URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: hoffmeyer-waagen.de
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2022-03-29 14:46:03 UTC
Total malware sites :2
Online malware sites :0 (0%)
Offline Malware sites :2 (100%)
A record(s) observed :2

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2023-04-20 15:37:20 85.13.139.237dd19632.kasserver.comNot listedAS34788 NMM-AS- DEyes
2022-03-29 14:46:06 5.175.14.139wp617.webpack.hosteurope.deNot listedAS8972 GD-EMEA-DC-SXB1- FRno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2022-03-29 14:46:10https://hoffmeyer-waagen.de/Bilder/rvogZCHOaypQ...Offlinedoc emotet ext epoch4 heodo ext SilentBuilder Cryptolaemus1
2022-03-29 14:46:06https://hoffmeyer-waagen.de/Bilder/rvogZCHOaypQ...Offlineemotet ext epoch4 redir-doc xls Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2022-03-30 04:41:59fd2ecf04bb4da7241599359cdb7b7f3a79197b33968f784ea57336faf2c84ba9xls SilentBuilder
2022-03-30 04:26:30b53e7fd809f9e654c0d9d6d4f0aa797529daadc82b205bcecc3b564b45892ac4xls SilentBuilder
2022-03-30 03:21:2900dc943ad8b806227c7e348971e538f6d3aa287ec1fcd2e645d272d3e0fea436xls SilentBuilder
2022-03-30 02:50:066280ad828511d4eb90c7c03d7f193d8f55f363f130e0c4aacc7481220313b846xls SilentBuilder
2022-03-30 01:42:2889136067e996c0c3a8e676d6ce711ab54ecf8a512369eb2075ad4e0fb8eea359xls SilentBuilder
2022-03-30 01:09:03805ea337e3e761a017b54b6a0dd8dacc8e1e05f20f2b5ae129fa1882c4e2ecf4xls SilentBuilder
2022-03-30 00:14:54b8d670ca1984f7ecc9e90c4bc0c4c4d96172690aead7080171735f96c11ba21fxls SilentBuilder
2022-03-29 23:31:4597df6ceb1a63712a6b1bf8f40f12d8add7b3a4e7f8191734eaee45dc10aee3ecxls Heodo
2022-03-29 22:47:04cf32dd8b34af56ba98e8e60de33e463349578b7c5f034c6b5394c1de65d8b3bbxls SilentBuilder
2022-03-29 22:33:1881ba58623792becf40d816c7b68f709ae3ff2985753490501f12ea3987f9bb5exls SilentBuilder
2022-03-29 21:46:396741b0effa1844c85e25015d8c01ab0330e793dc563cfe2977746f5eb7a37fd3xls SilentBuilder
2022-03-29 21:16:32ed2f8d7e4690bad774218068fb147924da6ac0dc68f5329699e01075b866a262xls SilentBuilder
2022-03-29 20:31:3330c386f8b27cab9ed4525f9123ace697473b0a9c1a5d17ce0267258535926383xls SilentBuilder
2022-03-29 19:43:1317be914f3d6a88c006b33cea5ac7e4774eb6c0c57d8ae8b3c7ad07a45d4efa81xlsSilentBuilder
2022-03-29 18:33:29299eef9367c7d46794f985f1653108dff2ea664d29f31b8ba1a08c934e1d42b6xls SilentBuilder
2022-03-29 17:36:03785f830ec42e6e6de3f29b1037818fa35ba3bf5bdcc06cff94a3bc582927086cxls SilentBuilder
2022-03-29 17:19:17c61a6a125d65791a39445d25af536dc56cde0c8c1c013c3869fdd9a65ec6f59bxls SilentBuilder
2022-03-29 16:12:11d32e7772c5e0a4b5efc90ec207f69a7e3339f692038776b1532299a837356affxls SilentBuilder
2022-03-29 15:23:52fd45dbcb4421d2e1dab4a3a89b5f3ad86804cd028f538e6b5863ed931418bfc3xls SilentBuilder
2022-03-29 14:46:1036d98b62a40c66f88eb4e10e8ac0e388b5c1ed865e08f9314579a15d3f81b3c1xls SilentBuilder
2022-03-29 14:46:06dcb99351d8f8126c4490e9c6c6f4eecbe0551256f7c8314bbed36e2b72f82365html