URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: www.belman.de
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2020-10-16 21:34:03 UTC
Total malware sites :2
Online malware sites :0 (0%)
Offline Malware sites :2 (100%)
A record(s) observed :12

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-09-18 02:08:35 188.114.96.3Not listedAS13335 CLOUDFLARENETn/ayes
2025-09-18 02:08:35 188.114.97.3Not listedAS13335 CLOUDFLARENETn/ayes
2025-10-03 23:48:28 104.21.64.195Not listedAS13335 CLOUDFLARENETn/ano
2025-10-03 23:48:27 172.67.154.218Not listedAS13335 CLOUDFLARENETn/ano
2025-04-27 15:00:13 104.21.112.1Not listedAS13335 CLOUDFLARENETn/ano
2025-04-27 15:00:13 104.21.16.1Not listedAS13335 CLOUDFLARENETn/ano
2025-04-27 15:00:13 104.21.32.1Not listedAS13335 CLOUDFLARENETn/ano
2025-04-27 15:00:13 104.21.48.1Not listedAS13335 CLOUDFLARENETn/ano
2025-04-27 15:00:13 104.21.64.1Not listedAS13335 CLOUDFLARENETn/ano
2025-04-27 15:00:13 104.21.80.1SBL681411AS13335 CLOUDFLARENETn/ano

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-10-16 21:42:12https://www.belman.de/wp-admin/DOC/Offlinedoc emotet ext epoch2 heodo ext Cryptolaemus1
2020-10-16 21:34:04http://www.belman.de/wp-admin/DOC/Offlinedoc emotet ext epoch2 heodo ext zbetcheckin

