URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: ayinshama.com
Domain registrar:GoDaddy -
Domain registration date:2021-03-18 18:32:17 UTC
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2023-05-17 13:06:10 UTC
Total malware sites :1
A record(s) observed :3

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2023-09-25 15:59:33 15.197.148.33a2aa9ff50de748dbe.awsglobalaccelerator.comNot listedAS16509 AMAZON-02- USno
2023-09-25 15:59:33 3.33.130.190a2aa9ff50de748dbe.awsglobalaccelerator.comNot listedAS16509 AMAZON-02- USno
2023-05-17 13:06:19 208.109.41.126126.41.109.208.host.secureserver.netNot listedAS398101 GO-DADDY-COM-LLC- USno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2023-05-17 13:06:19https://ayinshama.com/op/?1OfflineBB28 geofenced js Qakbot ext Quakbot ext USA Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2023-05-19 20:12:33d7522ab4f64ae0950e24bb00df9157136bbcb900ace0c77bd1a46f06149bf37ajs  
2023-05-19 18:19:0276443e093ed6d6e3961cb5f9bbd546bab2d05f6bc2536c5744dc86f7a769bea8js  
2023-05-19 12:43:44c74cf0cb7927a8438a84c9cedbdbab3e4815550813336043f39674a67b6a021ajs  
2023-05-19 01:22:561a2e818afb29521c8658d2a0643158af97370d69c32c0bd85cb900bd3e85b0eejs  
2023-05-19 00:35:24d3c6e06204212c1aeeef29809460056535cba3beca8cf163b7c8719671ef0c9fjs  
2023-05-18 23:06:4051ffefa8a10b6da720a80cec4735fe173669e7c974946e46c8dda908e824d8a4js 
2023-05-18 22:39:531cea0c4b1af9170b9ed2927f3b100d202bebd1b8e69ba1527336aaa6b2c0bffcjs 
2023-05-18 20:06:30bbcdb87a842c5157acea98f0cedd358f764e2613b6a635e4f9f5946de8c07780js  
2023-05-18 17:40:136016f12710a18923ed029eb1dc62882b5f1a032a7424e0169dd8c2228598f59djs  
2023-05-18 16:46:55d76b1300fd995ec8def343df0450c11a58a217803fee3749db4afacebc64182ejs  
2023-05-18 13:43:13f03221c0b8c8a2103bb8a217da97e4944d2af9bc16f8cdb7f2bc0e014071ccd3js  
2023-05-18 13:11:3751351bc77c5c23de367e4fdd74a87fd4ea6a100dd396c2f78dde57c715543f3djs Quakbot
2023-05-18 11:01:2105dab37be019900d575f8a51485f2baecb4fe212712970c486fb711a173c6290js Quakbot
2023-05-18 08:31:4842046702c8332860c6d6224d63344bbd919246deac12c67a32bee542c7cde41cjs Quakbot
2023-05-18 08:26:07246f0936618439433071e920bc87c631f7506091006fb43ae80612f430c0846ajs  
2023-05-18 07:07:30c56bdfe438e6261fa00e5e48e3e9896927886b959c2947db67582b4cf0f08e74js Quakbot
2023-05-18 05:59:040836ece78eb77f4b5ebf101fc5e4317ad5554305bff6466db565f247b93b5928js Quakbot
2023-05-18 03:58:1690854b60ab6b30c83f8839a6d1977dc7968771625bc4a6751d30fa1ff505912bjs Quakbot
2023-05-18 01:49:06c5a390d1bf67c2241e5a9cb33cab3e83b41d4319c494c9f15d864cff3015e95djs Quakbot
2023-05-17 23:24:5161ef6ef0f9ddc3b6d4b8201a85d35c7ce79058c5ccbb5ccb51e68f15898a3bf9js Quakbot
2023-05-17 21:31:088116e7914df0a4fae9adad12da668660206754557fac016131c53fcd305d537fjs Quakbot
2023-05-17 21:14:354199aea159f7829cacce2dcf979b07474ecef8f9e346c83817680cf1cccae1b3js Quakbot
2023-05-17 19:19:55900d17d88446041eb9505545c8b6d8990d865e23d54f5e82f92384a8cf3d87d7js Quakbot
2023-05-17 16:17:01ddfe74e26faf2b35c9062f09a66b41c79d391c1658c3fa8b4e2ce20752a2b05fjs Quakbot
2023-05-17 15:26:306da5adb44a26381ff077fb8a45c8d20a4888393b3fd5733d6fc8ac4519809c94js Quakbot
2023-05-17 13:06:13321c1a3f14a23d2a9aa660e3c3d41d7c92fbba4788fc20057ac697e402248405js Quakbot