URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: travaglini.net
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2020-08-06 09:51:02 UTC
Total malware sites :2
Online malware sites :0 (0%)
Offline Malware sites :2 (100%)
A record(s) observed :2

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-04-30 08:04:44 195.34.73.15uranus.safe-order.chNot listedAS41562 Host4all-AS- CHyes
2020-08-06 09:51:03 195.34.73.25neptun.safe-order.chNot listedAS41562 Host4all-AS- CHno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-08-12 16:50:07http://travaglini.net/blog/swift/Offlinedoc emotet ext epoch2 heodo ext spamhaus
2020-08-06 09:51:03http://travaglini.net/numismatique/public/ihymj...Offlinedoc emotet ext epoch2 heodo ext spamhaus

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-08-12 21:21:23c872e36dabcc02d5ca6d5a1c7ff09a8673509c3a45dc42978988f19f053fffaddocHeodo
2020-08-12 21:05:10a60558a7dfbe4e862f3eadcdb17ae60763476f2941a79db0ba679e0756cf4e18docHeodo
2020-08-12 20:45:13cfec1c4aeca2bf10496b8ae3be0b77a9dfade44f1503c09398114731db0e92b5docHeodo
2020-08-12 20:44:565ec93d8ade8ce137e0a4718134228f587451d59aeaa2e27d24713ccc4866e8eddocHeodo
2020-08-12 20:17:25448b77551e8ab272663dac5ccf4cad4be8b7dcfc1759a2859785754aa44d285adocHeodo
2020-08-12 19:58:13c75a7753aba5fdf5703e46cfe6e6a53ceb7df3394f932fc521343b25ab0b2388docHeodo
2020-08-12 19:36:1286a7080b18d0d16fd7b1505799c006382ff034fb5dbb65b0e933ab56cee84215docHeodo
2020-08-12 18:59:194b94ba4ad2c65349c09e18ba049dd76f5b61a5491812b3ea60961945d1866446docHeodo
2020-08-12 18:36:0701817dd6570dc258829c88ceab491052f8376cc5071286d89c5ef07b621f96dddocHeodo
2020-08-12 18:14:1397feccf3c91f6d0275ecafdf2bb2d3a869dbd30f1ed7e87db533ac6a63678fb5docHeodo
2020-08-12 16:50:07b3f9cb53841650e0c5ef1d75cedd684040131e00b12f57a3505c0cea173a7626docHeodo
2020-08-06 11:37:43fc55cdec1587494b3683916ba5c6b6679011e4cdb28f218c292abe9e23efc1b7docHeodo
2020-08-06 11:08:37751d0f8d16eae467cda2596b400afebcba628d7a0dd6cb876b1a2963acd5c8a6doc Heodo
2020-08-06 10:48:450f87cb5d15a40c0c146f5f6d34dad880be5bc85758f72b797ea8bffcb781e022doc Heodo
2020-08-06 10:27:29cc324cd79b2712fc61b22f7c63489ec231fc8149bd01b67d17cf7bd46e820202doc Heodo
2020-08-06 10:04:4674b5a5e2f1ca9e2ce5b60eb11efe7430653d3bc4330800836b015f96c21916cfdoc Heodo
2020-08-06 09:51:031474aff8a131ee5682121e15c8bd46ae84e87e0f1c85b6a604a77b99d45a62b5doc Heodo