URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: cargotrans.net.co
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2020-10-20 14:34:03 UTC
Total malware sites :1
A record(s) observed :25

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-05-27 10:16:34 54.82.120.89ec2-54-82-120-89.compute-1.amazonaws.comNot listedAS16509 AMAZON-02- USno
2025-05-27 10:16:34 52.0.95.112ec2-52-0-95-112.compute-1.amazonaws.comNot listedAS16509 AMAZON-02- USno
2025-05-21 08:23:37 34.206.187.199ec2-34-206-187-199.compute-1.amazonaws.comNot listedAS14618 AMAZON-AES- USno
2025-05-21 08:23:37 44.198.48.31ec2-44-198-48-31.compute-1.amazonaws.comNot listedAS16509 AMAZON-02- USno
2025-05-15 11:59:58 18.235.139.45ec2-18-235-139-45.compute-1.amazonaws.comNot listedAS14618 AMAZON-AES- USno
2025-05-17 16:42:35 3.210.150.73ec2-3-210-150-73.compute-1.amazonaws.comNot listedAS14618 AMAZON-AES- USno
2025-05-15 11:59:58 3.225.205.90ec2-3-225-205-90.compute-1.amazonaws.comNot listedAS14618 AMAZON-AES- USno
2020-10-20 14:34:05 198.49.68.125vps.easymarket.coNot listedAS33182 DIMENOC- USno
2025-06-04 02:44:53 100.28.247.52ec2-100-28-247-52.compute-1.amazonaws.comNot listedAS14618 AMAZON-AES- USno
2025-05-22 17:37:08 3.224.119.186ec2-3-224-119-186.compute-1.amazonaws.comNot listedAS14618 AMAZON-AES- USno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2020-10-20 14:34:05https://cargotrans.net.co/crun20.gifOfflineexe Qakbot ext qbot ext Quakbot ext lazyactivist192

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2020-10-22 07:02:267de8c22aea7b3a871d4ca5715e4a70313f7e63eb8ac661c4f0b4f84e1876183dexeQuakBot
2020-10-21 12:57:0176dfd774e997c6f57436d26f9687330780fb4e531be2ac87b987f59caf9420c3exeQuakBot
2020-10-21 11:49:18036296212b13129b81fff39a13ad73740bbaf9a776d4d502615284b3b14f2629exe QuakBot
2020-10-21 11:25:18fb9199d3881ad37698ae8457ee22d51da0f66bfec873528fd0a46514a7e46a6eexe QuakBot
2020-10-21 10:58:52310f0dddbefb6a179682c874b3e89d309410da4da3c733b50e42334c723458d1exe QuakBot
2020-10-21 10:44:177335b6a20efef2b314a89c31bb0129dc24bad21d30c6aee203ca9c904b79e89eexe QuakBot
2020-10-21 10:02:304db46902970d6b3ef0182ee192b008e8fcc28bcd3b0400c2aa6a1df27f3fb642exe QuakBot
2020-10-21 09:26:1959759cc5b264ac6a78a5621dcacfcffa1a63942f5125f032faf73dd57e8ab594exe QuakBot
2020-10-21 08:56:28c281cc04a250df7c0a8700dc666f95b73985107d382f6f26ca90f5106469d81aexe QuakBot
2020-10-20 22:16:589ab404c46a4511f207c5b9df3e76c2618d193873e98ec7bc7c9e60b5dc285bd6exeQuakBot
2020-10-20 21:47:0376ca0f3d7cc3c4231e242c4a90ecfd5da244d4df64cfc3c95da1ce321e1c3852exeQuakBot
2020-10-20 21:12:0748f64c9177e93942695e1108b6346a1437a3ad44e6cf65ebe1d2e5b738a23421exeQuakBot
2020-10-20 20:52:17507a5d8212197647a28afccc1a800f7e28b4c26ecf1181bac72921b95d33d83eexeQuakBot
2020-10-20 20:10:496f00837f83703021bc4f718a4df8a7fbdadf5fff50728dc09c050efa5259db89exeQuakBot
2020-10-20 19:54:58906d29829b1b495e67d9e196ad56dfa3deddc1f968a011e2678a2085b80c590aexeQuakBot
2020-10-20 19:28:17a1ccf7c8edc1c55387a37afeea220130241485e38a112ac5eb70b65ae1096c64exeQuakBot
2020-10-20 18:59:491399a0c10893e6d83d602d6026434e0d5615a56e32439b5a49146b1823b01333exeQuakBot
2020-10-20 17:58:37ddfcc04088a52d6ebd212390fd55c95cb7f8286e200175dad5bb5b1ffd141762exeQuakBot
2020-10-20 17:26:30f4bfb36faa1244ccb7eff5b1ede62bbdea104a86caaab19cb962f3cba093ccadexeQuakBot
2020-10-20 16:59:39184c4e09da72a61a29b2b70d9d3cc5465e222230fb5421bb4bf453f9621498ceexeQuakBot
2020-10-20 16:29:51e7b71f274fa6101b23bea864a62527e991781f2b94d2158077bef3e8eefa0bc6exeQuakBot
2020-10-20 15:41:49a377d9feadbe4833a58119212059ef8ede76a06942a82c79e5f179707b5e0a2aexeQuakBot
2020-10-20 15:03:298ffb42e60b3dcd29fd9fb67b782d418f632f975a84f6ae1eefec8c3509fcb29eexeQuakBot
2020-10-20 14:34:048ba3aa42d5c3e1b4cd3ead07bf2c40641e4011aac0b2a1b1262f80504d423f9aexeQuakBot