URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: kanzlei-hermes.com
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2020-08-31 19:24:34 UTC
Total malware sites :1
A record(s) observed :2

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-04-27 12:24:05 81.169.145.148w94.rzone.deNot listedAS6724 STRATO- DEyes
2020-08-31 19:24:35 81.169.145.95w8f.rzone.deNot listedAS6724 STRATO- DEno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-08-31 19:24:35http://kanzlei-hermes.com/cgi-bin/8/Offlineemotet ext epoch1 exe heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-09-02 10:40:285009a7e93d01ac79fe2399bb7be2dc8264f8f69447ebc42f2601328c50f4e85eexe Heodo
2020-09-02 10:25:2569f90e28750fb43968c3979d86dd6edf76b6ba4657ca6404d293ccf7de075dc0exe Heodo
2020-09-02 10:05:03495b812c3a3afcb17708cb45631d822544d1d785ef7e2cb38595cfaf42c390abexe Heodo
2020-09-02 09:48:04b116af9705afdf46a6497cc3d4fa6e05cd8f687bac94406b5fd0abd77dab1942exe Heodo
2020-09-02 09:43:104247c9272eedc294c0b6a8f97656f54b3bf5bd5318ded3b292cb8be11a065641exe Heodo
2020-09-02 06:30:596dd5d673725341b0790fa4f3bed96e49d656118994b0b19c38e62fd53defb39dexeHeodo
2020-09-02 04:58:43598bea746526d6eae854e126eac4b4b22e1023363875c53142ef4b05491fdcb2exeHeodo
2020-09-01 20:45:13b6f2457e50dc2fdd2cf809ebf63577c7277e0e26bf8e87188572c01d96d48f97exeHeodo
2020-09-01 18:35:11fb13df8b0a039ba2084a3a5e4214347716b56fdbd7f3c708717bb439acce3656exeHeodo
2020-09-01 18:20:22e1fad83b6eb8569db6c21134efcb42713273845ae9c65c8f29765d7147e5975dexe Heodo
2020-09-01 18:01:56003abfe4bc48adb6596e77b7293ff55130553f70e9563376f571d5e4b7b1f781exe Heodo
2020-09-01 17:44:181e6d567c02e58d83eb43f9e81b964479929e250abce0d647fdf38fd0cf83aa15exe Heodo
2020-09-01 17:31:12febecca70d7c90dbf94415c948aeead14672607b52712d8740a9b7bc94f0e9fcexe Heodo
2020-09-01 17:21:01925b1ea5100add9e35a583f5511e8159c2078c4b3ea7b911e0bedafc949428deexe Heodo
2020-09-01 17:06:161faf058464573dedc896b975062de8e2f14d1221dbb1d3dc18308dcf58bb6807exe Heodo
2020-09-01 16:51:23d02149da430110b150e12ed1189d14ffe22a7bbec22ca12ed01ae6db39a52053exe Heodo
2020-09-01 16:34:25074e21b72f87284bc1e9c21a574e2675ae76c6db494a32cf122770a7fd69b0c5exe Heodo
2020-09-01 16:19:1501e29dbbcd985e4b9d6348d169beb4c9c4b9b47fd2c11ad58535cc92f296130bexe Heodo
2020-09-01 16:04:21b2b06c10e2edc67d0dbbb01f95c38cbece9adf85d025283e6208dd2783f41bf1exe Heodo
2020-09-01 15:44:031f289bf7d2df94f22c3ebdc82fa3b3ff89e5186c1421933a78242cf4bad2228eexe Heodo
2020-09-01 15:20:56f53463e8fea88fb4ef38a73caa54f3eb1d91e60188dfa976e53f8389e47f21eaexe Heodo
2020-09-01 15:05:21a9fa3d28bd6865f238d2828e1da249706808d0480365458a861130ea80f686b6exe Heodo
2020-09-01 14:44:0210264e4a9fd6bffaeea3b5570f7c3b8f0d0c56a01c09750932cc98c1e05bc6eaexe Heodo
2020-09-01 14:27:30fa57019ee02f23327adc2a7883f8d80e66dbb51fecf51ceb2cf9c582c1051eeaexe Heodo
