URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: ultimate-24.de
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2021-01-11 15:34:00 UTC
Total malware sites :2
Online malware sites :0 (0%)
Offline Malware sites :2 (100%)
A record(s) observed :1

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2020-08-06 09:38:05 185.137.168.72web5.freenetdomain.deNot listedAS45012 CLOUDPIT- DEno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-08-11 23:25:35http://ultimate-24.de/logon/common_309164691697...Offlinedoc emotet ext epoch1 heodo ext spamhaus
2020-08-06 09:38:05http://ultimate-24.de/logon/personal_section/ve...Offlinedoc emotet ext epoch1 heodo ext Quakbot ext spamhaus

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-08-13 23:52:5449bec245edf7c3ddaaa75cf115aa3fecafa8e263ddf50c8370239411e00de596docHeodo
2020-08-13 17:25:0396171866f817967e4fea70064e3c1521651d2c1102b254aaa2d655e1a5f7b1f6docHeodo
2020-08-13 16:52:41ee74aec4dd2a3d709923eb45510d6a2e75a83c4c86e2fc4ef03b99240975d1c4docHeodo
2020-08-13 14:47:341aacda32cfc9842059b8027e3c060e0618f4d53d17e35bf2e46ed4508bf68098docHeodo
2020-08-13 10:33:18764307084ac62f0f93eb1af151418ca65b0a225868b196247e1cd6f04cb740a1docHeodo
2020-08-13 10:02:31646c649d5a2f5ce95b1786afce717859e792a5ef3aae5b5ddd382874755e6350docHeodo
2020-08-13 09:13:52e9cb882590b439f538e076ca9eb7a270735d50b940661f17932d4fb75693f536docHeodo
2020-08-13 06:10:1657fcedf7b710607daf3ff9d1d3f81b02e5597d6a760e10c3af3805702f2e2ec5docHeodo
2020-08-13 00:42:310453fae20f8759d4b93663ba58ad3a923f868ba094decd801c43eb9d270f3d8adocHeodo
2020-08-12 23:11:51508b0f1d8e5ede23aa2da775ab08b29c3be1fea89e1d2646c00c0b3c3570af5bdocHeodo
2020-08-12 21:22:38986acc515daf31c8bd8d424f27e1307eab1f51a043c896ffeb2cd94df1eed8a1docHeodo
2020-08-12 19:00:35821518f4bc7fe660a254118cf984e5166801904f39769314d230bdd98e69ae6cdocHeodo
2020-08-12 18:15:559a747b94af3b1fd16e015c6dcb20adb1517dcfd21e7ba2886ebf39d2c0cc7a94docHeodo
2020-08-12 16:43:3619a0b43438b15957a52c653d27778c90008ae27821fe97db817356de978f063fdocHeodo
2020-08-12 16:25:41a5ce7c141cf42b88969840733ad4c75043727f228bc874f55788fe4d8ea17039docHeodo
2020-08-12 14:22:095ea80c59d4629ef6a11ef42c5a585fc6c263cd78ce8876440df9193182199ef6docHeodo
2020-08-12 14:05:26b4bf6e6e6eccfbddd61630876d0209894b69e9b122939c029d31b8b8b627d478docHeodo
2020-08-12 12:14:06e43bee7af8123de382fd32886e7ddd9a114de8c6d4276b848d35ebdcfb049564docHeodo
2020-08-12 09:31:04c3c294923b097cfe13d18c61ec3f8862ad52e37a5f0e416399f16db51af7de25docHeodo
2020-08-12 07:29:52e9e73551b173018c97ccd712ad5590dad7d9a180b3a4d70750d5c56ce4ad282bdocHeodo
2020-08-12 06:44:5208e063ffd684f75a775f7dc074dc7ff0c06ed18b48ac1c1caaf8adb80363b9cddocHeodo
2020-08-11 23:25:35d91d2770d960e452517e8429c80a8149a8712d7fe90609b16b869379189cb8dbdocHeodo
2020-08-08 10:42:47eea494e866becd4ce5d21eaf4ba21c10cb806a32d385336edd7517d8b14af028doc Heodo
2020-08-08 09:11:44ba50483a5407dc7d213263534638c2e4e0445d9d06f977dc496e979beda32f33doc Heodo
2020-08-08 00:08:0863d401363df2dded7f8e2507f64a6f20c9443fccc2f862d8b78641328d13f579doc QuakBot
2020-08-07 23:18:075d2b88e4fefb1593bca1de5b27276ba0d00140416c91339fc6fd44431c8ccbd9doc QuakBot
2020-08-07 21:47:020ac47ffbd42f03c480345a7dd4402200a64b23da9c45e237bc7dd243e9047948doc QuakBot
2020-08-07 19:59:42acf64b8e97e3201f06314a33733d479adef77620d8c569663be2e02c3ef38e98doc QuakBot
2020-08-07 19:27:3100aa9e9dcbecd3aa1f33bae92e906d48b96429b10b0ce2dccf301ff03682d536doc Heodo
2020-08-07 17:57:03d44d322769b573492a8bb345b4ffa1062789e82c500080d25cd09227c79d8483doc Heodo
2020-08-07 14:03:3418df1f0332f24e7a2a573935396295be9ddaeb01f6008e8e0adb15c0a2b51bbbdoc Heodo
2020-08-07 13:27:109b1840f434d4ad429562837709456e572e94dadc8428ec8b9168042ca0d23361doc Heodo
2020-08-07 11:56:02c7bf1627327bc4ecfac7884f9f9516a48c8e95bf7628f17043e115c72f68ff26doc Heodo
2020-08-07 08:35:37deb669530640786d01b93dc6537ae68c13fd0b2785de9133fcccfa08dd5fb96adoc Heodo
2020-08-07 07:03:58a6cf38618a58d0076e02ca5aa15020a6971e1367e0b8c00168775a31f8b92618docHeodo
2020-08-06 23:01:104105a7b924615ef7a3d142ec138f6a7340a715250f3e957c73a5c377c572ee7fdoc Heodo
2020-08-06 19:40:561e35f91e2a870f4fd57e12b38ad4d191424815e19a8e73d5cf3b36188308be4edoc Heodo
2020-08-06 15:59:4713d3f89e0880281bef900884d46138dcef1c203c652e750c13fe38ff5f968ac7doc Heodo
2020-08-06 15:38:5448c9122a26741dad73b2b5eb26728c9aea5e93081462554216fe3710ce612a22doc Heodo
2020-08-06 15:02:4992ff6045a6d5beddda905a0f0f3d8f1e21eda444f0434f20819d682cd6103c50doc Heodo
2020-08-06 13:11:5264cc76e8a30b80fea4d14b10dd5fda014463de539eb8c165aae3c386f0ffe998docHeodo
2020-08-06 10:04:49b3257fc405ad35b2ba3b4f2480809bf548eb54ac85d635846be5de2d7f313c8ddoc Heodo
2020-08-06 09:38:055e8577ab31f890f1a4b1d74b0f90b14ae0fad744678fa8936ff7cbcd9e85b575doc Heodo