URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: kirschgruen.com
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2020-10-28 05:35:07 UTC
Total malware sites :1
A record(s) observed :2

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-04-27 19:42:03 81.169.145.149w95.rzone.deNot listedAS6724 STRATO- DEyes
2020-10-28 05:35:08 195.242.103.104server104.serverconfig.centerNot listedAS9211 WORK-AS- DEno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-10-28 05:35:08http://kirschgruen.com/wp-admin/mwzPM59hxJill2b...Offlinedoc emotet ext epoch2 heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-10-28 20:06:08ad10b386d964b6056e529c2bdb70ccb19ba21b3b0a59ac606113fedc49626b81docHeodo
2020-10-28 19:47:5311974ec5ce543646a57980f46943cb2a955f3d5a1e4732f3afdfd141df1cb76fdocHeodo
2020-10-28 19:20:52b3668093571980e6141e4c77f24f479a07c6fb18caae250a7de4c697deb2fc03docHeodo
2020-10-28 19:03:1174bb58aee05391c699fefedb79da019fc9e7b0d6d81d068d0ce1d192cc9e4556docHeodo
2020-10-28 18:47:42290d99668c637b392210c43c77b9672357db0df908a2cee8c6c84399c0f3dc55docHeodo
2020-10-28 18:31:03ac9272ebdc022c3e93ef6dff217e30a0434094ccb3b6c5ab79cc97a94cf1825ddocHeodo
2020-10-28 18:12:08b1bc33186fb8cfcd82b5c2472804eb7ef43ae164d2879c71d0c38ddc5f9ecf61docHeodo
2020-10-28 17:46:347d38c4d98d05cd3a7a0fc6898c9d86ef1c29cd8dcfa3403d0222ff508843a325docHeodo
2020-10-28 17:17:286ce35993d504db2336d3804f3ed1ec36aabe10a3386bd30aedfc0f4c149ef58bdocHeodo
2020-10-28 17:02:32c3ab88e066a71a81d82954f02589e7b1e912add8716a76fbe482904abb954376docHeodo
2020-10-28 16:28:43aa825d666a2394dad05c014830cd132ecdbabfe1dcfd7e7eba18ed43bda6de33docHeodo
2020-10-28 15:58:146c318a9098138d3197e96b6f8b19f0e341154549e78ea5e0671f54f96328d340docHeodo
2020-10-28 13:09:375807c5621dcd6e33c1d3473267690be392c375d14f61a37dea7a7b4c510d0376docHeodo
2020-10-28 12:42:531133a03122cec0b03c3cf2b52c1b1737d103ec16050bc4deeb5914bd339a4900docHeodo
2020-10-28 12:23:43e225005a6da2c501109a5d73599e7697179f449c42e91f675b4fcb81e49bda29docHeodo
2020-10-28 11:52:58852d88f248a132193134baba17eb75649f9aab9cb04fc39652d337149c5dfd87docHeodo
2020-10-28 11:20:41ca886c353a653f94a89591b19f4830ea563abdb93c949b8bd4872dbbb65bc02adocHeodo
2020-10-28 11:02:28362dc59ca77c1bafa2f6ac163566994c9a8fed193b5285b3eff678bf8588eab1docHeodo
2020-10-28 10:31:46c88a8bfd26b88fe11810b85a6ced566f6ecd9c06b535f98d8c7451c66c1716d2docHeodo
2020-10-28 10:14:442ed9663048bfe1c969ee302588f17bbee321277d16204ebc6fcc3a626d03addbdocHeodo
2020-10-28 10:04:44a2b3de3e6d67d8b984e20da13e2338fb10bb97088378f08537ed93228f6850e1docHeodo
2020-10-28 09:47:595acee595ee1bc75adea710f92e969aa5c62d0a2693b6dc8c678b2bff8a4a7e51docHeodo
2020-10-28 09:26:130fdb302c3db79d7ed89244d7adf4c56d5cc9e4643c3e5bac39c3e82cff3834e7docHeodo
2020-10-28 09:04:33783e3178de387969ad58cadd83de2b88c6cffa406063d2f66e5ee8b67db11b4adocHeodo
2020-10-28 08:44:3709bb49f2d31787be18b07e1a48fce7bd5bf1dba73e713ce8727645f0b8f740d2docHeodo
2020-10-28 08:24:1506472f9f7853e0506b85ea1db0bb693aacedee79ad413c1ca0839a322f834df8docHeodo
2020-10-28 08:01:11af7a1932766cf0a2a6bc07298751e49a47f81b2b7f255579bcc6d1a93f335af4docHeodo
2020-10-28 07:42:41a67871eaa10790dfc0459026fe390127f88e0e7ef794ca29ca3ef501bf0bbc98docHeodo
2020-10-28 07:21:42e2f58ed91009de4f156ecdfb6fb04401ce82b2281242941e3a80fa9fe451cfcddocHeodo
2020-10-28 07:03:3168cb170125b6d8fe85e4573f3324f27ca595e8a2a2f0d624742c817590b42765docHeodo
2020-10-28 06:46:22b10f4a4b46a88d8bd137cb2d76eb827b89f16acd953490d55b6161aa0e99b7aadocHeodo
2020-10-28 06:04:54ed432b4a387becc419df96f24140626602c26a169999780c2309f0f5190a1321docHeodo
2020-10-28 05:53:121d6286cbe99db0f75e74a7ce7e77a50699b075af54aca64f8d2fb9c235f5d094docHeodo
2020-10-28 05:35:08c81da9358cac9552a6d4005fa1c6ed570a70d9aaca86836e670acafe475cf882docHeodo