URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: umwelt-kirchhof.de
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2021-01-11 15:33:45 UTC
Total malware sites :1
A record(s) observed :1

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2020-08-06 11:47:33 185.137.168.76web9.freenetdomain.deNot listedAS45012 CLOUDPIT- DEno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-08-06 11:47:33http://umwelt-kirchhof.de/mediapool/payment/u4e...Offlinedoc emotet ext epoch2 heodo ext Quakbot ext spamhaus

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-08-08 10:42:50f43b44e247e702710aebe9ba02ffca511b4dcc85f9e09baf16e21cdcb979894edoc QuakBot
2020-08-08 09:11:42de2c0d155018df39b6034698ea9c4b08c4abba8900d1fc8c386b299d49abe792docHeodo
2020-08-08 00:08:0499c91d2f1ecbee44baa8f5c9f3bfc0e2d7d11b63cac8d777f6dc1dd3b1c2aaa8doc QuakBot
2020-08-07 23:17:5841ef6b4c13a98f92f61c7a14e9619f68f166ea699a7ea6eee9a1bf0165512f81doc Heodo
2020-08-07 21:46:5676d2a23274d866daeacca1a0038a331961c83d61224504b2c10fd41ee3d133dedoc Heodo
2020-08-07 19:59:403f4c381531d4604385f763850e0e32cd72c1b21b78330327c64b2da16e62e9f8doc Heodo
2020-08-07 19:27:32ceddfbaca020f738159a9f23ff626356400ce8a3dcccb86e056e207a1580543adoc Heodo
2020-08-07 17:57:06789708613dc7aefd92e2baea4ae403af56c32edcb2dda9c7dcb85a188ba7bc68doc QuakBot
2020-08-07 14:03:27db977569e3b88580d22bd552139c0eb43b6fd20e9044a40473d6d2f056434c77doc Heodo
2020-08-07 13:27:09d26d75237bd8c8d72d525dcf8faf1b5548ac653b28db916a449b065b30de327ddocHeodo
2020-08-07 11:56:01aa1cebda0a54ea6ea94341f378ef9c0a40c16b9ed1906b2c51e22b3ff3780383doc Heodo
2020-08-07 08:35:4377efb11449d2e34e15961fae78fae8a30ce27d1fade0922bf0fc62bb9f422645doc Heodo
2020-08-07 07:03:46a7dfc7a90aff0ded33424138ee9d5069525c5f635e7fed5a860036ebf5a9401adocHeodo
2020-08-06 23:00:421f27b0c851f6193afa8545d83066678915312340a2a6a776103add49154fa6d7doc Heodo
2020-08-06 21:30:1530af847ee3f05ed2b82fb30eae584a4e5fb534acfebb4b753739a3eaf0c3918fdoc Heodo
2020-08-06 20:00:576404a5a49751db7e1c82b5bdffadd5171eea2b5a4b43f9b77afb50b2095df09ddoc Heodo
2020-08-06 19:40:503c74dbf95327daeaf341a8b8b7eefbe17199eb34186f75217d342c3b384a1ce5doc Heodo
2020-08-06 16:22:284282ad664adc0d00327b3aaba46c856067f46b12addd12942a603acc3b93c443doc Heodo
2020-08-06 15:58:1305c72e97f5d458c6490496c4ac646b9555bc470d63b6bbea42875e5adb1a1549doc Heodo
2020-08-06 13:12:128077cb8beab31be6f1ab2d11a0f268388af485e5ce5ce2b0db95aa32ce37e46bdocHeodo
2020-08-06 11:47:3304ac8586de5eb0550b5465f7dd269f84984416c994fdabc3a1ac42ae120b4c09doc Heodo