URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: zum-ochsen-wonsheim.de
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2020-08-13 13:16:23 UTC
Total malware sites :1
A record(s) observed :2

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-04-29 09:48:47 217.160.0.205217-160-0-205.elastic-ssl.ui-r.comNot listedAS8560 IONOS-AS- DEyes
2020-08-13 13:16:24 109.237.138.49alfa3203.alfahosting-server.deNot listedAS45012 CLOUDPIT- DEno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-08-13 13:16:24https://zum-ochsen-wonsheim.de/wp-content/m986g...Offlinedoc emotet ext epoch3 heodo ext Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-08-14 07:09:0099dac5a117859eb23edb38d2da4b792d02b4a4d1fab2249bc171faf6bf1dfda9doc Heodo
2020-08-14 05:38:143132acbb0aa02f175f2e8bf589a53e732564cf73f1f003cb64c842ba52d3c889doc Heodo
2020-08-14 05:20:27c32ebf07a4f2324cc33cf6e7c975c375621c519fa654fc27303c9a812293fd7fdocHeodo
2020-08-14 05:03:43382eeb05e0b37509916697e88d5f58e00cfd17db07cf9b27240fd84aa4bcd26edocHeodo
2020-08-14 04:35:583d8831fa48eda1b1975a84cde54f8775ceecc95fa6ae4278a9ee533cf37d9d8fdocHeodo
2020-08-14 04:13:498b725e5a090dcb30815c5df978e72af9a04372b9fda6729678004e9bdd617ce6docHeodo
2020-08-14 02:43:332da551517d3d24f3485bb7c1edd4dc79031582d5cc3f4066169ecdbe26b4df18docHeodo
2020-08-14 02:27:45ebfd94ac1cb7510d9b3fe2de38c88bb88d64956d0c6eb93aceebee8ea83ac763docHeodo
2020-08-14 00:50:270b134d91d537beab9f4e700b126eb1b43b69c80126818592cef4697fce08263bdocHeodo
2020-08-14 00:36:174398bc31070f761b318b30f297d363b006ed9e84c6af0aa45ad140f57e7c1529docHeodo
2020-08-14 00:16:55532d6be9513e3dea9cfb7040d4e2b0878429f90b84e8c3229ba775ff99dcfbbcdocHeodo
2020-08-13 23:50:183c2103ec1e6af0ce039524d58d70a4ced5e2845549def894d03f836978afa09ddocHeodo
2020-08-13 22:23:202741a0a45d8bb8b7e1fa15f9f05492ec1235fcf882792971e1668640ae40fbb9docHeodo
2020-08-13 22:01:14a9828c026e45fa8a82d75ec9ad78970c1e5664d13306a3b4e5b501450fa97e9edocHeodo
2020-08-13 21:39:38226139f39424aaafeee49dc0a927be5da4a28431b970df629c236c7509680210docHeodo
2020-08-13 21:22:509790de78c7614b7690b8f35d421b7704eb89e5eb5cabfe24dcf83485d90e2949docHeodo
2020-08-13 21:01:435afd28f4c27929a5271720ade77b26422b7596600473f76d9aca778869203bacdocHeodo
2020-08-13 18:54:335068ac1fc3ea1af3eb637bed169df3a72f14ab7db56ff2996f718fbe8c05642edocHeodo
2020-08-13 18:14:16efd5ba3aef6a5b7efdf02bba779391cf010ad01d68be10642219e412a940797fdocHeodo
2020-08-13 17:50:10894dfe7d84439530c0f7bdca76e92f6d9ff10fe2121e0ff8decfea3153f5e91fdocHeodo
2020-08-13 17:26:04efd984b76bd38cb42bed4343bccb28e13e0e6f33e2795237f42c25f313c8ed81docHeodo
2020-08-13 16:50:2917c0ad7fe3012db3c5ada59ba1d21436aa344ab57a37ce699684f8bbead66de0docHeodo
2020-08-13 16:15:20196a89c54cda70af31877740ead0a738ead3533d3ef89e87e31b193044fb42f7docHeodo
2020-08-13 15:57:19fca1b080bd37f31310426e23e3d06dff66c14e54fdc049af8896fd4970ea29c5docHeodo
2020-08-13 15:30:43f01b78ca95efc7717c3d0f03f4d904cbbb4d3c5dc0ce87e33fd19acde30cf5d5docHeodo
2020-08-13 15:11:22838163c51806ac1784cc1483f987a2eb46f9d76371472f04f801008136fe9711docHeodo
2020-08-13 14:46:00fee712637002c8475f30aa70617736faec255bed242c89f24aaba602691101a5docHeodo
2020-08-13 14:13:075953ef2a295be371cee8f085bb2cd4dfd74a9f06108e5f5fdccdc568ca448e55docHeodo
2020-08-13 13:51:0359c83ecca1095f3f5a073bdc09552cb7ed9b230dfdc93dee59f18e2a38e849eadocHeodo
2020-08-13 13:16:240788345123fc7f3460c0083d4673ef0ffa96d196986939471d1b13ab63dd5b71docHeodo