URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: idrogeolab.it
Domain registrar: n/a
Domain registration date:2002-01-24 00:00:00 UTC
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2023-04-11 13:48:23 UTC
Total malware sites :3
Online malware sites :0 (0%)
Offline Malware sites :3 (100%)
A record(s) observed :2

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2023-06-20 16:15:28 68.183.219.226Not listedAS14061 DIGITALOCEAN-ASN- DEyes
2023-04-11 13:48:34 81.88.52.22lhcp3022.webapps.netNot listedAS39729 REGISTER-AS- ITno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2023-05-30 16:51:13https://idrogeolab.it/im/?1OfflineBB30 geofenced js Qakbot ext USA zip Cryptolaemus1
2023-05-25 12:00:16https://idrogeolab.it/oaem/OfflineBB29 geofenced js Pikabot Qakbot ext USA Cryptolaemus1
2023-04-11 13:48:34https://idrogeolab.it/ao/ao.phpOfflineBB23 geofenced Qakbot ext qbot ext Quakbot ext R89 TR USA wsf zip Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2023-05-27 20:36:48554f63cf90efd48c4f9f12f45009fd6b4b8cdf30e448cd87535db81125dca4f5zip  
2023-05-27 17:40:307a7a06cfcaaac758feb46130f040151cd34231c780450565ff5a27ac4a3deab7zip  
2023-05-27 14:38:245c95d74a8f4b5b38aa9e4bc0feaeeb63278de2e3ed6b6269f21e82596382dc15zip  
2023-05-27 14:06:0274dc850934bde1dbf5296898cfc577bf128d7fbc56545c7929c50aef7c725ec0zip  
2023-05-27 09:51:57e36ed36f59d9f591f6cdd2bd38a28cd405a7270c3d17c7e7ee8f0eeed51b58a4zip  
2023-05-27 08:18:36d61e8aefe1de0fa7df53a790207c9b646e7740015514568d6c8f984f9a03f213zip  
2023-05-27 07:10:430c4bcb4e446eeb924946b82b4b5044b7f40f1ba0137166871487bce23207020fzip  
2023-05-27 02:22:21c40adcfb00e3a2342bcdc0cfddac2992584a7b09623a86589cdad5cc88baf3a3zip  
2023-05-27 02:06:118e2608a33af421b00c3c5ac059965bfd07807a88e8dc835af31a3a35039b36c8zip  
2023-05-26 23:51:22c8c0e42335d2cdfea7f50e3366110b20ae3a1ec09eae3ab14c102ce450a8c445zip  
2023-05-26 22:38:3035ccc3ead43c81f9ec75bcea373dcb0617854daba6e773ed31aa9cbd8be19ac9zip  
2023-05-26 20:06:27b1646fa3136c4fa3646607578fcd786b51d264ed2f6113c1445d3920f8cc2c82zip  
2023-05-26 18:38:5322c6aeec61abc8544e82a1654cb1f1b1ca67402e7c57a992b760299c0a0c8032zip  
2023-05-26 15:07:153ed2185fbd1c6200de3b6c7377fa8b50dc7bc7781a3dbf30df6b56b8ddc4a056zip  
2023-05-26 13:48:27c1a5657dcd2a12dbb7b1dca5847963e72661f8aa2059ccb16233f656101f9c9fzip  
2023-05-26 10:26:284bd30ab0cb4ccf1001cd067868407244ca9335d893108c9afe7859b7bbd90c67zip  
2023-05-26 07:59:154fe32958940ced183573e6d8ad9006b33bc4214dd172c2444987b8616c487514zip  
2023-05-26 06:09:436655567cd9c19359a968fe4f4cd3f383a5476572fa207b3f1872ac1e0e28fd2bzip  
2023-05-26 04:41:31f3920a7006602ca491ae98ebdbbb0e959684bf7a591c35547c9564b01be31d95zip  
2023-05-26 03:22:3493d4354431b3e348d540575eb7ca40710ec6421ca3507a753a23027dfc6fd7e7zip  
2023-05-26 02:10:119dc5367565f24c2cfaa99d38a11602cbc648c42415f40c1294182a9debe1e7d5zip  
2023-05-26 01:13:04f3660b535d433a943447087142d7d7926a1a1121f704a75367865abe01180b0ezip  
2023-05-25 23:07:00b7b72574296dcca82af706abb0972d151cdc86a171e2a08398fb0c35d64d39cezip  
2023-05-25 21:47:58c451ff54f253df1412fec3913fc1b216484f6a9bc69d95443fd40ceee9056bc6zip  
2023-05-25 19:55:39c8d9d7b0f3b124f9b4c34c014f6e3d0f4f7206064db553358e60c1ab03f817e2zip  
2023-05-25 16:51:35df08c1da8851745c641eaf64d4b930804f8b1e200ff4da8fcbb3f0b483057b6bzip  
2023-05-25 15:04:0701f1b2ff4e523ea5ae56c8439962a030f05c1ee4096be5d93231a2830d22378bzip  
2023-05-25 12:00:163257e69fb1e0c27d7cac1ce85f2c4156797be1979e33744e991a1e1998a3b281zipPikabot
2023-04-12 02:31:08f4d4ebfe824d0589436e040ad4addad2cf3267b209f34afbdd49bc5bec297531zip Quakbot
2023-04-11 14:27:11d9ab05e9e0b62f42c0686686632d5db81577bf8becc3e60fce5721da409688aezip  
2023-04-11 13:48:2811a9949cbf83443960b2cd17ef78d729f1aff2f4b079ca1c6d55a28ee7582674zip