URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: ecoagrodunarea.ro
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2020-08-11 13:51:03 UTC
Total malware sites :1
A record(s) observed :1

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2020-08-11 13:51:04 89.45.173.15rohost.comNot listedAS5606 GTS-BACKBONE- ROno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-08-11 13:51:04http://ecoagrodunarea.ro/cgi-bin/DOC/Offlinedoc emotet ext epoch2 heodo ext spamhaus

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-08-12 09:31:1014967b4d7ed265d47e03452c19a7c3d048828bfe37abacf2f56782e7eeeeab23docHeodo
2020-08-12 09:06:1316d2a267cba033c59963d01757e9800048ac1fbcf7cb53595dad21ee5bb027c6docHeodo
2020-08-12 08:31:149f355154b3f108769ec0855431cb69c5172916d78b07a8d79ff6da2f49371b6adocHeodo
2020-08-12 08:13:1281c27d10e37bd700d8cee11eba8d01d2bda91b7743083fa7a4e51f3f169ef0c5docHeodo
2020-08-12 07:52:02214f91b9b3ab2ea28b14536241901516f9141df4e12fd3b2ce52088fef0a3734docHeodo
2020-08-12 07:30:09fe14ae5d76ac1ccafc67f474efe315000dadae344444a44c9200e04e94ebbdaddocHeodo
2020-08-12 06:44:0505fb55b118852bdde2c76754d2d2b2700accc08481280cc2309ab985aeb86c06docHeodo
2020-08-12 04:32:37455f02233220edb99d4f99f02ec20a5ad8b3a157bacaeae2dcac14f707613869docHeodo
2020-08-12 04:17:0129a8f854081e5f20b6709851863472cd33a1863fbed4867153edf6fcc5e86dc8docHeodo
2020-08-12 02:45:457575d9ebd2153fdfbf4c1626ec4769e8cdef40ea8e2990670f1cc5cba71a2e7edocHeodo
2020-08-12 02:29:514c3eddd6a41f348b80609e91f83e3a9e22818758105ce3db1de70777baeae682docHeodo
2020-08-12 00:59:01358176ae69d49cbdc29ce5f8965efe9952253949970d9de4e8f09f46c488e6ecdocHeodo
2020-08-12 00:43:48b06fa4a03274712b0d1bea0d2a5d1afc2c71541acb80b1054d31b661b67514eadocHeodo
2020-08-12 00:30:37e4d1deaefa7f905c5ce7490867ae09ff2d50fdf4162f102e276653c1c46eeab6docHeodo
2020-08-11 23:42:355a95e436c4df9dfb41496c96489d1bddf6db2c7d54ccf0761eb61ef1af9c83a0docHeodo
2020-08-11 23:00:29cafe9be1769c83fbeb348a49f0c1e0512df75007fbca4689516ce442fa72b54edocHeodo
2020-08-11 22:50:25854be831ad01f15c5a5cc2f0f253d059b2a9faaac66db5b90fe51b3daa401c57docHeodo
2020-08-11 22:32:091aac25866333e7f77dc237137353a0a65ce189972d87658229eae96e3037bc68docHeodo
2020-08-11 22:17:371d09b28a4d454266d52d7d2e5b9aeab2bbf43839ec33c9a7221eafae3c28c067docHeodo
2020-08-11 22:02:242adc586ea7a59715aa3226b8b211a8d39fdc6b40691c30e3a96962d2c041688ddocHeodo
2020-08-11 21:48:16bb6e3d0f0394c94254fd90afa543277a215c6834d045f0c20aabd990cb68856ddocHeodo
2020-08-11 20:15:09b9be58269c46d1dba55d08e51cf5186e5c6669171b0b96d6bf2ca5b7558af124docHeodo
2020-08-11 19:57:43597ed34e38d2b0c2313a9d95a421d70af23bd88d60c66de8e04f4127d425c6e3docHeodo
2020-08-11 19:42:440dc77319f898db1037b996e421c171d0ddbd13166a8b589ab1da97b8bcfc99cddocHeodo
2020-08-11 18:12:208ba6e22d298dc4a7b8722b5e15bfb9f8b4128d0fba504cff7fd4acd55999eba5docHeodo
2020-08-11 17:54:438e5f3490181127db4ae19a0c19a2aab3233016bcc64272ec836a68426ed0ae89docHeodo
2020-08-11 17:40:136c042835d406a08afd589550530dbc4586f9490fb02cf9cf77a0695097190ebcdocHeodo
2020-08-11 17:22:452e6ff6d6098f2b63d436caef9146a587a4906131d0cb324b675b959be4d88598docHeodo
2020-08-11 15:05:345c9f6ed0588b0602480f2c93de80251f486d01289c5732e8fcdd7f5df8ca313adocHeodo
2020-08-11 13:51:041d1300efc6cb899350ac45e811810a274d09d6c0046413390aa12d7bf2f94803docHeodo