URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: dannier.me
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2020-01-30 16:44:33 UTC
Total malware sites :1
A record(s) observed :3

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-04-27 11:17:59 13.248.213.45a67c48129651a0940.awsglobalaccelerator.comNot listedAS16509 AMAZON-02- USno
2025-04-27 11:17:59 76.223.67.189a67c48129651a0940.awsglobalaccelerator.comNot listedAS16509 AMAZON-02- USno
2020-01-30 16:44:50 35.185.236.105105.236.185.35.bc.googleusercontent.comNot listedAS396982 GOOGLE-CLOUD-PLATFORM- USno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-01-30 16:44:50http://dannier.me/wp-includes/Document/c8g25441...Offlinedoc emotet ext epoch2 heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-02-01 08:42:508ef3a86989c9654cd7b0914ab743459ad98702ea960612c66e331f858a791eb0doc 
2020-02-01 07:29:49da2dfdde77d319fa7d1a1326ca2ce99142a8d194e609eba08264875f442e240bdoc  
2020-02-01 07:10:5112bc283594bd2540d46f51658970e354cadec045dd90a541cdfd238fdc096a52docx  
2020-02-01 05:58:5633a89c876ed4c1f54ac3ebf60cd427562e652b39263734b693beb3be9e6c67ebdocx  
2020-02-01 04:31:11ac59c732daa8085badba3321495b6415cec136aaceaf03e509380f2d2742866bdocx  
2020-02-01 03:21:08c117593f754a9dafdfb9c3bcaf46d70eda6bedf7ee811038f00aad85aa541355doc Heodo
2020-02-01 00:58:08bac8c7f92ba1d7ad83ad8ae1a8ef275549f05101769985e529e24ce364f052f4docx Heodo
2020-02-01 00:09:2067014fca7bec38816b162f8568680c49b61d221b6f635322480b97f920b30e20docx Heodo
2020-01-31 23:57:142ff7a8002b4398fe3ca4905a4abef5b229f8d8f3faa9aa284bf542bc9ad56188docx  
2020-01-31 22:26:1278189db51d029cba090eb74853c255ae01f91ae08c6215195b58fa1442c247e8docx Heodo
2020-01-31 21:19:143f8f8f620cf256fc8c738bf6eb7cca17c556c295db6adbd62ce74649e37f555edocx Heodo
2020-01-31 21:05:3414dd97e3653541ca32bb1cec005278756058eb08b4edd36fee7f407fbdbf709adocx Heodo
2020-01-31 19:50:5677863724dd91af4ef0faf3ac63c9c34e7506270efef4ab9927609445c80609e7docx  
2020-01-31 18:20:047c8543735af5be800d90c362d0dd4020be4d86fc1894f83172685df7f02b8c00doc  
2020-01-31 16:49:01c65e54d8fe1847d0d081c3058842c5b0254a355c41756816944d2fb8fcf08a54docx Heodo
2020-01-31 15:25:04542ec6c1bd107f007a478590abc8e6c5e0419d13377d1fbabe68a4f685e6aa39doc Heodo
2020-01-31 14:07:531d15c420f5149dd31996e11e3d746188181be53557d7956237b8252c9630cd7adoc Heodo
2020-01-31 14:02:136d437b0cf2e3835af4e92b39afa8b409ad01a51cb100e389f0217d4ea3573051docx  
2020-01-31 13:03:4332611bf81a7c08569474e590f6401621b66584f95d22d97226fd7e43a4b84365doc Heodo
2020-01-31 00:44:41c969eb2d5bd48cfc551ca20b6cc978615a05f774a4b2f6573319389fdc1a8ba1docx  
2020-01-30 23:30:4438204212a0f251cce3f9bbbf3ba8c8e3ff7f3fe44216b48f6ad339e691500d16docx  
2020-01-30 22:02:2476483b424ad76c877f0c7f4e62405edc7e07a17978fcfb4c2b9087196d568a1cdoc Heodo
2020-01-30 21:20:37e9c9e0f32cd9ba8c142fafe9df47db48f9617dc8c23e0f9a9a944d8b20ea5c7adocx Heodo
2020-01-30 20:34:28c7710490083776e7b352f36bc4922c56479b54e76458d8d20a85be4f7b4af7a7doc Heodo
2020-01-30 19:03:1211850be3ffe56cc8d2b4dba455475beb00c90133752d3e329b2ce202a87bab7bdoc Heodo
2020-01-30 17:44:433476381f8a76d5131391144afc9072ad6ffb33c7cdd6aeeb721600c5743992e0doc  
2020-01-30 16:44:50a3c8b39025cc4ca4f3686f3181ad950b6635be8c13900404c4b9f26023c35a57doc Heodo