URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: medicharge.de
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2020-09-21 23:18:02 UTC
Total malware sites :1
A record(s) observed :2

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2020-09-23 17:23:55 51.75.77.123is00.orcas.deNot listedAS16276 OVH- DEyes
2020-09-21 23:18:03 51.89.22.215vps-81bbecd9.vps.ovh.netNot listedAS16276 OVH- GBno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-09-21 23:18:03https://medicharge.de/wp-admin/DOC/tkk3jc7g/q2i...Offlinedoc emotet ext epoch2 heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-09-22 08:34:29fb4e14e21f1365ea52350be6471a86d0815a42e7352f71ef4e1953eb9b360086docHeodo
2020-09-22 08:03:10b8e6b5565924ad53e699d8427be3bb48cccb78718ec4fe8ca55b994ff8a35328docHeodo
2020-09-22 07:38:23e9fd5fc869a22a5f9b22333cbe9745985826875b2f62983c8e0964531dd9cd7fdocHeodo
2020-09-22 07:10:31dfc0eeec857c03af491878b0b6e9a4fe2dd417135410856677216baf78681909docHeodo
2020-09-22 06:53:045113e330fdea6c93e3ef5a610817655f04d59be9bb5fa3a4f4167f8ccbb01d48docHeodo
2020-09-22 06:38:546b58f3d639dbfd3f04c2534bac10583c7e2d0ba1e88ef31ebe443fc18f409a76docHeodo
2020-09-22 05:13:418d49090e5ad1ca487645e8dad8b6e90d267b4a7f5d4cdf4d9c4441d969f088cadocHeodo
2020-09-22 04:30:20fe1fbbade251f94508504fe8861a87b7c721755f8116854ec1497d79a8a84dc5docHeodo
2020-09-22 04:15:3661b104c81d6e07bc38102631a844c6247bfb16ff720fc134b3a95d601df23fabdocHeodo
2020-09-22 04:01:3149a1ffaa1b08021d92dd0139fad4b585e8b601c2ca7c74eca69ea9f3ff06ad79docHeodo
2020-09-22 03:46:473329e54a271ff895664104546d9af52c00ce1284be48322d3ebf1cc34db74169docHeodo
2020-09-22 03:19:26fb096cb018d3c66f22c322028f9e8f1f049e9a9eb3531f9e893c3d2522f35951docHeodo
2020-09-22 03:02:21718113e004b811df9d311a7edec1092b2aab2d9173d762022544a74b5ba02657docHeodo
2020-09-22 02:40:163ed5e00e046ce19a840746219ff3efcd6fcc4ddd0b608e51203398bfe2360da2docHeodo
2020-09-22 02:34:3858dca36db6814be3bc7016599693d84cc074f17451bebe7eb98baee99cef0ac9docHeodo
2020-09-22 02:04:217cb0e900a796ae5c53375b1dca69897de5ffe140cb72224a428bcb8327937f23docHeodo
2020-09-22 01:45:297aa7d38a55d5f7d01ee40a977a2df63d0cd4c938482a2fba3c73e1844405a0fcdocHeodo
2020-09-22 01:16:44c74d9dd73470acf660bc458fed146e653197422214956ce6dc4abfaa8a8a1544docHeodo
2020-09-22 00:59:23ccc41f0194e3ea4cd0460cdb76391a4edf6732e895a600acaeb6099a6796c558docHeodo
2020-09-22 00:27:02e524098185428b7b654e227e927a95c9c89d92f8c735079341529233b7f5ebe9docHeodo
2020-09-22 00:03:4662f036b925c8b4c5c90b88eaf15e774481a952ac6e1c7596916e10054b82dacedocHeodo
2020-09-21 23:38:15a09dd0e095d93b68eb0713e31e92eb9caee82983e99ddccdb71177216cc52f30docHeodo
2020-09-21 23:18:0361ba6999ffd23a0f22f6827b577e773e9d6a79ef366b3260a6b55a792c98d519docHeodo