URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: doreen-lehmann.de
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2020-07-22 19:18:02 UTC
Total malware sites :2
Online malware sites :0 (0%)
Offline Malware sites :2 (100%)
A record(s) observed :2

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-04-27 18:19:29 81.169.145.152w98.rzone.deNot listedAS6724 STRATO- DEyes
2020-07-22 19:18:03 81.169.145.150w96.rzone.deNot listedAS6724 STRATO- DEno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-08-13 15:12:07http://doreen-lehmann.de/cgi-bin/browse/tp7urgm...Offlinedoc emotet ext epoch2 heodo ext spamhaus
2020-07-22 19:18:03http://doreen-lehmann.de/cgi-bin/private_llbvkh...Offlinedoc emotet ext epoch1 heodo ext spamhaus

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-08-14 12:47:2338c8a47d1d9798b4da56d1a354bb62681c1e7e32c0e8665ef84cf88e8b4eae21docHeodo
2020-08-14 12:29:2473cad6ba26fb0aa184d10e24cfdbed4498c47ef40ef010ed07ae719fc7b6b2d4docHeodo
2020-08-14 12:09:12bdbae02329ebe760f9cd3c11622499753afc8819a3dc69a61bf0af89493c7173docHeodo
2020-08-14 11:47:2860c6203d9b7a2178fb3f76f12d896c8191aaef13c55973e5a177df215181683ddocHeodo
2020-08-14 11:29:3024798df3b8b05d774f455725548251d62206a0f8498f29914f75dd7086d28389docHeodo
2020-08-14 11:09:302ba31bcf0605c3fb50f7855062c192023371778e906ddbc8f2f9c8812d07a2a0docHeodo
2020-08-14 09:37:167b33cb52d7aadc252be1077c9acda4ca235a69d419c1673b40823778ae8b5a3cdocHeodo
2020-08-14 09:14:2169c415173df24e36396e61f51ceac50bcc46a2e54ed558e7e88e26b9c05f24f2docHeodo
2020-08-14 08:49:13b0b09674fd6c7ffa1209810a9a25a67ca712daa394c546944b8724019f7ec4c9docHeodo
2020-08-14 08:32:175acdc51f8a9177986bc3daaff77ed37a67acfa55f6b76fc8f3170b02ecb68306docHeodo
2020-08-14 08:10:0992386e2f315d649c3565cbcd1df211f967b66594ff68453608b6125236b55a53docHeodo
2020-08-14 07:53:01fed5ef0471ce8aadd6f39707a21f2f164b997ff30ddb925d8c29ebac3848f67bdocHeodo
2020-08-14 07:47:54015676bf9d7c61adca32bbb32d96fa37a913a64442c577859be0e39884752bb3docHeodo
2020-08-14 07:30:1433fbdc20f3885a3d8af503c38d711e04b952263269a898c8d6cccb5cf7b352dfdocHeodo
2020-08-14 07:08:501cb2882cd1b3a5d7abcbe3d76caae33bb609753651c611bb27d19f740f26fc8bdocHeodo
2020-08-14 05:37:37e3492d2065690769a6a42df6b2d8f81e652704ea415f5438639668d023f8fd2cdoc Heodo
2020-08-14 05:20:39a6384f1e6ca3c085bd046934f2542f5ddb7e7966dca9ae654b221f0b1993a4e0docHeodo
2020-08-14 05:03:249d8cb204b05c50b29d5686326f0332cfa34a339234c12d448aa14d010d0a41d6docHeodo
2020-08-14 04:35:148c1068585407f5f88829c4f57a246305ddd51450ef74893d81cc738604e9cb3edocHeodo
2020-08-14 04:13:330928f7c9c557d9e232052edc5377f9986651f02861f1f90ae67a9bcdf3caa375docHeodo
