URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: ziefa.de
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2020-08-12 11:27:15 UTC
Total malware sites :1
A record(s) observed :1

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2020-08-12 11:27:16 81.169.145.161wa1.rzone.deNot listedAS6724 STRATO- DEyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-08-12 11:27:16http://ziefa.de/_derived/closed-981327479759-66...Offlinedoc emotet ext epoch1 heodo ext spamhaus

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-08-13 10:57:214e1e08d41d68da18121a8a778a437a6dc515878e7a4b367eacc4eab0765f6245docHeodo
2020-08-13 10:34:348e34aac321039ce22c7bbb89b61257a397013e7b62607102bea64b2fb1f61960docHeodo
2020-08-13 10:34:09e13c1585f999c469b3ffa9b9ceaacc5c5b169934f5f649aa01ae9578625a9620docHeodo
2020-08-13 10:01:4476bb490090bed7074824b7b620db247726602318c7acfb9e1c16861b79bfdf3ddocHeodo
2020-08-13 09:32:4248fbb5d57c3837b61bd9326f28dd064e51928b1038fa735a0c28a99342bad063docHeodo
2020-08-13 09:12:5921c04e61b8204b3b63d3420fcf570b5d7d063338639fac037a6748df5386e1a8docHeodo
2020-08-13 07:40:415c70b1d9be2e62d3cb581708789ffcafdc47ae8733f09039db0c3c7bfe9041d9docHeodo
2020-08-13 06:09:2157fcedf7b710607daf3ff9d1d3f81b02e5597d6a760e10c3af3805702f2e2ec5docHeodo
2020-08-13 04:37:53c58ccc775e7c2333d87ae2d0e8b965a9c633a1eebb558d4e153f2ed1a7cb63e7docHeodo
2020-08-13 04:20:43d88d0131f8422f4ca25451d4c1f3642d6bcab4aa071bbf0cfed86e54a6e62976docHeodo
2020-08-13 04:01:45d16cd96a6382c743e97444d51967f3d83c72ca0618c6d92facad07211712c9bedocHeodo
2020-08-13 03:44:4434b90b804ac07f37b48a7437f520d80dd3efe9bc79c96c722240c63d9e457164docHeodo
2020-08-13 02:13:517efe325d3dd462aa685894527836d96928d50d1fe594ceab5af597a3df8c258adocHeodo
2020-08-13 00:42:21ccef51f2aac08b771675329e49226ef621176b8408f1e7f7b72aa4359c3d137ddocHeodo
2020-08-12 23:11:135aaa39535adf5512408d58dfbf5d54f364b46a2ed6bd258250858b08f2d13e3ddocHeodo
2020-08-12 22:54:036793d7866cd3e3e456843e5eaab907dbcf624cd6b5431f5f40c0cbf492da582ddocHeodo
2020-08-12 20:44:35986acc515daf31c8bd8d424f27e1307eab1f51a043c896ffeb2cd94df1eed8a1docHeodo
2020-08-12 20:18:015e7f7727ae77642bcc909bc96c4fb22081f5f58fa7366bceffc2c629cc369e4adocHeodo
2020-08-12 19:59:5999587a42037e6883c1b3d9ed477034427499b230aa1d61f823e0771f83d94944docHeodo
2020-08-12 19:37:15ac4a497f08d9286aff7a72c55589c9c1ee603462e501e24b5354e0dad963cea9docHeodo
2020-08-12 18:59:53657108dec334ce0dc7b2f812ad44ebe4305705d156853e7c3f4c929f9127daa7docHeodo
2020-08-12 18:37:140b494ee73ac170b1baa23a3266109e4c881d687dbeee54c209cb2a844b3fba57docHeodo
2020-08-12 18:14:52e060a3ea1c14105f1702e8b612d1095bd704a9757c2107e3aacc4ce542cf2af4docHeodo
2020-08-12 16:42:5387b90453b1edf9bf7ee26ba76b7a73b73be127dd13678ada570fda173417ff98docHeodo
2020-08-12 16:24:4119a0b43438b15957a52c653d27778c90008ae27821fe97db817356de978f063fdocHeodo
2020-08-12 15:54:106b6d945cfba7f58812d7c716d37f887c9d81c2edb7c04cc524c5a0284e128289docHeodo
2020-08-12 14:21:1998f20f5c7e6b59a25bea4d2534f9a6e09e78e722088cde30014b21fe7d9d487cdocHeodo
2020-08-12 14:04:53b4bf6e6e6eccfbddd61630876d0209894b69e9b122939c029d31b8b8b627d478docHeodo
2020-08-12 13:44:58ab27914f156acd19f0881239e640672cdeb34584233e8b0c5c1e5207c1135e4bdocHeodo
2020-08-12 13:33:47ba7e60bff1eee324d5376e7f78a7cf51aa033dcb9c8b814c71cc54cbfc1fb476docHeodo
2020-08-12 12:13:39ebe2942f03be48db9a6fadc6c49ddf806aef0ec3b5aec0331a93f51ab66532d7docHeodo
2020-08-12 11:27:1696c04b0501af9fbad66998b9670fbc26a702bc31aa370ac51db9f00d87465fdedocHeodo