URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: www.sparo-electronic.de
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2020-08-27 22:27:33 UTC
Total malware sites :1
A record(s) observed :2

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-04-29 23:50:18 146.0.35.70epycserver.ctr-dragonmail.deNot listedAS24961 MYLOC-AS- DEyes
2020-08-27 22:27:34 213.202.225.111srv1438.dedi.server-hosting.expertNot listedAS24961 MYLOC-AS- DEno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-08-27 22:27:34http://www.sparo-electronic.de/StyleEdit/DOC/ms...Offlinedoc emotet ext epoch3 heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-08-28 11:55:5256385c138dcd6e1f59be2fadd0cb3e78305d5a8b74de904c00ca85d68aa84809docHeodo
2020-08-28 11:35:47f518586d760ddbf3ef58ae4e7f8bc570d1154c9756e793135770a886901385cddocHeodo
2020-08-28 11:00:41c5a9757906c65f2a2961bd352aa8d42181b2b26e9cf2b82e01d6e824d94bc00adocHeodo
2020-08-28 10:44:52642f14769b07ea8ab51a202c4f9b39fc9d7a2a6181baefed723a2d581d729a7adocHeodo
2020-08-28 09:24:08cb74e6583da3957d6fc1c0e3335350497207614a8b8a39c78b13b5818d22af08docHeodo
2020-08-28 08:50:395fcecf8fdfc590ef687d6590209ea3c2ea0ad746b5f4746e537cd64813fce05edocHeodo
2020-08-28 08:14:17f54d6deaf0de0c28779afc333e940e4205cedfafd09a18bb1cc653cf3b2073d4docHeodo
2020-08-28 07:49:17a03a331036791b2d25681114c722041029d9e995c684190654e5f664efe761a0docHeodo
2020-08-28 07:24:37ba1bac226c7ba525e1b2706a7f0a7a0ddec1272db21044df1e28cfd777804a3fdocHeodo
2020-08-28 07:01:002012064cfc4ba5e01f3677d2f52053612232c932876a8266ac2bd8bd8a35af6bdocHeodo
2020-08-28 06:37:571d2b270375ae00907412647180a7dffae422dac066c42966c9cca4bd1dd8dfe2docHeodo
2020-08-28 01:25:027e0d6fc8bc7a69d5e27e2130c83b434512af52a5337145098c2426f62abf97eedocHeodo
2020-08-27 23:54:15b1f8d82d19d6020ac3606afc8e0699ddde66a03ce07d5d7f6b6bc45a238084f2docHeodo
2020-08-27 23:38:44474fe5a4009da897047f91b9d9b8f40aaa5d674955f0815934507029c7038976docHeodo
2020-08-27 23:25:157314c132ed2bd783a95997d7bb4306ebfb97de0cd23e31c78dbf77ebb4dd61efdoc Heodo
2020-08-27 23:07:0497dfe06b3f4e9ebb2beb149355b82886fe468ce91c30adb82a16097ec15cbdfddocHeodo
2020-08-27 22:50:47d7c4c7378b94661a714fe656b5ec74214db2780401d214fb0faa2d6d7b627199docHeodo
2020-08-27 22:27:33e4c62b22bf20393c0da173d527c976a42fd48ab286a88f6e3902736a87fda7c7docHeodo