URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: agxx.de
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2021-01-05 02:38:03 UTC
Total malware sites :1
A record(s) observed :3

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-04-28 10:31:07 144.126.245.232Not listedAS14061 DIGITALOCEAN-ASN- DEyes
2021-02-27 15:23:51 64.225.94.65Not listedAS14061 DIGITALOCEAN-ASN- DEno
2021-01-05 02:38:03 134.209.253.31Not listedAS14061 DIGITALOCEAN-ASN- DEno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2021-01-05 02:38:03http://agxx.de/wp-snapshots/PPmt2KQDfcIgpSF9s9a...Offlinedoc emotet ext epoch2 heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2021-01-05 08:41:28d952d30c3ef25db2566e7fd14d90400901e586d5002d43cd3992b237e631675edocHeodo
2021-01-05 08:31:4120c4e385c38815675f3a8d97965e53c8b8f55f5034eff90bc8847142f5a20ad2docHeodo
2021-01-05 08:18:16e243ac7c1ea7d9335bf414580bef9417d41b9e85f688cd22afff509c0c40db77docHeodo
2021-01-05 08:10:4801d887453babfa19df36fb28b167d112a2155ed05f30a8613c55daeced863fc2docHeodo
2021-01-05 07:55:21fc54284371340d5ee0e9de0094b70280b063294cc1408866edeb19387215462adocHeodo
2021-01-05 07:34:59c89d8cf447d03687818fda76021467eb01ca57915644cc3516ed2b47d99b3eb9docHeodo
2021-01-05 07:25:32d67fe49fb7149fd2066f78aad02d737430236ddecb5374f6c7063dc3dc20b7c2docHeodo
2021-01-05 07:06:2770348b91afe7c847c52752d348500eb3958fde7742b44cb033887a6f88eacc41docHeodo
2021-01-05 06:56:50555882aa0c70bf9f62ae71584a9e5e18353d6126de19390f8c2859c15693764cdocHeodo
2021-01-05 06:41:4121d709c68afb83cfb7a5f69689f848528b42c0d08eec7f1d0a073ffa35285534docHeodo
2021-01-05 06:33:35f9adb0853fb3717234e033ffd51b7d5deb84a6336236334d672e02f9f80c3824docHeodo
2021-01-05 06:15:49ce77e9e1fe235b5bcda9dd1e3db5ed575bd397a7e5f96da2775491ee0c23639cdocHeodo
2021-01-05 05:59:32bc60a50738caeabfcd59cfc7f355ad5fcb5ac7d0b57afd7d96aef09e6eca8b0edocHeodo
2021-01-05 05:46:426aa8822f97a4b8c6f94cfea8ac81f0deffe57554498a897a22930d98366a5599docHeodo
2021-01-05 05:34:546f31db5bbdffcfd6869ca287c54ab7010c4bdacc510e86fb8fbebc7999d8cdf1docHeodo
2021-01-05 05:26:3957573ae812bd40b5f1f02c9098899b026dbe071fddd98c0f39e979e542925274docHeodo
2021-01-05 05:10:56062356944de62064252aeed4336f1416ec9ecd03ed618d6c27dbc0bfe8d168ffdocHeodo
2021-01-05 04:54:192fce0e475493a78ec8132358305eaf611dad56e9f69186a6ba81488abe696ba6docHeodo
2021-01-05 04:33:387fdedf2abac344613c34295f9709038790437c77b65f72491def7dc2ea11aa08docHeodo
2021-01-05 04:20:5847045bd8084c3a6d54f452d66db9d55f9af7413a968bde9ef5c0967bd5acececdocHeodo
2021-01-05 04:05:1809292d51e8d353b88a500ab38de30d3aaec41733df7b368af869cf472bfef48ddocHeodo
2021-01-05 04:00:31f04733633102448629503a0b0df30e77c694298c6e2bac53b89099f796a4a04cdocHeodo
2021-01-05 03:38:0248e5d9cf1ebc2c615dc60b2f35595632cb1ebf25c2305ea31f087bbe8689a1addocHeodo
2021-01-05 03:26:45ec2aca363bea5e10495d5682f2c50b4a46c9ca51236fb795e7d87e41109ce790docHeodo
2021-01-05 03:16:57252656a16cf6ef7ede48d6dfbf08918fae477b4e2ed50a5b2dcb46a1d6240fbfdocHeodo
2021-01-05 03:02:47d156b4fc840034beae78f8d4c55226d4dd1771465d0b8f45322dcd63731bdd4adocHeodo
2021-01-05 02:49:51e1ebbd14ee5b8c0e8f24ab2f32d70806cbad49852e703793b4235d8117dbf439docHeodo
2021-01-05 02:38:03d315e07599f48461af20a81347aae5972ba5aea6210a0e28244b902a18cefc78docHeodo