URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: www.theginlibrary.de
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2020-10-27 06:27:04 UTC
Total malware sites :2
Online malware sites :0 (0%)
Offline Malware sites :2 (100%)
A record(s) observed :4

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-08-14 21:29:51 104.21.19.3Not listedAS13335 CLOUDFLARENETn/ayes
2025-08-14 21:29:51 172.67.184.91Not listedAS13335 CLOUDFLARENETn/ayes
2025-04-28 00:54:12 185.53.178.52Not listedAS61969 TEAMINTERNET-AS- DEno
2020-10-27 06:27:05 37.17.224.143mail.s143.goserver.hostNot listedAS48324 DE-WEBGO- DEno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-10-29 05:52:05https://www.theginlibrary.de/wp-includes/BiZKqE...Offlinedoc emotet ext epoch2 heodo ext Cryptolaemus1
2020-10-27 06:27:05https://www.theginlibrary.de/wp-includes/ma/Offlineemotet ext epoch2 exe heodo ext waga_tw

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-10-29 10:34:566b696b987488f5f9abee78f4d38565535d928adb645de9f48e95a99914bc5dc8docHeodo
2020-10-29 10:24:498e812f35e13e8d4d2d376ab456fb4335c9468ba58bb5a4bc7fdf14c959388f6ddocHeodo
2020-10-29 10:08:31a943a1b78c2ddb8ea536ad08b2eaaec624c324079322f272f1e1a319b5603a28docHeodo
2020-10-29 09:30:31a68e38ba80539aaa99e4624f37df31a53410de47b3a76df0fbced21744a74d0bdocHeodo
2020-10-29 09:05:548f3afa2da7f2e5cf945c59daa84574119b092d7926eea15fb3f21367f6433c77docHeodo
2020-10-29 08:45:2548f5efeee13fcdbe837223ddd4c1de97dd87be397e6f99bb95ebfd19af5aaf86docHeodo
2020-10-29 08:19:379e3811f229348aa0b4c22ca7f0808d1d13ec1f3a19d4a0e675168b552da2e96edocHeodo
2020-10-29 07:58:344b6b29d5c14a6ed0524d46202796bf0f9bd18650fa3f44dc5d01e1ab93652600docHeodo
2020-10-29 07:14:06f98cdce14c9b9c64ea8402566c9db1499eb129104bd476c96c503f1a81a858f5docHeodo
2020-10-29 06:52:29e3a96d2e3adca1fc3dfea0ac14af9b1d4cec3a20d9d7c6874edf1c6fec60d90bdocHeodo
2020-10-29 06:31:144c8eeccd2a16f80874acd0057d5ec622d3701e32a3198bdb763f39e39ea28982docHeodo
2020-10-29 06:23:45f56bab5a99b915963661761022f775f386c9f7cf84d990938a9040e88ff490a1docHeodo
2020-10-29 05:57:181abbd6b32e2f6b0a51e9fbaf272328cec63861a7d19c3d28f77c4c3734e714e6exeHeodo
2020-10-29 05:52:052ce6ab8ee89411f1463ed6831f078e930f121aaa93880728734efa7d25503623docHeodo
2020-10-29 05:41:04f1ef3e5fa96f0fe081126eb3f1e47142a811551ad651d97e521bd2d0aa695ed0exeHeodo
2020-10-29 05:12:098fca3036d8a15402ef223cfca1397f0e282787000b42246c6526c078d1e9d2faexe Heodo
2020-10-29 04:51:584146fb81cca46de809a8ae0ceac5afb667e0b1cbf5d150e4ec55f8f8310f9162exe Heodo
2020-10-29 04:31:10b6a7843eae097f523c12e56e964acd501f66afd11fbba96f591416a83b803f1eexeHeodo
2020-10-29 04:01:132dcaa1d137f33a5e6e66326c22d468679b86289e7fa217f546ee4686bf4c7855exeHeodo
2020-10-29 03:46:04ad6b8488c168046785285159d540bbffa686cddd594068c14e0970991b8a06a4exeHeodo
2020-10-29 03:28:42142c6e78242b0cc1b98c6a143aab3f0f62f580463d873a66133e508d3470b1d0exe Heodo
2020-10-29 02:57:14f8a252acf85f50a47f57a4e0126f6a1daf00fd0a47a17e1a5d7f717838c70c2eexeHeodo
2020-10-29 02:43:233e783042d437397f2a69cbad45282a23b035c0210759064867ecb92dfdc90b29exe Heodo
2020-10-29 02:29:33b249a7f0578f383a6d7236504bdcd5e6ccac15e9a4ba7d8c23162c9980bacc6fexeHeodo
2020-10-29 01:47:39a0cd625a48734988dbc0469e5e6c562daf87ca605565a020a90d2a6d977874f2exeHeodo
2020-10-29 01:16:15cd5568f27407bc2b5bf1ba387301b38094d785f55a165f174c28e45f64081e24exe Heodo
2020-10-29 01:03:017c88192adb05922b1ad9df8620b3610bab39e47c75bcdd542e0e7862a5ec91caexeHeodo
2020-10-29 00:45:22fd663a535114167619ee4a8ae470edb024abda949ff968429ecc7157c3400895exe Heodo
2020-10-29 00:25:091ef836842600c921b6709bbe46f91fd6a27e9106ef1cf5cbac8d195f4324db77exe Heodo
2020-10-29 00:05:01b1be222c74faa0e4d674d6df56a8754e275a605d4bdd32b53b8a8df5b379b152exe Heodo
2020-10-28 23:52:10888ec64d249295f3b4b3500dbf9e4283349e58e1efed7aa24505b8d9aada6d59exe Heodo
2020-10-27 09:11:241571077b8e0c1f00600b8fb062ab6d65edf2ad0874a686c03213e2e39181e2e8exe Heodo
2020-10-27 08:41:0883e6883043b3587323bad73ff5b5cd79d0fd41c89615e55ca78def5f13d99230exeHeodo
2020-10-27 07:52:229d27096f0bd2115c9685e1229f62b32110c40bc8054b62101fba659bd912a77fexe Heodo
2020-10-27 07:33:2346ba58c0d018a594141984145c4cbf25c130d5273ffb3f94628a9a2ecd9c0632exe Heodo
2020-10-27 07:03:079aa8b88277d6746bc961d9f9905bfbd9457ee219065b4685db2757a9b68687efexe Heodo
2020-10-27 06:50:58171203763d734cbbb73fb6290a570f9d806038bf05f56c71e4f5513481d64046exe Heodo
2020-10-27 06:27:05926f18c768ccef8dae668e92ebf10721fe77bf31ec2a06c066789f37e14a7031exe Heodo