URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: epyuflix.com
Domain registrar:Namecheap -
Domain registration date:2022-07-24 15:44:10 UTC
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2023-05-16 13:14:11 UTC
Total malware sites :1
A record(s) observed :10

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2023-07-25 04:23:47 199.59.243.224Not listedAS16509 AMAZON-02- USno
2023-09-27 15:16:16 172.234.25.151stone02.parklogic.comNot listedAS63949 AKAMAI-LINODE-AP- USno
2023-09-17 02:15:10 172.234.26.236pebble04.parklogic.comNot listedAS63949 AKAMAI-LINODE-AP- USno
2023-09-07 03:16:44 172.232.25.17pebble03.parklogic.comNot listedAS63949 AKAMAI-LINODE-AP- USno
2023-08-21 12:17:34 172.232.4.89hickory05.parklogic.comNot listedAS63949 AKAMAI-LINODE-AP- USno
2023-07-29 02:50:23 172.233.218.191hickory02.parklogic.comNot listedAS63949 AKAMAI-LINODE-AP- USno
2023-08-20 02:40:23 172.232.30.16hickory04.parklogic.comNot listedAS63949 AKAMAI-LINODE-AP- USno
2023-07-25 06:59:28 13.248.148.254aba1c1ff9d2ec5376.awsglobalaccelerator.comNot listedAS16509 AMAZON-02- USno
2023-07-25 06:59:28 76.223.26.96aba1c1ff9d2ec5376.awsglobalaccelerator.comNot listedAS16509 AMAZON-02- USno
2023-05-16 13:14:15 162.213.251.80premium105-2.web-hosting.comNot listedAS22612 NAMECHEAP-NET- USno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2023-05-16 13:14:15https://epyuflix.com/qnm/?1OfflineBB28 geofenced js Qakbot ext Quakbot ext USA Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2023-05-18 20:56:2476443e093ed6d6e3961cb5f9bbd546bab2d05f6bc2536c5744dc86f7a769bea8js  
2023-05-18 18:13:1851ffefa8a10b6da720a80cec4735fe173669e7c974946e46c8dda908e824d8a4js 
2023-05-18 17:14:48bbcdb87a842c5157acea98f0cedd358f764e2613b6a635e4f9f5946de8c07780js  
2023-05-18 14:26:35fae629814f35347be8a9c27137a0647d8595c12c56f0a56c838b3af38436c27djs  
2023-05-18 13:10:27bc85062a6ed96ba55f83637c5941ebb10dd8734a7486eb2e716a41e21578b347js Quakbot
2023-05-18 11:06:515cf5a460458dbbeb9dc56a1055cc11cf9105c55fae9b828a1884c3899001033ejs  
2023-05-18 10:58:464fe762f3bef37ff2896345d647489f0ee60515aaf5da2c93572e1088e91adf79js  
2023-05-18 08:53:590d6511ddb8cf97d9967367c983015cc45c5ea8c7ae68416f28625637be59caabjs Quakbot
2023-05-18 08:09:266a36fcdbced70acfd047d3132e249ef81960cf97f62f9e391e672db0ecd19f13js Quakbot
2023-05-18 06:09:421bb623b986a2a31d7b68f61ab99a793274bcd030e6ff4daedab6e150252b27b1js Quakbot
2023-05-18 02:48:19fb639f61394301ec51c3c82b270fa10118b12150f177db33a72560d80ad79f25js  
2023-05-18 01:05:57621b5cf40077c9b8235e3525da2dea7b28a80029ac3f7ee7477d78c780f4b8c7js Quakbot
2023-05-18 00:49:1733e5253fc3841fb30d4467ba7144f20b94bfb5714befb85aa32837899b33859bjs Quakbot
2023-05-17 23:05:35e7b23f3002dffd67a5026b9ae031fe92c033bd7c37c6bb15323d3bb075275d89js  
2023-05-17 20:19:08fcdd7c512aa91e5f6574a7c7ab77a118b9e1af5f2e3b502a5adb136508c4ba47js Quakbot
2023-05-17 19:07:38be61952594d1dcb5774683bd939e4e278b596ba069248f2ff16fc39f2351936fjs Quakbot
2023-05-17 17:21:250e8413c3fd2b87cd2139ba54c718d6b9f305a8bf33d41f05aaaa2639ccde842cjs Quakbot
2023-05-17 13:55:55b246dc6bd29b7f7bf62fa6cfdb10a17053bed892c03b79d0328d384cf96f799ajs  
2023-05-17 12:56:21cfc68b43d74cf7d5fd05920f53d7e80393899308fd60fbcd60c8582770294bc1js Quakbot
2023-05-17 12:02:174aa5f66645ca2168af894232b630df6e88077c51f4fa33cbe2efd094e057fd02js  
2023-05-17 10:53:21415e6ba2ac6c7497dd479b253d43d7113a4ccaac990372809f3b416cbf7b5386js Quakbot
2023-05-17 08:37:095cba920074b575b1c0bb4c40207cba34f8f663c27ca538257e4464ce67e4ef7bjs Quakbot
2023-05-17 07:35:54b4fa04818143ae4726337564fbcbf8c6629206853d73d6224334eb27f63299c4js  
2023-05-17 05:31:38fffbcfa7c88130d09664620811d6d8cd93b49521a63406c5777fa1a22000ad70js Quakbot
2023-05-17 04:21:180d7014aa63e82e299325bbf998dfe2cf9e9081f824a6a46b8d04ec5e85232cd0js Quakbot
2023-05-17 01:30:00524ec56b37560a053bb922c2670fa2bfadd98bf935956570b0b157469e122eb0js Quakbot
2023-05-17 00:52:13b496e1ff72d84b9322a0f02e64d92e370f2785a4e209e3e7ad5e4876fa1d8831js Quakbot
2023-05-16 22:32:51edf1ded1741d8ab2c4910e98510677593dc7fa3e3528398ae50803ba6ba8ba87js Quakbot
2023-05-16 19:51:15916219aaf55f07f511e914784b199929ba188279e2dcbf3f3353278c0d19c2b5js  
2023-05-16 19:30:07d65748467f02424212ca56cedb6cb8b72be5b8831f85470322fa3103798015a1js Quakbot
2023-05-16 17:51:5833da98bb911d32b695d04896e8f5d50bd9fcb1421df9ff3cb81d77969f6924dcjs Quakbot
2023-05-16 16:18:20a5a479ff9bf365ef48e3fc8a633daa7c996d3a87b0779d762123b5c937978c85js  
2023-05-16 15:16:10e7e813920518eb38c764e6529265e92f81fb0d9bdb7875ec31d249f829e44150js Quakbot
2023-05-16 13:14:15020b0c887a18dbf455b36839c8cea58f0e2bdcbc4c3e6b08e213b8de0beeb948js