URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: www.immowert-htk.de
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2020-12-21 21:54:03 UTC
Total malware sites :1
A record(s) observed :1

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-12-21 21:54:04https://www.immowert-htk.de/wp-content/tUlmR2tr...Offlinedoc emotet ext epoch2 heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-12-22 09:08:39ff2576fe2ef3d0e73e1b95e7283535cf0d6874a1da73b31c6c320f25ac2a4245docHeodo
2020-12-22 08:56:1502170586397abeca0120b55a547fd80c877eb800f02d55c6aad2473b369f0a3ddocHeodo
2020-12-22 08:26:21e18f34fd2b761c5ff699a3bb1e6bf4fa2f9d43f91cfc0ff44794e8ae7e4ae926docHeodo
2020-12-22 08:10:00227f0020c011b4ed270fee166cb3427d282fb03559ba3fb44597f260ec70873bdocHeodo
2020-12-22 07:38:20a920635eb94e7e0d4add7880d523b5d55170d97bed0841dfc32e8ee4657c6106docHeodo
2020-12-22 07:19:397c7bb9a49435ab8c1bc07689750d6853d406473e512b9d4720330b8489a35a2ddocHeodo
2020-12-22 07:04:06a442c1871b5de54fb33fa28cd9a9f5b898ba0490d6bd20f09259b15bb81f9ad8docHeodo
2020-12-22 06:37:565678fb2398f8ae050763eeb8ef6b94b0c43560105c301b6db5c453c84c7e6aa0docHeodo
2020-12-22 05:21:2016435a7bc02d8c0ebfeab05878d59be715c385a0d646258abd2ddaa498800d30docHeodo
2020-12-22 04:51:3199791db1cb487d25ca3160836589adcad5fc57a1dceecd3cdc82ecbee51716bedocHeodo
2020-12-22 04:17:33bbab6187c511a9ba4756bd3c521c97474ced9d06588b917d285dd457b4f590d9docHeodo
2020-12-22 03:54:082e2845f894af1842a98bb01b55cf68757e6c573d1d97c11cf41818de4a70f82bdocHeodo
2020-12-22 03:29:02d841f4da05bdada1458017cf1fb3029d311ce6c10ba7f8e0787f663dffd2600edocHeodo
2020-12-22 03:04:006adf12a084ccf2eb6dd19a35742a35f03bcba878416ef83b9c520e17d55ac329docHeodo
2020-12-22 02:31:49173291cf73cc4f82f9a217cbdcc192f4e0b7557e7068133ce2231a023a47ad28docHeodo
2020-12-22 01:59:586c26774c4763bbbc05c970dbe0b96045fefbdffc80c2d7878e8ca8089f0215c9docHeodo
2020-12-22 01:47:15200414fe067c46610fc5739841fdbd2c50b2c19b65693fffa9e8999c094b45fedoc Heodo
2020-12-22 01:39:310c2c97f9c94b970cc23cc8f11be9fcbaf1630395d13060ca289eb0d9284b4a7ddocHeodo
2020-12-22 01:15:4897f5f7f2c37a21e2f3934ceabe0df7eea42d7925f1b3a4e9a194fa005509dcc3docHeodo
2020-12-22 01:02:45d272b679a600f9e255a18bd559dcd64aaaf1ced9173cfb1fa5d848629921852fdocHeodo
2020-12-22 00:34:294be32fc9457cb3575d9f59665e4d11c4625dd3bff4cc13ff2f25aa739753173bdocHeodo
2020-12-22 00:26:25a02591c24d3c86f54be79271c7ec7e679141ae9245b3ac62da5d6f382edc0880docHeodo
2020-12-21 23:57:5447fb863700031a20e693b095a8cdb17ee3304a8e6db9ddee52b8b003d707cb4ddocHeodo
2020-12-21 23:34:176a7525a409509ac4ff33649e2dab4cc9580795c516cf135dc3a0b5fb5ad0003cdocHeodo
2020-12-21 23:09:13304df861b9a54bce9054f0401652f3fde7dfee32bd8da0bfc3c18c48c2ac4a52docHeodo
2020-12-21 22:55:44b00dccc179d09341ac62fb1fc736df75c2e8b5cd6afe6eeef1d1a460caffe3c9docHeodo
2020-12-21 22:25:27199329cd5b35fa9650fa7ddb3597cc3c1c1e88242b94558bda89b7aa7bd6c463docHeodo
2020-12-21 21:54:0364db024b0457fea3b182aa36675d4e6049ef7119c4eea836b295ccc90c3a4301docHeodo