URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: cozailorinqc.com
Domain registrar:Namecheap -
Domain registration date:2022-07-16 10:06:26 UTC
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2023-06-13 16:33:10 UTC
Total malware sites :1
A record(s) observed :7

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2023-07-27 14:25:13 172.233.218.191hickory02.parklogic.comNot listedAS63949 AKAMAI-LINODE-AP- USno
2023-08-11 16:20:35 172.232.30.16hickory04.parklogic.comNot listedAS63949 AKAMAI-LINODE-AP- USno
2023-07-17 02:26:04 199.59.243.224Not listedAS16509 AMAZON-02- USno
2023-08-12 14:47:47 172.232.4.89hickory05.parklogic.comNot listedAS63949 AKAMAI-LINODE-AP- USno
2023-07-16 19:26:52 76.223.26.96aba1c1ff9d2ec5376.awsglobalaccelerator.comNot listedAS16509 AMAZON-02- USno
2023-07-16 19:26:52 13.248.148.254aba1c1ff9d2ec5376.awsglobalaccelerator.comNot listedAS16509 AMAZON-02- USno
2023-06-13 16:33:15 199.188.200.154princessluxuryhotels.comNot listedAS22612 NAMECHEAP-NET- USno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2023-06-13 16:33:15https://cozailorinqc.com/tt/OfflineBB32 geofenced js Qakbot ext Quakbot ext USA Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2023-06-14 14:32:562a260768e2beebcc1da2d3368064660d054fbe8aa002eee7f2d9555f2340380bjs  
2023-06-14 12:54:3448eb2e68946564c7e368154c0bfd50d784f690ea037f14bd8dbc98e21c830452js  
2023-06-14 11:38:17d36757a37cfad9dd9bce6ae6b436978344bfdeeac399a3f7bf4ef784029c9757zip Quakbot
2023-06-14 10:12:18936aa95b1bcbffdab0d7e7e4b07b4ffa3907500bc9ac96a5d879d85aa64ffe9bjs Quakbot
2023-06-14 08:28:435c4e49c1977a1a6350d56c77e09bf00d527cf459ffc47c665697c3cf349bf90ajs Quakbot
2023-06-14 08:12:03abea42c24e68ab1dfce9c66e1d510c5a7fb59c47ebfce07b2108bfa4829dea83js Quakbot
2023-06-14 06:48:21768c7f7dd8a5c0704094fe92cc77d3d667040c32f88658005ea1730725376bfdjs Quakbot
2023-06-14 05:19:58319976befbb5269faeb1456a5aa2380505f358c976f911c341cfdcabc7981a1cjs Quakbot
2023-06-14 04:45:133a3f6e894d8cb08e67dcdadda77cb165936a1a368e91300460d145f3fd09b4ccjs Quakbot
2023-06-14 04:13:08e52709cccd057f0ba8a1a15af6bd3a915c79b5304a0f9ccdbd1b4b5ef32dbec0js Quakbot
2023-06-14 03:16:22c72f9d4985280477c1b57234ed6fdb9d760060d765c03db312c206ea35e8cb98js Quakbot
2023-06-14 02:49:59660ff12604e28d9e2c91a490f5d055fbe152df411d179df1578c9d54b875c06cjs Quakbot
2023-06-14 01:55:51e7cd21fc50018e3a9d2df41a2c343698e595a11ac49619bbf9d7aaf657545e65js Quakbot
2023-06-14 00:49:32dc380c6947c5f8de2586ab7baf30b36b6a9426932323cb2096af2c5f4e2c344djsQuakbot
2023-06-13 22:59:51bd23dc61662cac8005b92f5bd9df881de1391cca73e36e749f5eaf4e8e53bd11js Quakbot
2023-06-13 21:55:21f1da51711fec5288c298f706f7d6ea9323c81c167bd258ff00f5810d1eaa2497js Quakbot
2023-06-13 21:33:4948f7a827ce26700fb4fc4370955e762fa9944d462d5c8ec894f100ed6a1286a1js Quakbot
2023-06-13 20:12:25958342a90502bd278b7e87d0eaec2224d8b4856a579385d30092496561d6638djs Quakbot
2023-06-13 17:36:2424f2158bf5aab157264c1a1f1a2b13476744dd44b9c41d9de0728b2b68845956js Quakbot
2023-06-13 16:33:15fd17cd463af9bf449d3eb07975e3ec381c8a7608011d1e56b64d01ce8c363dbbjs Quakbot