URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: cafedonanton.com
Domain registrar: n/a
Domain registration date:2019-12-20 15:32:41 UTC
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2023-06-13 15:04:14 UTC
Total malware sites :2
Online malware sites :0 (0%)
Offline Malware sites :2 (100%)
A record(s) observed :3

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-04-27 18:12:18 135.181.229.88oak.dnsrapido.xyzNot listedAS24940 HETZNER-AS- FIyes
2023-06-18 16:59:26 173.249.36.84server.beauppy.comNot listedAS51167 CONTABO- FRno
2023-06-13 15:04:16 200.6.152.233b2022.gconex.comNot listedAS8100 ASN-QUADRANET-GLOBAL- PAno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2023-06-13 16:37:15https://cafedonanton.com/ud/?1OfflineBB32 geofenced js Qakbot ext Quakbot ext USA Cryptolaemus1
2023-06-13 15:04:16https://cafedonanton.com/ud/OfflineBB32 PDF Qakbot ext Quakbot ext 0x48215333

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2023-06-15 15:19:565ab9f9697325c65c54b9f5b8a7e3e3c78ce8d14f66d75bd9de01a5d6e0a198dczip  
2023-06-15 14:14:58d8a16637ad55f6c4abfb0c9bcb0f32c080f61ab0a92a33a7ad5f7be7549ddc79zip Quakbot
2023-06-15 12:53:59545b1725a54d90344d9b9096d02793f8143028e3ae3d359fb45b2a9e0a617948js Quakbot
2023-06-15 10:08:4724086114f7c564a23e400bcd9ddfea9d788fa601bb16ff8c85cdf17e69033820js Quakbot
2023-06-15 09:22:405df9007e7f84e15fad8092c19844788dd1e6d81a4a9d1a9b0096b2b76d5dc280js Quakbot
2023-06-15 08:38:06e2ab9ef6c5941578856384b69469b47eaf77d88809c7c65747426328a99c1a8ejs Quakbot
2023-06-15 04:14:50b6d4b574087db12840c43ec7813408d628fc5db1c342b2ac0a6fd0fca80df469js Quakbot
2023-06-14 13:21:38f151873cdb5b7c094893282019dc474a0862791e65a667cb6075670f52f6b28ejs Quakbot
2023-06-14 12:24:5217123848416875036b03242f87ae3c2e6d033e75e8a156d552adfe31f2ac5cdfjs  
2023-06-14 11:40:361d9eae45e40581c324acf2277a820c6cc8e08bee81e8c3162e58854e549ad66dzip Quakbot
2023-06-14 09:59:2485f804697b22bbda35734f6c1ba9102adb75e56c4aedef9d636b052dc0c9bb85js Quakbot
2023-06-14 09:15:26bf1521a3ec608512bfd3342d16e8c7392aa729827eaae6d681d4285a0dd764dbjs Quakbot
2023-06-14 08:04:36c8c692255b433f79008d463eadba1850ab6cb484f32b787a318d3984d1740705js Quakbot
2023-06-14 06:10:01443a4858bb97867d5cd71cf4bd4fa72fd89ead7f2a7c7c54cb88492000166886js  
2023-06-14 05:28:1808fcba4bd4294f71d9703bdfde10ef905083c55eb4288959983ed7e7dd2b0d18jsQuakbot
2023-06-14 05:04:3143ab69d42b8f5ee56207c459572b0287c8749f71a833d58c4ba5670f148e609ejs Quakbot
2023-06-14 04:40:3029b67f2885001171080aa13fc929031085f0b8ef1753fd9b82a5ed9010339816js  
2023-06-14 04:23:256ee254383a658cdaaf89c33b3a317af72a04384d990326e57adbefa77a2cf9fbjs Quakbot
2023-06-14 03:35:0937ca56a41ba3eaa4a33a8522caf8f9dac77bf9b55a1ae1a088674c9292415866js  
2023-06-14 03:34:27ab858f0e420f7848eaf0c15ab5decc4579993887e42de9758a2f4c2b036ee1d0js  
2023-06-14 02:39:45138d7d932fe10069e86f4f4ef46f4b9a2a9553c103eccdd6187d176149558ec4js Quakbot
2023-06-14 02:03:149f6ca620d7184800cba22bf6cfbfc01061338f12e38be48481be988d11fec7d9js Quakbot
2023-06-14 01:44:388ee6d32025b0548e4ed6e55479f139e1fc07b9934ca1f80c870d8f714c7883a8js 
2023-06-14 01:01:4497b8f8aef147e3696e5194b6abdff9c9510500daa8058716b037c4fcc352c0d0js Quakbot
2023-06-13 22:59:559188f52e0786097d39407a4a95da624c737a2482bf2c891f9082d21e61f2e5eajsQuakbot
2023-06-13 22:23:40d7b1e48ae41a058f62dcb7265efb89aa1016ef57e1697ca1de31974b3a6d6473js Quakbot
2023-06-13 22:12:521ab1b8718e6f930d3cba401c52e2765d9a40eae41f9f08c4fd62decb7973b6e2js 
2023-06-13 21:22:28274e5f57fbd293f8cadfdef9c923ef6989211cc5549458be078f804e4758996djs Quakbot
2023-06-13 20:10:07af421ce80f44c8aa9ee3baa364b9e4b541e48198fe96894b39f62297eebf1427js Quakbot
2023-06-13 17:30:401e714f8c24367068cfb8eafaa93258baf9e3ec77ab4c1b44027a4c4a8ad168b7js Quakbot
2023-06-13 16:37:155201181776f90bcadf9f10aa6db42f4fa9288129ea63fcfe5aca875494f433eejs Quakbot
2023-06-13 15:04:16b821ebd5e1d06afdd93c227ebb6880b283016af9fccf31533ab6d3bdc8c9ff57js Quakbot