URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: www.shalome.it
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2020-10-22 16:00:04 UTC
Total malware sites :1
A record(s) observed :12

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-08-21 21:29:37 34.120.190.4848.190.120.34.bc.googleusercontent.comNot listedAS396982 GOOGLE-CLOUD-PLATFORM- USyes
2025-08-21 21:29:37 34.149.120.33.120.149.34.bc.googleusercontent.comNot listedAS396982 GOOGLE-CLOUD-PLATFORM- USyes
2025-08-23 01:10:08 34.149.36.179179.36.149.34.bc.googleusercontent.comNot listedAS396982 GOOGLE-CLOUD-PLATFORM- USyes
2025-08-21 21:29:37 35.227.194.5151.194.227.35.bc.googleusercontent.comNot listedAS396982 GOOGLE-CLOUD-PLATFORM- USyes
2025-08-21 21:29:37 34.160.17.7171.17.160.34.bc.googleusercontent.comNot listedAS396982 GOOGLE-CLOUD-PLATFORM- USno
2025-08-23 04:53:52 34.160.81.203203.81.160.34.bc.googleusercontent.comNot listedAS396982 GOOGLE-CLOUD-PLATFORM- USno
2025-08-23 04:53:52 35.244.153.4444.153.244.35.bc.googleusercontent.comNot listedAS396982 GOOGLE-CLOUD-PLATFORM- USno
2025-08-23 01:10:08 35.190.31.5454.31.190.35.bc.googleusercontent.comNot listedAS396982 GOOGLE-CLOUD-PLATFORM- USno
2025-04-28 13:47:53 35.214.241.112112.241.214.35.bc.googleusercontent.comNot listedAS15169 GOOGLE- NLno
2020-11-19 21:17:03 104.197.108.160160.108.197.104.bc.googleusercontent.comNot listedAS396982 GOOGLE-CLOUD-PLATFORM- USno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-10-22 16:00:06https://www.shalome.it/wp-includes/ODY0R85NLGZC...Offlinedoc emotet ext epoch1 heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-10-23 07:21:08c201dc04bed84411f216935bcad9296fdb3e99daa909ead17006846758dc8346docHeodo
2020-10-23 06:55:58dc449047057bb16de95db4e34192d9da2711671aae299bc381e7a5ab2f37cce3docHeodo
2020-10-23 06:28:19044fbfe6a7af7880a4a79b11351a8b657219c5717280368151dc6564e7b81715docHeodo
2020-10-23 06:01:51eddb68023ee76dfd8b79f2f5c37d4e7c4edcfb6b994803e737f53b7922c88aa2docHeodo
2020-10-23 05:42:468a528d954a8f9a3fbcc3da7a1888a95c3a827ef426f2ae24e57ca2e774f0b803docHeodo
2020-10-23 05:26:3655dacaf8b4f0198a5a10b579913184626f2d3025e754b3d2ee80cb1fdd66a5f6docHeodo
2020-10-23 05:11:469cdddbc4ecd7167828b1ea5ef660f244b1230cc9dddb6c3f4843e1e0be81c0a7docHeodo
2020-10-23 04:56:15b333f4edbcd85640a50a2cacf9a116caa96e2026f2d2089c90b9c1b72e929581docHeodo
2020-10-23 04:24:2279756d922c1f4aeb494ec62b223c6a92ead333f7bca46e8754bb183dee9ddde8docHeodo
2020-10-23 04:09:18d81d19a33f0ac7b353c71ae0ee3bbc4fe3072d9ac384f22725e48503df8d8260docHeodo
2020-10-23 03:45:3890437b448e9a09226c660ce8e15dd51df99b897faac6807c8191ceb23a6248afdocHeodo
2020-10-23 03:17:2931a65c0934f1ba04e9f8ff09dc95bd842b64d925bf09ee93fd20896f040b8c76docHeodo
2020-10-23 02:54:15e43dfdcd88770dbd138a35c2776f6343edf13246fcb951b6a95aefc628f6bcb4docHeodo
2020-10-23 02:36:24d894c7ca5f9545869430263459916b228a3d821ede8558416f5365356c0eed26docHeodo
2020-10-23 02:08:41467cff3339922c5222b7cf47bc2ed154aa32c672291b072854671117da5ee6fddocHeodo
2020-10-23 01:50:55e7319cc4c419c8004d668967d94b04e0feb440b4e53bd48102d7172d817def89docHeodo
2020-10-23 01:36:322c4575f92dea12a74d983f35de5c3395d1372a0a14776a90350250ad0eaa6be0docHeodo
2020-10-23 00:53:580c55dae4a75373696f7af6d0a7db5092fbe4f15c3c92d8dc9433949837b5db92docHeodo
2020-10-23 00:42:56e4375d0a2ba932718dec66682d272815c527e91c52f8fd834f2b13a199c60e95docHeodo
2020-10-23 00:22:20ad6cfc407cde73e657b54152748a9e48b32cf677d531b39dc61de76e4a0626cadocHeodo
2020-10-22 23:55:223a9457301ccae0550d3264295b9c9e32bfe72cf042698300e4c6cce9a40b9aa0docHeodo
2020-10-22 23:11:16de17fe1232b69d5a889e5478613d1bc67355827d803bcec0779a120a0c933f51docHeodo
2020-10-22 22:43:49f0e2d518a6265cccb1883da48d48dc033fa310abe31ed3218a1c0a6509f7085adocHeodo
2020-10-22 22:10:14bf5aca74ec441467c5936928f2e58be49eccb72333a01b1cd294fce69eb1e453docHeodo
2020-10-22 21:35:36b1008c8c9b01a91bdec5cdc1d007818db8d185b24c77cf53ac433a3168a14e05docHeodo
2020-10-22 20:51:5244680e4b146ceda2dbbdb6e68c5389c0ad6230f8cda0600f065a67df09e0ff3ddocHeodo
2020-10-22 20:34:07c34461394bb60cae8905373f5c68ad3e5df587723329161d1cfc4befe40b23c1doc Heodo
2020-10-22 19:57:45d5474138a81425e37468ee96b8d51972e4f39cb3485625f90cedb9f9eec62e4cdocHeodo
2020-10-22 19:36:26cd5beffd387885c6bf015a3c8a0d4523936d06ae88179a8b4a50ea4ef7d5b08fdocHeodo
2020-10-22 19:11:43cda96dde7e199b39538ccd57b5942933bb0483a8a3f9cae8b7a86b569594f8d2doc Heodo
2020-10-22 18:54:54d8e5bdb5b00ab131084dd83a4173048d2a9956bcde30d8d4433e59d13ec9e56fdocHeodo
2020-10-22 18:18:31a4d861afdac1000bee2173c88a7d9a8ca3d0a5320ca14b5f3094722b0b26237bdocHeodo
2020-10-22 17:56:54aba2852c2ede40d00712d4f0bf753af374f10fa332d165c7bf62b40803c6b393docHeodo
2020-10-22 17:28:12b02a934a10f405b76ee0aaa46e19847d9ecf1718d49ef72233e83d4c5468a626docHeodo
2020-10-22 17:02:385f53812706f7dfa6933f0857792ec822cceb05736e9d6004339eac9f037cd956docHeodo
2020-10-22 16:57:442b5d780260b9baa4b4726bdeda7bd5186b31885b6b7976d84b313b780f302ab0docHeodo
2020-10-22 16:22:02e44b84508d366076321f256bb082ba859ee1a68f10f660fd01fd3f567dfcd192docHeodo
2020-10-22 16:00:06f44f53a7b082f4a968c9f08ced53caacd6c027147a747310bdde39a5ecf580dfdocHeodo