URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: www.kirschgruen.com
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2020-10-27 22:53:03 UTC
Total malware sites :1
A record(s) observed :2

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-04-27 23:20:31 81.169.145.149w95.rzone.deNot listedAS6724 STRATO- DEyes
2020-10-27 22:53:04 195.242.103.104server104.serverconfig.centerNot listedAS9211 WORK-AS- DEno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-10-27 22:53:04http://www.kirschgruen.com/wp-admin/mwzPM59hxJi...Offlinedoc emotet ext epoch2 heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-10-28 20:18:37304314cb220d129f1eb18cc72da395146c2515aacaf0b81353667ddbf78413bcdocHeodo
2020-10-28 20:05:33ad10b386d964b6056e529c2bdb70ccb19ba21b3b0a59ac606113fedc49626b81docHeodo
2020-10-28 19:42:4081c78e098a3815757ed038c5f386d54156fe5ea85eeea2bc5baceff398d35a3adocHeodo
2020-10-28 19:32:40eae43aeb02650178d0fd02ed1c824f36d89c2a2950399621c4a7c29ecb8d7e73docHeodo
2020-10-28 19:02:115da940231b1ebc70e4c974d89da825e72365c081f4b224b0308a7298de66a788docHeodo
2020-10-28 18:48:07290d99668c637b392210c43c77b9672357db0df908a2cee8c6c84399c0f3dc55docHeodo
2020-10-28 18:32:02ac9272ebdc022c3e93ef6dff217e30a0434094ccb3b6c5ab79cc97a94cf1825ddocHeodo
2020-10-28 18:14:0411dd803e4e682105076fd2c1d86f54e36702074879acdd270b796dc604de12c3docHeodo
2020-10-28 17:47:357d38c4d98d05cd3a7a0fc6898c9d86ef1c29cd8dcfa3403d0222ff508843a325docHeodo
2020-10-28 17:28:4521509e892c4ef6e47bd2fe0d2290b20e48e4680f2f3537f12a061cd5912b1cacdocHeodo
2020-10-28 16:59:43c3ab88e066a71a81d82954f02589e7b1e912add8716a76fbe482904abb954376docHeodo
2020-10-28 16:35:598964a2fc0ce0fce0521fe84f28938ca5c30adb42bfd9ab75b4ef0509786410a2docHeodo
2020-10-28 15:52:216c318a9098138d3197e96b6f8b19f0e341154549e78ea5e0671f54f96328d340docHeodo
2020-10-28 12:57:085807c5621dcd6e33c1d3473267690be392c375d14f61a37dea7a7b4c510d0376docHeodo
2020-10-28 12:49:469edf498a6066ff0e5be970253b4e90411ca4d164fbee2a688c65724a0a0dd403docHeodo
2020-10-28 12:18:054c8c238793080292318a1698f8e3bb506d63d0e1335171fb6ba9ce1369c5daeedocHeodo
2020-10-28 11:56:30ccf6b5ffa1615196b2e6ba3008606a6a4a2b16ba73ef6d1c68095343fcac2d7edocHeodo
2020-10-28 11:16:30586ff0aded5422c4339495e0480f86f8454c8a813252983954522edc060f6e0edocHeodo
2020-10-28 11:06:50f557390768f97bbb354c11917ec9e1ae3447832fbc09b34625656d8cb3db0931docHeodo
2020-10-28 10:45:11f8ce9f330d0b10e66d01f784d66c98d45fb6dc902c622d65ab15dbe965cf36bddocHeodo
2020-10-28 10:17:54b2fd50c9b74180bf57162267feec075ce16b9d37ead25cca5f97840e44e61a1edocHeodo
2020-10-28 09:58:47b749fa9443216bb372f3a786fe6f921aaf83800f69c46eec065ad8b2bfb0ad89docHeodo
2020-10-28 09:38:50a8d759c3b4c570d5c7d196edd616d1816f0bf51f7d858bbbdcf8bb41f85242e9docHeodo
2020-10-28 09:16:40430cbffbdc5d6ef1494df4bf0b8ca22a4e95fcc129261a53ee799778b2ef644ddocHeodo
