URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: tim-sachowsky.de
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2020-10-16 21:44:03 UTC
Total malware sites :1
A record(s) observed :1

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2020-10-16 21:44:04 46.38.249.181af9b5.netcup.netNot listedAS197540 netcup-AS- DEno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-10-16 21:44:04http://tim-sachowsky.de/wp-includes/lm/1AJW4cmyNE/Offlinedoc emotet ext epoch1 heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-10-17 05:28:21294c6f87d8514072c30988bd55dd643c5c018b9f9ae05b9db1a97d034b31e092docHeodo
2020-10-17 04:51:49cbabf68dbf69bbc9e13cf1c4decc549416db53379348b45da4b5fedff65152afdocHeodo
2020-10-17 04:23:268763a9868e952dfb5be76162ed10b0d62fa00e1ba5baebe53f7cca486cb89542docHeodo
2020-10-17 03:53:142a71d0ad9193b9a5ec07c7040baf6aee1049bde63cdd81fdf346e9f295b95760docHeodo
2020-10-17 03:29:22adbad3c068d4497ae8a6a18056cfc39fb152c2085f694dcace8e772cc1867f22docHeodo
2020-10-17 03:16:4490e7a0a9f215c30d103034801a89e4b61554c48bff10a98df0d09257cfc716cedocHeodo
2020-10-17 02:44:51971e189c279099a876618c3226ef35e5afc62b91daf3b8bde466a424fdfaa063docHeodo
2020-10-17 02:37:174885a6fe3e6e3cf17f4b9c157b848115b2b51fc4b8e3e478650c6d8401062476docHeodo
2020-10-17 02:03:15559b9d806bede7814d4c85984a6e6815356e1ce8e730ca7907309e03eed5fcaedocHeodo
2020-10-17 01:33:31674b59aa10f963845214c91833225375d26e69ccece07609e8a5425a8d952346docHeodo
2020-10-17 00:58:195422842242a23ce0b01dd8151fb9d86c9c6b41ed43c792e7c4b714cc2cd2a1c4docHeodo
2020-10-17 00:36:0573a83fd3188295433015762cab772d1fc554aad7da08da7e0373ba66a0a9ba38docHeodo
2020-10-17 00:24:001e52bc38ce5e8a3c4da25a7c7e4d8169a31fa22bfdd9e43759ff57d25b40db02docHeodo
2020-10-16 23:41:53ff58a7b1e34b5e2de40fa9fa020ecc46b3c1cf0eedd40653e719e2fba15ce05fdocHeodo
2020-10-16 23:20:1639319e4e0e23653363b81024b93090dbf717424cc2dcc3c0291e6e56e3328ed2docHeodo
2020-10-16 23:01:59d546749eeff6828f731a5f79a2352276696d9ce6d5614dc6e9779fa2dbbe6799docHeodo
2020-10-16 22:34:57c5480c5bcd7c9b06e744ebfca49ef98e45da1200c5e3762d6b47d9825189f3eadocHeodo
2020-10-16 22:01:19cecc7a6d54b23fac9722185d9674512f5b51840e9909978de84128d07172791bdocHeodo
2020-10-16 21:44:04ee2a584f20b8fae9caa25baa3476b1dae0aac0d511a2a2584dde95eeb42c4d06docHeodo