URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: aradin.ng
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2023-06-13 17:52:30 UTC
Total malware sites :1
A record(s) observed :2

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2023-09-16 09:16:22 131.153.147.178wghp7.wghservers.comNot listedAS19437 SS-ASH- USno
2023-06-13 17:52:32 23.94.16.6wgh25.wghservers.comNot listedAS36352 AS-COLOCROSSING- USno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2023-06-13 17:52:32https://aradin.ng/cdi/OfflineBB32 geofenced js Qakbot ext Quakbot ext USA Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2023-06-15 13:23:25e5dce1eb0d47fd6df8823182d57122f7e61e65e8746e94639eaafd2ab54f610ezip Quakbot
2023-06-15 12:07:35ecfa2f4a4aec3872ca2006986b31c1c931e41cf6b0c2732fe158200a60e884e7js  
2023-06-15 09:03:5282313ade9759830bef7315f3c769957810ce78654f47e8fe118a7c25de2bdb3fjs Quakbot
2023-06-14 20:44:5114d5f7e51e721a63d6911a68bfbb6d257485bb56e1715381906d1b410860cba0js Quakbot
2023-06-14 13:40:577e3ad7bf2fa97a4409bbd01bb67fe408ec5e6866cf5ca2ad74dae8e9fcf41e23js Quakbot
2023-06-14 12:41:160849a869c12d5315bc0a61c6ad89af946dd5f073189bacb7aaf22597891c7780zip Quakbot
2023-06-14 11:31:0857569333d65d14b891bb0f583dc302e7e5a7def51435a5a128a06b6782d0e3dbjs Quakbot
2023-06-14 10:10:22bbcca37eddd3785374f00e536f7a6ab44b2d0ab8591c7e74dcc25b8409fd72a2js Quakbot
2023-06-14 08:27:3318bc700ae4cb6fcdad8a07ee9a3dac5d23802799aa651e43a4ab31c3074aa69cjs Quakbot
2023-06-14 07:33:106ca765d33ea0eba311be84e9ff67f65dcc4b81c19058c46331d4502dcc91c2e4js Quakbot
2023-06-14 06:44:53fc7b2764014269e22e29092384aae3b2087b32ca32619ac2879471b486b19632js Quakbot
2023-06-14 04:53:08570a45bb6b33b7a8a0fc9a63a4cc8c50cd2b12923de836ef58cd94c3e60ed5c6js Quakbot
2023-06-14 04:39:31efc5079cb78e367de5d06317228a9cbd6960191852d65203978ce7ac42424fe5js Quakbot
2023-06-14 03:53:54412d8ed2b5c5aa3eb0487ca19b47426c2631fbaff5900be52e3c978477d52500jsQuakbot
2023-06-14 03:38:39d73ad0f35f7ba862245dfb28c9f3fa54a9bb2b4730302eb8c7e173f97b0ce76ajs Quakbot
2023-06-14 02:23:56ce41189c698532d9868b6ca7707a5ef802d8a86a0d0dc917f87877dcc311815bjs Quakbot
2023-06-14 01:56:29eea96900b352686f4027368ea486dc36e9a045408a1d0648815c483533f7c7f2js  
2023-06-14 00:44:03f666a788127bf2f9889af7487b05343a3bd70aac5e1422f3d072c6c7a2f5f1ebjs Quakbot
2023-06-13 22:51:33d578997e38238c6ced02ce0bb621168c2109002d185e063aaca9acbcac8e42cfjs Quakbot
2023-06-13 22:00:3450ecc004c17dfdf0cfd97c571e3f51c8e79e0502a93203a3bd86ac7ec51611f6js Quakbot
2023-06-13 21:21:389a5fe07818a395a994f670f3439742df6f38369c1c9130c84c8f3becea552086js Quakbot
2023-06-13 19:55:23f3c89b57ec700157818293b4ab3cc6998e1cc99bce9e06431180baed8e8f8333jsQuakbot
2023-06-13 17:52:327841a17722296c7ab0cef5982fc317916d62b939bb8b350643eade96ac5ff9abjs Quakbot