URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: baumann.ga
Domain registrar:Freenom -
Abuse complaint sent?: Yes (2022-01-12 06:15:01 UTC to abuse{at}freenom[dot]com)
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2022-01-12 06:11:03 UTC
Total malware sites :4
Online malware sites :0 (0%)
Offline Malware sites :4 (100%)
A record(s) observed :2

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2022-01-12 06:11:04 85.127.61.9285-127-61-92.dsl.dynamic.surfer.atNot listedAS8412 TMA- ATno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2022-01-12 06:32:03http://baumann.ga/wp-content/96804747_2/?name=N...Offlineemotet ext epoch5 redir-doc Cryptolaemus1
2022-01-12 06:21:04http://baumann.ga/wp-content/96804747_2/?name=J...Offlineemotet ext epoch5 redir-doc Cryptolaemus1
2022-01-12 06:11:04http://baumann.ga/wp-content/96804747_2/Offlineemotet ext epoch5 redir-doc xls waga_tw
2022-01-12 06:11:04http://baumann.ga/wp-content/96804747_2/?i=1Offlinedoc emotet ext epoch5 heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2022-01-13 00:05:0738e984900acb5a6830c8ea2b34c0b1b85c45b32848da185c5bd3e2546ade2311xlsm Heodo
2022-01-12 23:43:2720039ff121b47e5026b29877b299b76e47f3c7f766b9010a04e148a19823dbb6xlsmHeodo
2022-01-12 23:09:0760610dee4927e907b5a6a4ac49f8c921fa8af7005b2e8deb2b26ffcc1cac6322xlsmHeodo
2022-01-12 22:38:329f0a7342511328df49b73e718bb20dd3db1437cb3d115548f9d6a0cfda3af0d3xlsm Heodo
2022-01-12 22:28:0345a53e72db4a9d55d161277cf30ab36f2bdb6881937d80538c8468630a59b392xlsm Heodo
2022-01-12 21:42:3433c82b63397536a8a585f5d1987fe791d2f3c7f7a59c28e18d261d95cf574da5xlsm Heodo
2022-01-12 21:17:5543456f22a22af4bc49f0c52a891b5993721cd8595dc6f051a1a5ceff1f107621xlsm Heodo
2022-01-12 20:54:558f99cab09eb9674d602d903701978b39bbe6bf9eb123a358837b44e4076a5e86xlsm Heodo
2022-01-12 20:33:261bda0395914226e0e8595d97bf7970dbd6f029b30d8abf2d887cec6ed7084cf8xlsm Heodo
2022-01-12 19:59:579b6c2d3a2e0010b47a9e3f6a391bb288234c1edad441716ec99b1188a5ae2915xlsm Heodo
2022-01-12 19:49:30f92091f4bf9b99100b516a015bbcee3bb1107b3f1084307aefb368863e3ef9cdxlsm  
2022-01-12 19:30:23a1d6ccc8d4baeb930c4466081955434ffc07b1ad4105058d4b3cafefe0d50098xlsm  
2022-01-12 19:15:39d2081a087e12bbda13228bf6473570e76d0776157f719f7814f825018db9ea7cxlsm Heodo
2022-01-12 18:58:17d396dc8d4f96a0295c0f5db969ab4116c03ab365e2c28400807c613656e87cd3xlsm Heodo
2022-01-12 18:34:00d71345f2aba73f7209585626467e21128fb342e43c8a64c475e1c9d8a052527fxlsm  
2022-01-12 18:17:554ba298f5eb285e1caf8eec898984ac6cd199b8311648d62aaece404c80edf321xlsmHeodo
2022-01-12 17:43:336511bf0cd0a150e9e4530b6b27ec3c9227b0e6ff38eafd6f6045f71ded06bc03xlsmHeodo
2022-01-12 17:32:54bc346c8af9a4c313ecdce8c2ce4027bb2f3fff1889df84c0f2dd80f38f8be94bxlsm Heodo
2022-01-12 17:13:36e64991c009715f3cd077bfef9f339f8b58c16ac9d35300e911fce66b692b4f3cxlsmHeodo