2020-09-01 14:04:53a1b88bda6b08513d35e334f32cf7e90eaa8c471548f9b80ad6df385f1dc0b2f3exe Heodo
2020-09-01 14:01:112275e66a31a10b9285fe488827b39db8bcfee4ead3d0cbe8dfd0c66589cac48cexe Heodo
2020-09-01 13:48:0677717a9d882997a23b5c3f39a3150bb7992100c5ab9a79b8aceecfb9ad90a262exe Heodo
2020-09-01 13:31:48e268027dbbad20d80f63cf5a5f9e60659d386ca5949a7f4977921d32c583651bexe Heodo
2020-09-01 13:18:11aa7d63a64426d72b0875be60bf910a08edb7da22938bcc461b3df000adaad14bexe Heodo
2020-09-01 13:01:333134f276c4b0ebba6b64ea91a96fd051a158926c525f3fbd80af7c4513c05a85exe Heodo
2020-09-01 12:45:446cfc41103a48c627300f2036fdb5fcdc0364ae4e51fbcd363eb45254b1a0c5aaexe Heodo
2020-09-01 12:34:48f163f89700ba5cce563ae1ccae13c45a64c1dd3835399cf8ed935c2660147906exe Heodo
2020-09-01 12:21:0051c2671eb0a7d7794344307657acaa58c1450577493b90ba62b454e4e9692a7aexe Heodo
2020-09-01 12:05:059aa3dbc19ba5b06d0e224e15665fd937d36d5d1b09d66f4e4ef4d80ea244b859exe Heodo
2020-09-01 11:50:571a8fab80bf07eaa4e2ba70393f3c2dd25d6efb6b0a1005e82be82a53fbd63fabexe Heodo
2020-09-01 11:34:47cfb0e4fb8ed6919df5af0d954cad71207d4f2bc433a80f8e3418a72602291937exe Heodo
2020-09-01 11:18:17f4181a2a58c0b356018e1bb709d7f46f76e958b71eb8e4ef8fa144b707026be9exe Heodo
2020-09-01 11:00:390686e0d935aaf9dec129a16220d1514b48f4dd6355f4a5be3d855908ba0dbcefexe Heodo
2020-09-01 10:47:3233361e9fdd37e934f97ff4491448e1ca790be8e5d1537dfdd03d0a0b3d38dd1cexe Heodo
2020-09-01 10:30:2163b7fd272c95e1f765b4c339ec111a641625a2f17142b8676dd49ce192665fb6exe Heodo
2020-09-01 10:17:23bb3c88651b931abc09977d9738e4394ff2f384a4bfcd28b312551865fd60c77fexe Heodo
2020-09-01 10:03:43d61de8c89e2d8bb6cffefeb907f5189528ef764c78018a5949eff29bf53cc54bexe Heodo
2020-09-01 09:48:43b82c9c43b456be086dde9a87cfcc8787c42bca7edc124595057f45ffce66cf5eexe Heodo
2020-09-01 09:34:13b5260c4b1814e19e22f228c028f774e3270e5fa3037df1df39a8ba97f933a6ceexe Heodo
2020-09-01 09:10:167469efd72dd38507a370e7f42d07908aa67fb46f9328599f766d72f96c003f12exe Heodo
2020-09-01 08:55:29178c29d8b9457b537a9f4a932a01b97c3304d9889932d0a1f2b69ad25ee31d7eexe Heodo
2020-09-01 08:38:170d157badc5bd311fe08c0dca85e5daca153810f6cfe41157476e81ecd0ac3c65exe Heodo
2020-09-01 08:32:266df144d4ba48098be2d2b96005efc2668b13e3c6650a82e842de60997b4452c0exe Heodo
2020-09-01 08:08:07975e315c2350e8563c9166e6593f3886903af08e27fe9a3e436cc64de6783f93exe Heodo
2020-09-01 07:51:48def743b074231c043d83b331c509b34332caa307e3efb94cab2ec880357d5510exe Heodo
2020-09-01 07:35:4052b48b99d532eb955aaf68b2896d49b8e551ca3abdd78f0273ce7667528de326exe Heodo
2020-09-01 07:30:38ccc7ec45755a270eee12362799e8eceadc5a8ee735a025d128016e3e2959560eexe Heodo
2020-08-31 22:55:572db0758d60d1e61b6c69778283df5dde77c84cc771b29953c9821433f348b336exeHeodo
2020-08-31 20:10:37efedcc357becbda9b72bf2ce4c4886bb66c4a7560a60286961d39a5e28db46c4exeHeodo
2020-08-31 19:24:35ea17f66ea1428d971e73160197d768fd962328761e683b29a222b76c3fcf7649exeHeodo