2020-10-28 09:08:559ef4f6f51b375bbf59cc1d992a0be8455a3a9c3a026b28c4abe77a4f16805c50docHeodo
2020-10-28 08:38:08520ca27ad3a13618d306b397f83a91daf238997358520459895991c6285328e5docHeodo
2020-10-28 08:16:48b5967d8f6f4eff72fd314911e828c2376081aa4d190afacbbbfa0fb390f13e4adocHeodo
2020-10-28 08:00:3995d0a6acc83d661cf2f495f1e9b4c465b64f5fcfdfa6a75c0ad72beac8e31b19docHeodo
2020-10-28 07:36:26b1de6df6c2b5ac15a030ee3b606165a808dd7fb78a4d22a267e304c2edad0fc1docHeodo
2020-10-28 07:21:31e2f58ed91009de4f156ecdfb6fb04401ce82b2281242941e3a80fa9fe451cfcddocHeodo
2020-10-28 07:01:2568cb170125b6d8fe85e4573f3324f27ca595e8a2a2f0d624742c817590b42765docHeodo
2020-10-28 06:46:45b10f4a4b46a88d8bd137cb2d76eb827b89f16acd953490d55b6161aa0e99b7aadocHeodo
2020-10-28 06:02:27ed432b4a387becc419df96f24140626602c26a169999780c2309f0f5190a1321docHeodo
2020-10-28 05:47:201d6286cbe99db0f75e74a7ce7e77a50699b075af54aca64f8d2fb9c235f5d094docHeodo
2020-10-28 05:27:250c7d3ec331ef86b021bbe0e3892bf17424bd028421e6f164f683a969e38c44d9docHeodo
2020-10-28 05:11:510250f0fd12c78f615ebd384a8bda63e6ff45039b0005ab5211ae72a4ab4b97d1docHeodo
2020-10-28 04:50:09a04a9caeaaab58a3e7ba0ca98fe001e59df299a8f34f3c86994128170c74b5ffdocHeodo
2020-10-28 04:23:182ff2d2fe253a47fbc4e9580ec37c3989ea365bf7b0475b19e6cb580942dd1630docHeodo
2020-10-28 04:06:12d3e4041b0325e0794fe6a1b0a78783b8c05b595f0631c24d7d8e11c53fa5e8e4docHeodo
2020-10-28 03:43:35f3caca68ae462481d5bac777996fa838a0dce95c7eb782713404fa5e3712a2abdocHeodo
2020-10-28 03:24:16c3e8b7bf6e9c96cf2335ab8c491d537cf81a2c322e9b305fd0545d051c613a83docHeodo
2020-10-28 03:11:1425578de149cb4dddcde0db6ab49f1ef760faf659fee06a0b86d0fe095cc438e6docHeodo
2020-10-28 02:43:19b7ee22f0341587e221b8a80c3caf8fe78b8d8ba06220d4cc28641f82d0d32bb0docHeodo
2020-10-28 02:24:45e809029e144d585294881c1cc21836d527c1547b45b9f97446ca6bc9987c3ee8docHeodo
2020-10-28 01:59:165e692d0f6341638d540a0dd0458062a4852cdc65dd6551956aaa28c4d417416adocHeodo
2020-10-28 01:49:05176e68686c8b9f4fd451378d2515712d6b00a0870c518d0c530d020d13bb3052docHeodo
2020-10-28 01:10:10ef87afc95689c73759bee33f83ee37d3a46dcdd5dcd498921e9cc06eb3f02455docHeodo
2020-10-28 00:48:134e5d8413edd514941f72294d90df25c1f1ea77bc15de00e104dd0a9242c1085bdocHeodo
2020-10-28 00:38:170c874ea74e47b55d95a88c84aabb2e74dc3938824474937df34da0971b59f4c7docHeodo
2020-10-28 00:10:026310463115ebc704a66281738da24d3ddc5e2b7142db330ffc61d25899c74869docHeodo
2020-10-27 23:48:599efa8997bf4ffcc29b996b1a0dd651e92bacb8e79143a0c008cf1eb4a8b41cbddocHeodo
2020-10-27 23:31:5747a36aa6f44f68488681fb4c7eef56b83e5003f35562442d29e744354581e8f0docHeodo
2020-10-27 23:23:13ba6e524ebd87cb03f9976bd9f5dbacbbe7d6cd3c9c1ba25621aab296fd05c6c2docHeodo
2020-10-27 23:04:199e67927cc9cf11b38167386aa1974faf5516155e23095cb9b5a2daf9686957e6docHeodo
2020-10-27 22:53:030543f2a79034d979e274c82c77ba11ec29704960d1f21ce51dbb3d9982ba832edocHeodo