URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: filmsgdl.com
Domain registrar:GoDaddy -
Domain registration date:2022-06-24 23:49:10 UTC
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2023-05-17 13:06:40 UTC
Total malware sites :1
A record(s) observed :4

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2023-08-19 06:37:57 154.205.71.236Not listedAS9294 GNETINC-AS-AP- SCno
2023-08-06 11:11:10 34.102.136.180180.136.102.34.bc.googleusercontent.comNot listedAS396982 GOOGLE-CLOUD-PLATFORM- USno
2023-06-29 14:38:18 34.98.99.3030.99.98.34.bc.googleusercontent.comNot listedAS396982 GOOGLE-CLOUD-PLATFORM- USno
2023-05-17 13:06:43 148.72.50.3030.50.72.148.host.secureserver.netNot listedAS26496 AS-26496-GO-DADDY-COM-LLC- USno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2023-05-17 13:06:43https://filmsgdl.com/oua/?1OfflineBB28 geofenced js Qakbot ext Quakbot ext USA Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2023-05-19 16:36:2951ffefa8a10b6da720a80cec4735fe173669e7c974946e46c8dda908e824d8a4js 
2023-05-19 11:58:2176443e093ed6d6e3961cb5f9bbd546bab2d05f6bc2536c5744dc86f7a769bea8js  
2023-05-19 06:49:316016f12710a18923ed029eb1dc62882b5f1a032a7424e0169dd8c2228598f59djs  
2023-05-19 01:40:361cea0c4b1af9170b9ed2927f3b100d202bebd1b8e69ba1527336aaa6b2c0bffcjs 
2023-05-18 23:08:24c74cf0cb7927a8438a84c9cedbdbab3e4815550813336043f39674a67b6a021ajs  
2023-05-18 21:15:551a2e818afb29521c8658d2a0643158af97370d69c32c0bd85cb900bd3e85b0eejs  
2023-05-18 17:43:34d7522ab4f64ae0950e24bb00df9157136bbcb900ace0c77bd1a46f06149bf37ajs  
2023-05-18 16:12:40bbcdb87a842c5157acea98f0cedd358f764e2613b6a635e4f9f5946de8c07780js  
2023-05-18 14:22:31510f3f3a64dac886aeae9a35da9840a21c0d026675274d2cca23bc0cec00be5ajs  
2023-05-18 12:58:519ed630b44354fa9a5b12648e092b487dbecee08d6aad53bf5d2695dbea9b9cc6js Quakbot
2023-05-18 11:14:292072042cbdf8458366261756217da566a1b8d6cf4b24541a37d71c44c07c7fdejs Quakbot
2023-05-18 08:51:377b0e64b5b88495d402a11b16ad7776cc5e0d44a07992e8b9cf9c7006a92ac8bcjs Quakbot
2023-05-18 06:34:033bb4e5803055d8c3ad6250df56ce21b663c3da855bc32daa9ecf204060498681js Quakbot
2023-05-18 06:04:2337dfc4f0a00904e349fd56b330748fba27b43ebad14ce22ba20df17809091c27js  
2023-05-18 04:24:21f16b3c48ca1ba324e53c48a72c3bc53329423b16779e1cd1d0d40447f39cfefajs Quakbot
2023-05-18 02:42:5592bcab1aebfd8fc6b8ed37048bab5574189469b98f8152e71b4c41106be5e52ejs Quakbot
2023-05-18 02:06:46d72be2d3e9fcadaa237d2573ff95eacd51e973b70514465c8d57e7cd957769b2js Quakbot
2023-05-18 00:50:230ae16f66866567a01f4af47c0c7b2e49d1e54eba4e457b2de97f88c48016cedcjs Quakbot
2023-05-17 22:12:38a84a8c5338c73e889cff9d58c510657f8624b8deedf847eef71befacab5ed60ejs Quakbot
2023-05-17 20:20:042643a0ad4d4922d9f4428188cfe85112015c48ec78826051b8fc118affc60fa4js  
2023-05-17 18:17:560b3324b249fb9e33cb3970056ed6166b271c1f678d65d34cdff6079bbd95f2c5js Quakbot
2023-05-17 17:10:36a7559adb58fb8ca343a880d3a323c7307621cf7e95fee410922b0ee0d24d8bc7js Quakbot
2023-05-17 15:32:28e4ec32150d6e87a71d76e7b2f71274e3ac9a2b263e4fec937fbcf4b766731192js Quakbot
2023-05-17 13:06:4311ef57c233cd2baa14c4cfb9579839d381fbdec85d01923f9679f5ed21935f52js Quakbot