URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: schenckel.com.br
Spamhaus DBL :Abused domain (malware)
SURBL :Blocked
Quad9 :Blocked
AdGuard :Blocked
Cloudflare :Blocked
ProtonDNS :Blocked
OpenBLD :Blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2020-08-06 13:46:03 UTC
Total malware sites :1
A record(s) observed :2

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-04-28 19:50:40 191.6.208.242web1f05.kinghost.netNot listedAS28299 LWSA_S/A- BRyes
2020-08-06 13:46:05 191.6.208.56web149.kinghost.netNot listedAS28299 LWSA_S/A- BRno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-08-06 13:46:05http://schenckel.com.br/covid19/statement/Onlinedoc emotet ext epoch2 heodo ext spamhaus

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2025-04-28 19:50:40aeea4cdac6fa009191f99f62bbd8237072af76c1610e0de58cec687b4ff6fe42doc Heodo
2020-08-06 16:44:53ee6ffd9c87664f86e2f91b10610e4f72151b303e110685cb0a76baca60d43695doc Heodo
2020-08-06 16:22:2786ce98ee6a09dd1c7c6624e70decfc961385aa91b973c4f19f3f9dbb6091ec24doc Heodo
2020-08-06 16:00:0005c72e97f5d458c6490496c4ac646b9555bc470d63b6bbea42875e5adb1a1549doc Heodo
2020-08-06 13:46:05a552cde24f4002ea256a95334cf7b942868010a6946ab81f3cc5b7e8fcbc57d9doc Heodo