URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: www.sbneumann.de
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2020-08-27 18:38:32 UTC
Total malware sites :1
A record(s) observed :2

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2020-08-29 19:35:26 146.0.35.70epycserver.ctr-dragonmail.deNot listedAS24961 MYLOC-AS- DEyes
2020-08-27 18:38:33 213.202.225.111srv1438.dedi.server-hosting.expertNot listedAS24961 MYLOC-AS- DEno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-08-27 18:38:33http://www.sbneumann.de/templates/paclm/qeMyI/Offlinedoc emotet ext epoch3 heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-08-28 11:35:110d9a579f2f169229f5439c8401e5545d716cabb01c7f28c012c5a986d940a312docHeodo
2020-08-28 11:01:33e822f692db9cca639db39d7eb9c43eb6e9dda23f3c26e26e231aa3f7d2aad69adocHeodo
2020-08-28 10:44:58642f14769b07ea8ab51a202c4f9b39fc9d7a2a6181baefed723a2d581d729a7adocHeodo
2020-08-28 09:24:15635e1141dfd9268f184274a609f325fe1aa27d7af0a4153fabd3ea891164543edocHeodo
2020-08-28 09:00:565fcecf8fdfc590ef687d6590209ea3c2ea0ad746b5f4746e537cd64813fce05edocHeodo
2020-08-28 08:13:428369cd1f9e4a1892c61f02631be1abae0346cb1972cda90b4cb4a36ede626e7cdocHeodo
2020-08-28 07:49:39a03a331036791b2d25681114c722041029d9e995c684190654e5f664efe761a0docHeodo
2020-08-28 07:25:409de0d253eabbe24e3bff7deea232a7e4ce2dc5d6122df90755128f26b890d052docHeodo
2020-08-28 07:01:422012064cfc4ba5e01f3677d2f52053612232c932876a8266ac2bd8bd8a35af6bdocHeodo
2020-08-28 06:38:241d2b270375ae00907412647180a7dffae422dac066c42966c9cca4bd1dd8dfe2docHeodo
2020-08-28 01:25:027e0d6fc8bc7a69d5e27e2130c83b434512af52a5337145098c2426f62abf97eedocHeodo
2020-08-27 23:54:47b1f8d82d19d6020ac3606afc8e0699ddde66a03ce07d5d7f6b6bc45a238084f2docHeodo
2020-08-27 23:39:06474fe5a4009da897047f91b9d9b8f40aaa5d674955f0815934507029c7038976docHeodo
2020-08-27 23:23:06907ddcc7b2dd5151f379c7897b9de25bfcf3e3f5a8a58043b3339a540ee5ab76docHeodo
2020-08-27 23:06:376404e3e703da64c594a45e59e02f1ebd13380fdfb4462b7f6086317f46432f3ddocHeodo
2020-08-27 22:55:46d7c4c7378b94661a714fe656b5ec74214db2780401d214fb0faa2d6d7b627199docHeodo
2020-08-27 22:54:505eb93964840290b1a5e35577b2e7ed1c0f212ef275113d5ecdb4a85c127ae57adocHeodo
2020-08-27 21:20:54249258e389c57dae809f34520051324f678dda2c946e37189377ac5ee3a7c8f2docHeodo
2020-08-27 21:04:069293848a589af567094cd2bdce0ee80f984253bfc03742c8784009050f881b36docHeodo
2020-08-27 20:49:315bf845e70cde6a5112d1aec081e98995bc8494ce31682762bad07ec7c92a2889docHeodo
2020-08-27 20:33:4036ee717608500b1f82f45e91f5a2c3e81bf3d417a824eb6d932c2853f22fdda7docHeodo
2020-08-27 19:00:52be05ff271ea7042c2e01c9daa7f63ee9dd190864d23716b22f83561e1cb4ae3bdocHeodo
2020-08-27 18:42:137f1fe8748f260ff27f08ebf04ccedd2cb34a45a95f9dba3d0e0c36cf6c8cb252docHeodo
2020-08-27 18:38:3384512a687e18bd712ce44fbe40545d9262a426f27a5906047fd1f0b307a80b88docHeodo