URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: zonexon.de
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2019-05-30 18:36:02 UTC
Total malware sites :1
A record(s) observed :2

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-04-27 13:02:05 81.169.145.152w98.rzone.deNot listedAS6724 STRATO- DEyes
2019-05-30 18:36:03 81.169.145.162wa2.rzone.deNot listedAS6724 STRATO- DEno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2019-05-30 18:36:03http://zonexon.de/cgi-bin/INC/SexfsjrM/Offlinedoc emotet ext epoch2 heodo ext zbetcheckin

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2019-05-31 11:22:25ff175ca9585e9c28f6b50f028bfb124e532ba9649509a0bd9e87239269b8c362doc Heodo
2019-05-31 03:09:15b8ffba5933a7f1ab10640674515407df874291c9b965091706b22960b3dadaaedoc Heodo
2019-05-31 02:45:122b2ca9cfa5e7efb20e6ec52b7e5effbb02ac817544a2f77c69b13b1a46038506doc Heodo
2019-05-31 02:28:10065c4bd9f352f3dde47629101839b08d1264027623d68fda03005789cab0861cdoc Heodo
2019-05-31 00:56:11841ea7eed1c264c08b46b6feed248dbe7bc255773c0b06a9bf565a43ff54e808doc Heodo
2019-05-31 00:09:10963cceba0759dd50fb2a087ce21e144c64e5973e78a397fd2bc7e30fc444db8ddoc Heodo
2019-05-30 23:50:17054ee9e61a0a65c326881f839be8824859306d1d97e1d3229f8fa7eb195c730bdoc Heodo
2019-05-30 23:03:073b8afd70befb29f9b95436a16fa5dca6193af7788369d026e065f70872078604doc Heodo
2019-05-30 22:17:19a46c2718370f531a3e6ec951ccb19c56159f26b77d6aa3bab0731ce2c794076bdoc Heodo
2019-05-30 21:52:2436845718eeaa9e0e992076372c53bc185aec96a9506eb277c809d49dc4c29878doc Heodo
2019-05-30 21:05:09565593db57950e6a3b0eb6843bfa8e4298fd184bfa0d0b40a4ee47703a7b8cf5doc Heodo
2019-05-30 20:46:0859c2d27bd9acdfa4f8097b8252e06faee7f0affcdafe972f7d0defbe57428fd7doc Heodo
2019-05-30 20:21:060cf70cd6e3ce218ca6e0fb3bb7a79d13b176b75c4e29a332fad0aaee559f6970doc  
2019-05-30 20:06:119ce35e0f984b50c21084800ab5b826228b65719e69144d21fa7dbbee249a5bd9doc Heodo
2019-05-30 19:20:13560993ce10409054050a04e6c7e65ccf26d94d35a965cd90134dc1f6ccc7cf7cdoc  
2019-05-30 18:36:0370b6d041f2b2be97e5fb0986bcfe40882c2f567e20b2c5d8dc9328f718293ce2docHeodo