URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: stiefkind.art
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2020-09-23 21:08:04 UTC
Total malware sites :1
A record(s) observed :2

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-05-09 05:58:26 82.100.220.68w38.goneo.deNot listedAS25394 MK-NETZDIENSTE-AS- DEyes
2020-09-23 21:08:05 212.90.148.14w54.goneo.deNot listedAS25394 MK-NETZDIENSTE-AS- DEno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-09-23 21:08:05https://stiefkind.art/wp-admin/t1LLTpKQwAVxH0zx/Offlinedoc emotet ext epoch1 heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-09-24 05:41:154646dd3e53714af28ecc8c4bd54029a5cb00ec4ea6eead753353eeb8e574ff63docHeodo
2020-09-24 05:17:57e7f6321d905f4db566091d8d4520f4d128bf66917cc86d794f1d435352ed2899docHeodo
2020-09-24 04:33:216aebb8ddf83325ed3d212b9842279a94afa9981ee7d1374d0b3b9cdff8429181docHeodo
2020-09-24 04:07:222f8c5f8173199d582e3535ffcda34ccfa553e9b5d8ab915b54d4d0307061ed19docHeodo
2020-09-24 03:44:4548523dc1483cef07ef0bca44fe8f6629de0a7ab7e89899640b66568d4816c54adocHeodo
2020-09-24 03:19:359b6ddc314258dd07193fca458631855ec60eaf598557379f4bfb34cf178a0d41docHeodo
2020-09-24 02:48:096e613f281a3af3a8d773be9013d997281a8af57e592e2f7fbec463c15550304edocHeodo
2020-09-24 02:26:021f5a248a7fed3080327c72e34d85898e21d55cfa67d12d4ddad538f86492573bdocHeodo
2020-09-24 02:07:20a1eadd639edafd2b4c14ee3c756169cf8cba0b790c132d2a40f21f5febfecb77docHeodo
2020-09-24 01:56:34fb0558dca547b0e5446371eb2b2bc4204d97d088d68cbe23d0634c4c6ae55222docHeodo
2020-09-24 01:28:11004393cd825cf21d4459f69da4a083e90490e9c9497fc8eac740cdc269cbf2fadocHeodo
2020-09-24 01:02:15204bc7ba8ccc1a68101bcaa5a6e0c77ec50b92bab7ffe72f1a42baaf8615775fdocHeodo
2020-09-24 00:24:091e3c9b0ac0a8b2beeec2dd78f45466125d000b700477b1a4ead019fb8765f252docHeodo
2020-09-24 00:17:11e5393bee26b731a4036fdd9744d6b4f51d3d3ce1387b402ba4d69f2e6662d58bdocHeodo
2020-09-23 23:41:565840a444fe973bc3d41c8334eb9da05bef991ee9bb7863e19181c3c11dde0bcbdocHeodo
2020-09-23 23:16:11f3d1c3c53293c401bc39848174a8b6877d25542de861e94b8e6560c63a4e94e6docHeodo
2020-09-23 22:51:12c884ecee384466aa2277769f07888f2f8039ed3293f378229a20b976db70fd4cdocHeodo
2020-09-23 22:32:55788eca61245ed6657af60f6cfd891a77fb1b4fa6ddf59d907ea2bf81a4cb70c1docHeodo
2020-09-23 22:02:482836f5d7dbe388c3e1d61e9a4a75b98c7477003ec2d1dd7504e7ad4af7501cf4docHeodo
2020-09-23 21:40:4574c188a6a2407cfd58a3ed22700082c711aad351ae21221d885d26bfc790e19fdocHeodo
2020-09-23 21:08:0575876c4b8ebbac638052c4f3fa36f23a3c95260b80ea6fc8f79eaca9eb520384docHeodo