2020-08-14 02:43:0194c8419a57e163d01d78932f2246ad3427a18aae25869403b06980ba98cd1fcddocHeodo
2020-08-14 02:36:557f0cfcaba7df4371efff36fa780cd28015c7c1694c8792fa2f56dd86b7ce8989docHeodo
2020-08-14 00:56:076ab2c399c8174e97809e728dc331f229df5e7d30dba04a5b1658ff245c45a657docHeodo
2020-08-14 00:50:3013425d91c0471208df6a06b23e5f176fea8637422e82c95f1ecd534aadda855bdocHeodo
2020-08-14 00:36:06d14b37fdf7ad86b3794264b6df4bfd7efbfd5ae07b03e72a800be6d16ec8aa83docHeodo
2020-08-14 00:16:35d4fade764b1ae03f546843ff7b67176a1d7fca0c1cad66455d0770c364b5746edocHeodo
2020-08-13 23:49:48ae007fe87d30f9b482a9a7525e1ccd6b8a482bd23635156170ae371339d27341docHeodo
2020-08-13 22:22:37d70047b36eb96337b545ff3355409a4722a374e18f8e5955fdbdac3b835f81f1docHeodo
2020-08-13 22:04:040ed266508f694702f6337f375bc70e94eb3c5397bbf5e4fddf1d319a751544dbdocHeodo
2020-08-13 21:39:3134aed4bb09915606f5373f0d72261b384fe3d85fcde9b3c716ac00967158ec77doc Heodo
2020-08-13 21:22:358829bbce815af3eb259bf395ab4bc8e41ed24c260d590c7a8253172b4e6ded79docHeodo
2020-08-13 21:01:5040fa25d14444c5f0471cb5e33a8397ec008ad42615aefa558366173602afc62bdocHeodo
2020-08-13 20:34:230f56c76a4c47767ff9ff3f8a9fdc37edabf5d585992ab218eec6d39627dee63ddocHeodo
2020-08-13 20:13:07181c8cee3b6463be02aa4dcfbcdecf6a495a03e0692a379e34467dd0ed5a6fdbdocHeodo
2020-08-13 19:36:0515d1980af7ca71885dba9f7887ad95dd5b49442818013ec5293e6145f4cf5897docHeodo
2020-08-13 19:20:21f153d1cd2401db480ab764a78b8a1928c558755e34f37ecc8ece84b1f14e6964docHeodo
2020-08-13 18:54:1592b38ca67d00bffc28647167730cef8ea6123542c4123464f1c565e59186b871docHeodo
2020-08-13 18:13:48b8c7112d2672445960d4ca69da612b07b761b5119015c0dc4e75064b85978ff0docHeodo
2020-08-13 17:52:52ea4ab11724bb19ff8c0451069a27cfc6b2de7b7ad0254edd07f3036c265a066fdocHeodo
2020-08-13 17:50:17ea4ab11724bb19ff8c0451069a27cfc6b2de7b7ad0254edd07f3036c265a066fdocHeodo
2020-08-13 17:22:136ae7c67f19e2dfcff50c7273183d36d4c30803ba0ca269c1592327bbb1bb1385docHeodo
2020-08-13 16:55:5781c7769a0b7529af3a8694dd0b1141ae2446ebc681026ae67653753eba1ed6b6docHeodo
2020-08-13 16:31:15d1c68fb4f1aa89ab45a452fd903591df9228fee86540db11d942df61adae28b5docHeodo
2020-08-13 16:15:49791dcf8ffb01baa42ea2f49201207266fe2ec8cf8f2422e6a03ee35614b8b973docHeodo
2020-08-13 15:57:171d76d6caaf25aedb9a6b4a416eda1a0f237ef09b5100d844a54ed3290242e251docHeodo
2020-08-13 15:31:020532eadbdda96ceadb7250d379491c1bb64d6d40b96bc71d551268896fd4bdd6docHeodo
2020-08-13 15:12:0718884f8ba049366d8fa704ec74f05b5c3aeb6fbca8507fe78b16249e2ea38352docHeodo
2020-07-22 19:28:53cf53854628d9e95bf9c5b164c75908fcd42e2de87401607eaa617f331d376864doc  
2020-07-22 19:18:034e5ca71ab308655fe2a2430dfbba2c2f7633fbda4a0e4c44714724f00e27dc51doc