URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: anyhoo.testeaza.eu
Domain registrar: n/a
Spamhaus DBL :Abused domain (malware)
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2023-05-05 14:22:10 UTC
Total malware sites :1
A record(s) observed :2

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-05-29 15:45:16 188.240.2.189eu-ro-domenii.comNot listedAS44043 Cyber_Folks-RO-DC_CLJ- ROyes
2023-05-05 14:22:17 188.215.251.100denisa.eu-ro-domenii.comNot listedAS44043 Cyber_Folks-RO-DC_CLJ- ROno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2023-05-05 14:22:17http://anyhoo.testeaza.eu/kbase/rentfree.zipOfflinegeofenced obama261 Qakbot ext Quakbot ext USA wsf zip Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2025-11-04 12:16:10c3cef0d64c1f62713be5b27d586af79e9bb65d8ba78117c951c758d421aa1038html 
2025-09-10 09:49:129a63a77e2604dd73cde4fb8e02af3d8416f49dca635ecab80b31a3e1a4dd4a7bhtml 
2025-08-18 04:17:2300be7f643a12ac2221c9ba8df4fb34b3701c336fa830d24fe906c55364ef7b35html 
2023-05-07 02:52:43704b5cc5ed498646ffd5c2ad58e6f352835f1ac27d7e812179277e1c3c67c6bezip Quakbot
2023-05-07 00:13:02c75a923dd305b850f47753b0782ce6bfe9db85fc2833cf7a2035836c494bb039zip Quakbot
2023-05-06 22:23:087b9d67ab2b56a5443c9ba7f5d7f8fcf013b0d4b5713910ae4ab596b1bdc7ca6bzip Quakbot
2023-05-06 19:52:25e0b0a4e39b6de4899390ccfb14c881ce973064a2e725a80970488d07ebd5aa50zip Quakbot
2023-05-06 18:15:408150849bfe5ea1d8e4692981904ed08216dbeda8a507012fa4222d952b32b7f7zip Quakbot
2023-05-06 17:46:3679902e32d3c70b590eb824f82e263483f2246e321a6755bca7af886c9ace0285zip Quakbot
2023-05-06 14:54:45549630bd4b5fb088307703d8bf637388f15c57fc6bed28d03c0bcf2fa59312b0zip Quakbot
2023-05-06 14:29:56c5b7b23bfe2939894b34b5e491737760198a51c6da66dcc5acf89203a4d63c81zip Quakbot
2023-05-06 11:14:41c091836bb81469e93e61927ea7ef7ba300fc26d8505d4f295e6c1618e21a4a4czip Quakbot
2023-05-06 09:09:5111b46d633fa272e54872a2bd91c60f68ab2e2ee4d4a325f888794b1a4954cf13zip Quakbot
2023-05-06 07:59:366e14c7ec1655b192d86a7ed18636e22a5b35a2f56c61c81c8b794937692b302fzip Quakbot
2023-05-06 05:14:5396adea884d312b10172ef13e2b25b9956fa495e3bc72c281599eda3d6d916d36zip Quakbot
2023-05-06 04:49:297739dbe4a0ea96e82d9b0d299f1fd97a64a3488a26f16d55c35089ae534040fczip Quakbot
2023-05-06 02:52:49e9b48f61bb40c57d0be85b018d2394fb7252bdc1c3a8f4042d7555c5b86fc43dzip Quakbot
2023-05-06 00:41:12f8e655e31bbdc4b9829225c0710dab4bce18759fcabc07f262b33a31430efe93zip Quakbot
2023-05-05 23:49:149d695da3456fecfeac3870606ad6c231be81046bace536b9cfa58faf63496a12zip Quakbot
2023-05-05 22:00:0381dd054f33d5e60ca8ecb114ffcd790526328dda6442fde2895ed8880b7da690zip Quakbot
2023-05-05 21:16:03a0dabadbff8b642474a6bdfe2a08e8202f0b82bdf63811004808ad1c967552a5zip Quakbot
2023-05-05 19:06:140aaca4ab47978e31a18794ca27a0469ab200fd07b4693db1b7064da4c15045cezip Quakbot
2023-05-05 17:10:479fd5ae895ec9192e1866236c333d5316de56b52a01ed10555e35389e56c35385zip Quakbot
2023-05-05 14:22:117e5bba219d9c55880d322fb6d3f1afc80abbaff6df9022f350c2b59ec13a1e36zip