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-08-13 06:10:27ba510b5a0f97430a09efbd12acbb4c1be869e71e678adf5fa0b5498fb477068edocHeodo
2020-08-13 04:48:29f3288815441008b2291c6b17d597d58fe606f7475c4641bacba49ad56c1b1142docHeodo
2020-08-13 04:20:17d3cbf8eb26742271a0281233827b52ab52334bef5335d0f8a27c9db613de55c7docHeodo
2020-08-13 04:01:090938a3eb8d86fa634cbaa1f643bd2c6cafcdacba202e4683cf7245705bd11fb3docHeodo
2020-08-13 03:46:28c2bb5e128810c06abd15ad3ef0bc95622c20da154ca500892972305c94feabeddocHeodo
2020-08-13 03:45:25294dc4d0897b43e65d8e7c4ab761281fae2d7ff62a16dd47e9b7731019ed0c21docHeodo
2020-08-13 02:13:502ec1025c3a44b35de74853b22998ea439d6eb5f0d92d9065256692f0deadcbd9docHeodo
2020-08-13 00:41:435ec2a412f6729dbbd84453b84c85ac56f93e865a1900eb514efedefedc56467fdocHeodo
2020-08-12 23:10:46a9af06ae735677ec282b4a66f7bc85a343dc7c71491658673fed6150e05ef3c5docHeodo
2020-08-12 22:53:57d0ecee1cad0e97af4b127dc23861ffbee329ef4a465840447b48e554801e6081docHeodo
2020-08-12 21:21:20c872e36dabcc02d5ca6d5a1c7ff09a8673509c3a45dc42978988f19f053fffaddocHeodo
2020-08-12 21:04:46a60558a7dfbe4e862f3eadcdb17ae60763476f2941a79db0ba679e0756cf4e18docHeodo
2020-08-12 20:45:13cfec1c4aeca2bf10496b8ae3be0b77a9dfade44f1503c09398114731db0e92b5docHeodo
2020-08-12 20:45:075ec93d8ade8ce137e0a4718134228f587451d59aeaa2e27d24713ccc4866e8eddocHeodo
2020-08-12 20:17:24448b77551e8ab272663dac5ccf4cad4be8b7dcfc1759a2859785754aa44d285adocHeodo
2020-08-12 19:59:38c75a7753aba5fdf5703e46cfe6e6a53ceb7df3394f932fc521343b25ab0b2388docHeodo
2020-08-12 19:35:3786a7080b18d0d16fd7b1505799c006382ff034fb5dbb65b0e933ab56cee84215docHeodo
2020-08-12 18:59:194b94ba4ad2c65349c09e18ba049dd76f5b61a5491812b3ea60961945d1866446docHeodo
2020-08-12 18:35:4701817dd6570dc258829c88ceab491052f8376cc5071286d89c5ef07b621f96dddocHeodo
2020-08-12 18:14:1897feccf3c91f6d0275ecafdf2bb2d3a869dbd30f1ed7e87db533ac6a63678fb5docHeodo
2020-08-12 17:57:067bd4fc776745042d71f4ca6659f9e0f682cbf132649bf8c01f0a42657d0b81e5docHeodo