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-10-17 11:54:36360a5cb7eed923017b4ef07460e7652362cdf1fc0a902516addbb8e244e30134docHeodo
2020-10-17 11:45:17360a5cb7eed923017b4ef07460e7652362cdf1fc0a902516addbb8e244e30134docHeodo
2020-10-17 11:16:23bd5e318573106192eca830985c93ad07583928c7ba9b1f752ee5ce3e38eea593docHeodo
2020-10-17 11:11:47bd5e318573106192eca830985c93ad07583928c7ba9b1f752ee5ce3e38eea593docHeodo
2020-10-17 11:06:13b0f945ed6afda303421f9501b2b2d1d2996a132eb27486911019cb9996538460docHeodo
2020-10-17 10:50:3636d4d0f8ba694e3a45ac3fd858e3312538bf61d501403dcbe763638f043ab3a1docHeodo
2020-10-17 10:34:41c5b951c65f67f1136dedc670dfa0cf0fe59abb9172a0fe5a6011e2882e129e8adocHeodo
2020-10-17 10:22:37c309ac7c5bd891429998c87f40086ae669e29affaa99e133c557fbb78bfa269ddocHeodo
2020-10-17 10:20:25c309ac7c5bd891429998c87f40086ae669e29affaa99e133c557fbb78bfa269ddocHeodo
2020-10-17 10:09:10169fa4037e8c45a38a3b2e862d860e955fc810c63682c78155bbbd45820b83bfdocHeodo
2020-10-17 09:53:59fa3c245c0bfe5a4b95d229481cbdac5dc3798f1948badeecb3dc692f589c5f7fdocHeodo
2020-10-17 09:47:4308171ab9613c40f0cffda97d95d104eabd33aca151d19a4315b8e2ec2142fb63docHeodo
2020-10-17 09:22:49e9fc0607223bdfcf6365b914d806c89315bbdfff9681454d6b67b060ef04024cdocHeodo
2020-10-17 09:22:23e9fc0607223bdfcf6365b914d806c89315bbdfff9681454d6b67b060ef04024cdocHeodo
2020-10-17 08:50:30fdcbcd4f6d22900775055fa03ab8643f72041e73d6af1c271a672ce65268e0dddocHeodo
2020-10-17 08:49:21fdcbcd4f6d22900775055fa03ab8643f72041e73d6af1c271a672ce65268e0dddocHeodo
2020-10-17 08:24:12d6b61570ca15f09c5e9707aaa5658abb2ff3c1916805b287b31ceb75a95f4130docHeodo
2020-10-17 08:18:31d6b61570ca15f09c5e9707aaa5658abb2ff3c1916805b287b31ceb75a95f4130docHeodo
2020-10-17 08:15:01ff9996026d66c80170010bab3d84d0ba1ecac3a6b87f8e694008feb0bc0b3d4fdocHeodo
2020-10-17 07:33:50a9c15187e473446421b0e900dcd094ee8be1c5ac010d6d2a19bcc988f60d7ddbdocHeodo
2020-10-17 07:20:29ea065a0dbc3ca645237d0c98e82887ca636451f3fa822c6c0a087a2fe98c230fdocHeodo
2020-10-17 06:49:03cab952f8c6436054516b7fb9b6dc980a0921858a4a312229099f2817b9846340docHeodo
2020-10-17 06:44:53c0f957552ea0bfa9ec43b903ee17f870d19d10026a6e967b5ba434e26758232fdocHeodo
2020-10-17 06:22:009e5f94414bcc33c4f9405dd2c0747ccc8c79921dbaab834a1ce8cd0205bb1f9bdocHeodo
2020-10-17 06:09:413ad213e4b7d2660593144245f06a9ba71b10e326cbf5996b2f632ed5457e77d7docHeodo
2020-10-17 06:00:22127e5f88e44a1886181820087f5a2d1bb09ecec7ca49c027c33c9cdead79c1acdocHeodo
2020-10-17 05:56:10127e5f88e44a1886181820087f5a2d1bb09ecec7ca49c027c33c9cdead79c1acdocHeodo
2020-10-17 05:34:21920a210b924453a21c734f46a853d5eefb835b8f7e33cc3402355037771648c6docHeodo
2020-10-17 05:17:41ab8be8e21a7c5f0a158818bdf5fa9883acaffa78d8cfa5cae36ba7d756b8fed6docHeodo
2020-10-17 05:02:07ca5d768289c225dea34f82176591548fc03963cf653f0a8ea0b6e0f9f71ca3aadocHeodo
2020-10-17 04:52:214f1b55b5cbbaa28b0d87b93dd256cebd16df18a51e081378940ad152fd24da8edocHeodo
2020-10-17 04:07:257563b098e425087d70e59bc0ad1d712d39ec6286fc63eaa9a9eea68f9a7ede26docHeodo
2020-10-17 04:07:037563b098e425087d70e59bc0ad1d712d39ec6286fc63eaa9a9eea68f9a7ede26docHeodo
2020-10-17 03:55:222a73fb122ea506f3c1e9b1ce6acf917b3fd3c38b886848986007c1a0e57a91b9docHeodo
2020-10-17 03:44:27252e05a52d4bc9d3d266533b1a75bfab674989b8d3a4f0ff8d898529379329afdocHeodo
2020-10-17 03:21:56d1e952f7b8eac274a9eb54c0ce6e8c6542aaa16cbdf7345c10c79852c2d5bd0ddocHeodo
2020-10-17 03:16:483cf860a4fc48852cfc15307168a655fe09d970de805123a370c888f18b949aaadocHeodo
2020-10-17 03:01:33cc0b6720262ce77c846acb19ec1f31511f0f465f1bfd03bd5e8bfb3c6b3e9828docHeodo
2020-10-17 02:58:31cc0b6720262ce77c846acb19ec1f31511f0f465f1bfd03bd5e8bfb3c6b3e9828docHeodo
2020-10-17 02:34:58bb96b8f7ca8418e8d16ada7ed78c33abe3bd24d7ca843033cc73e73e4c606fdadocHeodo
2020-10-17 02:30:44bb96b8f7ca8418e8d16ada7ed78c33abe3bd24d7ca843033cc73e73e4c606fdadocHeodo
2020-10-17 02:05:5419b133b4ad7b5c3072ca746a89f06864d39ca4c8985ddfb2eeadd125ff5cd7a7docHeodo
2020-10-17 01:54:10cad389f338446345616f9a4f005b47f186be55fdd914d1b88f42bc4f26220685docHeodo
2020-10-17 01:40:52fd0ec2733cb7fc4d8f934cf81b56a9a6fd2dd7290c257cdf4c2a1b3da2bcfc10docHeodo
2020-10-17 01:33:32eb06448eea7b0d73132945671275ea572688e13de195a89974d8315900ff8cb7docHeodo
2020-10-17 01:18:174f6043ed53481592c3b9db4608a157df568b466062cba2018b8e5c59bfb40563docHeodo
2020-10-17 01:10:564f6043ed53481592c3b9db4608a157df568b466062cba2018b8e5c59bfb40563docHeodo
2020-10-17 00:39:2199acccb026919eac0d3249c8a9207a71d032fbe59c7540c12aee398ae86e6780docHeodo
2020-10-17 00:34:1899acccb026919eac0d3249c8a9207a71d032fbe59c7540c12aee398ae86e6780docHeodo
2020-10-17 00:27:548d9046f3f3aef8eaa74dbcc4aa33811b0f06438b3c4fd36bda76c6190da4f669docHeodo
2020-10-17 00:21:271f9fcb8ad3585c6cbf7250308fc58ebd7fd913baf350cbd3d7fd8934c9e33e43docHeodo
2020-10-16 23:52:18c25321d27755dd74dfcb51c16c96a607d16b09b59b1cbe7f025dc89763d9d630docHeodo
2020-10-16 23:48:163bae78182dad47ac43920171f44e275863e25a8cbdd07ac0b0279edb751dd12adocHeodo
2020-10-16 23:46:553bae78182dad47ac43920171f44e275863e25a8cbdd07ac0b0279edb751dd12adocHeodo
2020-10-16 23:22:1370c3e11a1960c379e6be0215b70999623bb37cad12e932cf4d222f70f078c6d2docHeodo
2020-10-16 23:18:562d4a3ae690cd64017a114de08ffb095c8208ca65f5647809600f6caf8ff7cd97docHeodo
2020-10-16 23:04:156647111dcc98f3a01470eee7de5a3b93b579a08c585cd3553cbfbdf3d54db556docHeodo
2020-10-16 22:55:066647111dcc98f3a01470eee7de5a3b93b579a08c585cd3553cbfbdf3d54db556docHeodo
2020-10-16 22:36:22546efc6d0a2cf1ff3052b328188d26e9576664e7795de51b7ac16d3e5513208edocHeodo
2020-10-16 22:28:338b9e3d3ef38f9f1096f096111876eeffc30737416c2ef195b4ec180c0d3eb176docHeodo
2020-10-16 22:15:44050d172a5e413b5f0a7a68bbbb0684b485f20b0b5f89bf3f9711b0c8e844b723docHeodo
2020-10-16 22:01:43c829616c0d226e76bf936406e344c75c3abea9656fdf7b4b1d73934e6a853b3fdocHeodo
2020-10-16 21:46:280e28ab1cfd540547e916442f60de01263eaf13058f99d4cd5d15a2cd5c078f1adocHeodo
2020-10-16 21:42:1259330f6abd11ccf8373697955746b598be71ca8c69774640b41ebd9650abb398docHeodo
2020-10-16 21:34:042fbf73e1a8260214e5654186383efb89efb8590b71bcb92848290ffb06b90c8cdocHeodo