2022-01-12 16:45:33aa0e7e06ef6a8326e0d55630872406ec5a56ab4677760157c5b8cf9c7bc49623xlsmHeodo
2022-01-12 16:24:21ce390c83df0a362de9c0a4704f3a7a22d52e5e536a46f3d64618812f24e7ad27xlsm Heodo
2022-01-12 16:11:0279daeb5bf882947dee2541dcc653db008700b0f5b528335398d1ee9d934e3e7axlsm Heodo
2022-01-12 15:42:042051d6466a893843330b994b1f7584192cc51ba381b1ccd71b4bdcf79d69a0f4xlsmHeodo
2022-01-12 15:29:45c5b975c17c0bb735289b89373ddf4a74f1c092098730f47ee94905c37d05df03xlsmHeodo
2022-01-12 15:07:200bafd60ddca971a6e30bc4b88c757eb075c063b03d728b237331e60e83e33f63xlsmHeodo
2022-01-12 14:44:14b73be43b52094fb92e8b8d58def03cd5521d7e3421833ec6d60249a14f7883a3xlsm Heodo
2022-01-12 14:34:0953812bd0525b37568f64e10ba86d759bf65fa1e511dd43b4c7e8d458229d305dxlsm Heodo
2022-01-12 14:11:052b9bf8d43b4a3d9da842f18416e6c3d424c46b2420872ff52e1b86b9656d764exlsm Heodo
2022-01-12 13:22:286de523cf03d5a8cb34cc06b2f41ccd57f611201fcf36696d9f9c601bae54cd40xlsm Heodo
2022-01-12 12:46:081ceb6ae7bb554145cab1b5890a3f695d20a8d9184c9d5bfd2b7c0dd04d33c03bxlsm Heodo
2022-01-12 12:28:21dfaa9720cb4f937590ea74a1050a9e577415c0160135fbb5718f48f518be6758xlsm Heodo
2022-01-12 11:52:58e518a3d4b343b833889a08edf75c2fe705a104d737d51dfb31b6f4907b099c62xlsmHeodo
2022-01-12 11:39:13a171fe47aad91856984e779b31770f3e33598e208b8b3a63a510159937d43766xlsm Heodo
2022-01-12 11:18:388a6158a2ff4695e06f93b318856526a5ffa730ba8ae4027796d172cf338286e3xlsm  
2022-01-12 11:05:13c4d0f3ae42ee96525f7c0b08e3e7eab28f6560c351b324b2926d0e74cd8c004cxlsm Heodo
2022-01-12 10:52:3279f3b373fa9006ca74b6f4bd4eb82a98eed7e7377038b7a4dd821a937d01f38exlsm Heodo
2022-01-12 10:28:4273f5720060fdda952a06d091e8fcfdb5ce66b633769feed355fc3727c83c334exlsm Heodo
2022-01-12 09:56:313a719e95a6725ae8c2fa8ea52d712af379dadf6f819f6a2d28a4cb5c32270e18xlsm Heodo
2022-01-12 09:28:300e561cf1d0141ee1c6cf188bcee782fd4b201bc0313fcf12a1175a457387d1bcxlsm Heodo
2022-01-12 09:11:48e9e6415510b97e8b3a7d452eb091b19866b9ec229fe934b5d8a726d0b010593exlsm Heodo
2022-01-12 08:50:347b23d6a5346b658b23fc0605fb5fdbea6bad8cb3846ee1b076479ff6e560a289xlsm Heodo
2022-01-12 08:24:21df0dccedb0608737639fad9d0299c73ec4529c080ba87a26384e914baa809231xlsm Heodo
2022-01-12 07:57:321432dfaf66fc92262751cc8a85c31df66552687538effa62d8df537136495e1cxlsm Heodo
2022-01-12 07:39:29dd4bb165098876eece296f603bcaad2abaf3a306255559022fbe195553139c96xlsm Heodo
2022-01-12 07:06:1843b1fd1045c3f14e9e12685a2fd7074bd2a0d7cf9e47d23af2e2ff8dca2a2f5cxlsmHeodo
2022-01-12 06:32:03289329eee089834cddf15f56d3bcd39e97a27abab4445367232ba007a04a26c6html  
2022-01-12 06:28:15db88756a23fe6c0998ddbf1864efe7e4a28073dca342fa7712775388ac757529xlsm Heodo
2022-01-12 06:21:04289329eee089834cddf15f56d3bcd39e97a27abab4445367232ba007a04a26c6html  
2022-01-12 06:11:042c337e62c2e3a1a3f742a2c7977a24bec7e8458e31a0cde9ce590cc53ff5a819xlsm Heodo
2022-01-12 06:11:03289329eee089834cddf15f56d3bcd39e97a27abab4445367232ba007a04a26c6html