URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: cuanselalu88.com
Domain registrar:Namecheap -
Domain registration date:2023-01-03 21:13:10 UTC
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2023-05-16 21:54:09 UTC
Total malware sites :1
A record(s) observed :2

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2023-05-16 21:54:24 104.21.84.78Not listedAS13335 CLOUDFLARENETn/ano
2023-05-16 21:54:19 172.67.188.168Not listedAS13335 CLOUDFLARENETn/ano

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2023-05-16 21:54:24https://cuanselalu88.com/bml/?1OfflineBB28 geofenced GuLoader ext js Qakbot ext qbot ext Quakbot ext USA Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2023-05-18 18:32:14d76b1300fd995ec8def343df0450c11a58a217803fee3749db4afacebc64182ejs  
2023-05-18 18:03:2851ffefa8a10b6da720a80cec4735fe173669e7c974946e46c8dda908e824d8a4js 
2023-05-18 16:44:3176443e093ed6d6e3961cb5f9bbd546bab2d05f6bc2536c5744dc86f7a769bea8js  
2023-05-18 15:51:03d7522ab4f64ae0950e24bb00df9157136bbcb900ace0c77bd1a46f06149bf37ajs  
2023-05-18 14:26:03ff6374f261eec79e587b2b399eec41a29ae18f9452fc0f66ea55ba5c02a9a8dbjs  
2023-05-18 12:29:200e8413c3fd2b87cd2139ba54c718d6b9f305a8bf33d41f05aaaa2639ccde842cjs Quakbot
2023-05-18 11:11:508f330d0bd33cae1207a38406d6db47ef79a72bd8d18681a4a0f3a3a33ec3e4f3js  
2023-05-18 08:45:34cf3f8bcfc47120345a6bf7e2b44265e2cb07dfc6d6aae1290d5552e5f6d2e1f7js Quakbot
2023-05-18 06:34:37b76a46e9b0db483e342c390f25663222fee2e67cb7670205636c7ee748850b86js Quakbot
2023-05-18 05:58:399ac768cf3025869132bdb78aad3f4505cd8dd7e5ddc218e64d6645ba8db5e4f4js GuLoader
2023-05-18 04:24:19fceef22558799ba34afb830f44f63ff2d0386112e3506a24549d220e7ab2f4d1js Quakbot
2023-05-18 01:08:23dc7a9209bb0458b585fb71acb0ae6a651d790217507b141df605e7290800960cjs  
2023-05-18 00:06:2429d88d7a73d988b2b2c5ddc76ac150742366a2a8c379758bf47f13c2fcf01346js Quakbot
2023-05-17 21:31:23246f0936618439433071e920bc87c631f7506091006fb43ae80612f430c0846ajs  
2023-05-17 20:18:28e84b4920d25503f9505dfe8813b964551aa485cc176eb30dc5ac5e46dd5d56bbjs Quakbot
2023-05-17 19:15:283e80a8823bae07e1aca749a62a6da2c57f0f80ebb6d4a8cd1be2ea749d3af45cjs Quakbot
2023-05-17 17:12:215b03a98354c24b442061c45caca4e261ba88fe1d68187bd4c44f84773d562a6djs Quakbot
2023-05-17 14:21:58759b7245c8f5cd0c5db7853442c740696c4a66caf8aae6a281b32f063f6c660ajs Quakbot
2023-05-17 13:04:12148afa4bdc9cc4fbfe4816e01d70172a2fba4ead24c822bd4cc936cb0efefaddjs  
2023-05-17 12:32:25cb46274d330ebea266c559fd5e391bd171816f40b8a0d960dbacf22c23a94ea3js Quakbot
2023-05-17 11:38:50d539b753543af560dce23ae456fac8033ea352f2d003120b34332e8aef45cde4js Quakbot
2023-05-17 08:11:5936434082197db3a5e2c24134b3c8dac64d62998fb5bac83d4d60fa66af0aadc0js Quakbot
2023-05-17 07:37:14aac9097a89e9ede6b06a4b0e1f4045c55f09b73df7e1c86ac7c71ca070cdf7a3js Quakbot
2023-05-17 06:00:427d588f31d896f1a96d2f00efd0b286f841534c9dd9bb74a7514e6c5c2226fd14js Quakbot
2023-05-17 02:44:354243a3bff9dec2a49a9666f50f26572666ad1ea85af3419fe35d3e1d8bc1ff65js Quakbot
2023-05-17 01:06:28a9dd9e3810ebbc2337ee7ad47d3e14f983eebd0b511a498446e488dc495c6abdjs  
2023-05-17 00:33:30da6aa0f5e70dbf19c25cdd964b675fdfd8ae0054b5fa7b231d3d3feffb84f39ejs Quakbot
2023-05-16 21:54:13f2a79872768ea02add4483142baa4d7eef4a91a83b5af931728d6825be4b0a47js Quakbot