URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: astralagaproducciones.com
Domain registrar:GoDaddy -
Domain registration date:2023-02-17 06:33:33 UTC
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2023-05-16 21:52:09 UTC
Total malware sites :1
A record(s) observed :1

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2023-05-16 21:52:14 198.38.88.122mocha3039-web2.mochahosted.comNot listedAS199404 WHG-IN- INno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2023-05-16 21:52:14https://astralagaproducciones.com/dptd/?1OfflineBB28 geofenced js Qakbot ext qbot ext Quakbot ext USA Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2023-05-18 19:30:266016f12710a18923ed029eb1dc62882b5f1a032a7424e0169dd8c2228598f59djs  
2023-05-18 18:13:57c74cf0cb7927a8438a84c9cedbdbab3e4815550813336043f39674a67b6a021ajs  
2023-05-18 15:42:311cea0c4b1af9170b9ed2927f3b100d202bebd1b8e69ba1527336aaa6b2c0bffcjs 
2023-05-18 15:05:351a2e818afb29521c8658d2a0643158af97370d69c32c0bd85cb900bd3e85b0eejs  
2023-05-18 12:41:10f16b3c48ca1ba324e53c48a72c3bc53329423b16779e1cd1d0d40447f39cfefajs Quakbot
2023-05-18 11:45:17efc10c85b0f60f774980c7250e0358ab61ded2a4d2f8fed854bf14d05af6908ejs Quakbot
2023-05-18 09:30:18f064ddce080fc01f0b5b378227f89a1ee2f48034efc22bcdba315de07adb217ejs Quakbot
2023-05-18 08:29:23935d2fea6488c7d2c6ec2b528f43f43c49b96750bbf21401284b5c42710e8c75js Quakbot
2023-05-18 06:37:09b7c08519c7c42c933959411b973cf0045693335de503ec8af7235576bf7ece66js  
2023-05-18 06:11:472177d925f10e2cd3a5d175b8e14d8faa7413f6cd18da6fc7832edca35cdb5aadjs  
2023-05-18 02:50:06506d6f7370fc1f1367a79bb76a39e5ed1e2c5113ca286350f3239788538fa80bjs Quakbot
2023-05-18 01:58:28f9a03e213a2bf36d23d4a6877af8261834b3049ed458410c5e8b4c6da00e2383js Quakbot
2023-05-17 23:24:28819e1677a9b83e3e2c5f43d5b2dc0f2f54147bd8257c067505fb818330efc68ajs  
2023-05-17 22:17:30c11631875df89e8d792439c8e9f573ebf097e4bc4926ace66626297639e4bf74js  
2023-05-17 20:22:5191f2349ddffafc85ec07721077d9d38a2ab0376beaf588950fe98bb16d3218efjs Quakbot
2023-05-17 19:12:20502aa2d56dbba3e18971b863336aff4b696a67a0935ca0cc3d9186a3c2c8550bjs Quakbot
2023-05-17 18:18:45fe6c3afc81fba017285089bb2240464e993b83edbf51755fe47e70d5ce454558js Quakbot
2023-05-17 17:12:23a9d658acf1c13639bef4615e65fcd8eaebd3b1d0c14ee826b7268e893878e5a5js Quakbot
2023-05-17 14:50:33992ec3c1bccb3793a6ae36e909056122ef9e442c16c17bcf9d771c90b85ee980js Quakbot
2023-05-17 13:39:50b726185bac5c9502b0014a711f793d0559b2d0afcaf5cc376d063cb315412020js Quakbot
2023-05-17 09:59:17b9257de2aefa314747494a6eb672e5f7b245edc9b69a078b3fd2c663f4f8e7abjs Quakbot
2023-05-17 09:54:3044b7c6d9c9add44e648f0788e0956f3c271336882ef4ae4661a1e0e14182ba94js Quakbot
2023-05-17 06:52:56dfd5d1fc27d70478d5b5ff8c59d6a83ad50efe0822c27e29287d46611bf981f6js Quakbot
2023-05-17 05:21:13097c6e95f66f69e7983777033173938859ceabfbff55df6404796b029839218bjs Quakbot
2023-05-17 03:27:35829d02961b189d5635e5e8218a505e6bf4ed635b73fc21bf255cd1cdad724e28js Quakbot
2023-05-17 01:12:48ae5f9f16badd01ee43054eb8a52ec6ef5725e5f89fe4b6510cb659101cce112djs Quakbot
2023-05-16 23:18:0844ec8a0ddbba84a0f1f4716e5487c7a9cb85235876c72058e7270f9e2a9af3aajs  
2023-05-16 21:52:1414a0bbe8aa62c45956c47877c4359cfa4bb66309a5346b2489fae2600cc47de3js Quakbot