URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: amazonbirdingperu.com
Domain registrar:GoDaddy -
Domain registration date:2012-08-09 02:59:39 UTC
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2023-05-16 11:25:45 UTC
Total malware sites :1
A record(s) observed :4

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-08-15 19:13:11 13.248.213.45a67c48129651a0940.awsglobalaccelerator.comNot listedAS16509 AMAZON-02- USno
2025-08-15 19:13:11 76.223.67.189a67c48129651a0940.awsglobalaccelerator.comNot listedAS16509 AMAZON-02- USno
2023-05-16 11:25:48 162.241.194.20162-241-194-20.unifiedlayer.comNot listedAS19871 NETWORK-SOLUTIONS-HOSTING- USno
2023-08-13 18:52:47 34.98.99.3030.99.98.34.bc.googleusercontent.comNot listedAS396982 GOOGLE-CLOUD-PLATFORM- USno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2023-05-16 11:25:48https://amazonbirdingperu.com/ueut/?1OfflineBB28 geofenced js Qakbot ext Quakbot ext USA Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2023-05-18 20:44:03d3c6e06204212c1aeeef29809460056535cba3beca8cf163b7c8719671ef0c9fjs  
2023-05-18 18:51:286016f12710a18923ed029eb1dc62882b5f1a032a7424e0169dd8c2228598f59djs  
2023-05-18 18:12:0976443e093ed6d6e3961cb5f9bbd546bab2d05f6bc2536c5744dc86f7a769bea8js  
2023-05-18 17:23:38d7522ab4f64ae0950e24bb00df9157136bbcb900ace0c77bd1a46f06149bf37ajs  
2023-05-18 14:00:34ead404112663c936fd9babf8efcdc0f5e6ce6670b3b9b2c27643cd9c72ad011bjs  
2023-05-18 11:57:23576d80e7bad2be3b3f4ddb0ccbe067bceabbc990bb96e11007cc74c2d6ad7beajs Quakbot
2023-05-18 11:42:18c321a1664d74da4f73b983c793c4059b38202d4116be2e9f53f9aa1d4320d830js Quakbot
2023-05-18 11:41:253bc2c76bd30c4f67c56425ecd3201a7bd43655778be5fee4b7a2f72478c57d5fjs Quakbot
2023-05-18 08:44:18724461f309ab96d511ced805b91951db475a6c036216777c4f4570a3ce7fbac5js Quakbot
2023-05-18 06:23:31819c3375d47e95f26e1466039e2ff5a096837d0761bed7564c2366b094c8895bjs  
2023-05-18 06:16:18ad9d5d545cd208607067a384f752e68873813a4863a25840901805e6778a5f43js  
2023-05-18 03:16:2173abfbef5c169e5239c78d4c04f3d18f7f72490c2ca0cbbb33d92cac9675dd16jsQuakbot
2023-05-18 02:08:35934626b333d14ccf5c2f3a3effc073bba69fea3effa6d474f19bc48281dc9013js Quakbot
2023-05-17 23:28:30ccdc371fa95a2dc8192ecf73826f489942857addced0e8ce4b9aa969aa98381ejs Quakbot
2023-05-17 21:55:44f14437be247480b6af38f3ccdd4ba46e6e55eb7b3d706b8df711f63558b8703fjs  
2023-05-17 21:36:41356f8c2ebf3f6ab97ed37e1195e6ccc8d5441e37c038c0c09c7f481b5aa205dejs Quakbot
2023-05-17 21:09:180281a8abb9cc25356770caa1340573c19ab7bda7d5303f43a60a52b2b9154067js Quakbot
2023-05-17 17:43:30928455b0e6b3a04da2d4fc9cc17de42c52ae2a640937dcbc9a048f76050c138ejs Quakbot
2023-05-17 17:10:534657c8d962a15da8cdc6ff3c1ab3d492a89eebdd09249e8d29eea382791500abjs Quakbot
2023-05-17 14:21:53562698d61476d96d6f3b0fd847585b9c5e4d1f9eb96f8153ba577725aa0eb697js Quakbot
2023-05-17 12:58:3064dbefc6ce8b2caf9b441a36490ebed30319eed28e49ddf95d43659494906f10js Quakbot
2023-05-17 10:00:1954a4a3e074ff22cc31b86638c0b92842abb8e50210d99199ca871c7a88203458js Quakbot
2023-05-17 09:02:56704ba9aa1fff41b913c8599c068b5b39a18631605592bf7ec528bc6b4210be7cjs Quakbot
2023-05-17 07:24:44326cc24e3ad32abd95fbd18023850b5f12fec58debfd7ca5c417ccda04e4fcf2js Quakbot
2023-05-17 04:43:12aa5d838147cec5acdd711cbe35dd9ca9e0cdef7ed6b1d47c4cea52355801b644js  
2023-05-17 04:24:446bd416d89a64830bb9264efa3a9bed9929f32b8a1c210305f79cd9d405767c78js Quakbot
2023-05-17 01:00:36ff8c01ccd06fcea01357dbfa785383045f8df9db75826cb8050b3725a6985d48js Quakbot
2023-05-17 00:29:3601dcc7b941bf1166caf7e45b20e938f98df6fc33d2c76d6c72ea56ef0439df61js Quakbot
2023-05-16 22:46:0506e9338f8c84ef2eea4173cd609638337713b3a04223c7fe9cafbd2b78eab732js Quakbot
2023-05-16 20:28:033af8bb62d51aa24dd5d12741627a86bb420946471f2347bd080c0fc0d41016b9js Quakbot
2023-05-16 19:09:1566eb7f6421f6b426cdba9d51c2e5e0c875ff391002ce41a0cd53d998a7af2ccejs Quakbot
2023-05-16 16:14:4141403671a1e9f66e44f7c0b7e10cc209b829df90820ae0ba98509dd673c188c4js Quakbot
2023-05-16 14:45:12dd21219076f5d3e24129ce6b1a71f2a6dbf0b764b46a90461467c68a09f99e20js Quakbot
2023-05-16 14:35:49274d0a493611f43156e0f6960b2f6fd82e9dcacdc7162642ebcefeb288e0b303js Quakbot
2023-05-16 13:26:079b3407fb4abe0459e81a16fcaf2c58bfa5e3ef000117351765eb76c4d46c7b79js  
2023-05-16 11:25:486948abfce5c3b45d037995658578feca02e89fb6b05549c74d00ce1c5ecbb945js Quakbot