URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: bohler-edelstahl-at.com
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Blocked
Cloudflare :Blocked
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2020-12-18 07:21:09 UTC
Total malware sites :4
Online malware sites :0 (0%)
Offline Malware sites :4 (100%)
A record(s) observed :5

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2021-03-18 00:49:33 198.54.117.197Not listedAS22612 NAMECHEAP-NET- USno
2021-03-18 00:49:33 198.54.117.198Not listedAS22612 NAMECHEAP-NET- USno
2021-03-18 00:49:33 198.54.117.199Not listedAS22612 NAMECHEAP-NET- USno
2021-03-18 00:49:33 198.54.117.200Not listedAS22612 NAMECHEAP-NET- USno
2020-12-18 07:21:13 185.239.243.112ns1.20mb.nlNot listedAS212238 CDNEXT- USno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2021-01-03 00:29:02http://bohler-edelstahl-at.com/fa.exeOfflineexe NetWire ext zbetcheckin
2020-12-22 07:32:33http://bohler-edelstahl-at.com/nt.binOfflineencrypted GuLoader ext NetWire ext abuse_ch
2020-12-22 07:32:33http://bohler-edelstahl-at.com/fb.binOfflineencrypted Formbook ext GuLoader ext abuse_ch
2020-12-18 07:21:13http://bohler-edelstahl-at.com/kg.exeOfflineAgentTesla ext exe abuse_ch

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2021-01-03 00:42:056f18dd2576aa2fc3af625f18e10aeac0f57fca8be33207bc0b6a7a6ee7d33701exeNetWire
2020-12-22 08:36:331546595bde1a4ee5b107d5d866a6a3cab95fd9476a29b64275721babc64ada26unknown  
2020-12-22 08:07:115084869f637e4a096161f12cf2022439511d0369cb1ad01ce81370c5f03cd1b9unknown  
2020-12-18 07:21:11aba6e7eb4829aa943ce897edb7d6a6c7f9c91c516098734799d646d195bbbabdexeAgentTesla