URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: gasak138.com
Domain registrar:Dynadot -
Domain registration date:2022-12-15 19:22:37 UTC
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2023-05-16 11:26:01 UTC
Total malware sites :1
A record(s) observed :7

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-09-25 07:52:07 103.224.212.213lb-212-213.above.comNot listedAS133618 TRELLIAN-AS-AP- AUno
2023-05-16 11:26:04 188.114.96.3SBL690066AS13335 CLOUDFLARENETn/ano
2023-05-16 11:26:04 188.114.97.3Not listedAS13335 CLOUDFLARENETn/ano
2023-08-31 17:34:01 188.114.96.9Not listedAS13335 CLOUDFLARENETn/ano
2023-08-31 17:34:01 188.114.97.9Not listedAS13335 CLOUDFLARENETn/ano
2023-05-16 23:11:02 104.21.6.111Not listedAS13335 CLOUDFLARENETn/ano
2023-05-16 23:10:56 172.67.134.192Not listedAS13335 CLOUDFLARENETn/ano

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2023-05-16 11:26:04https://gasak138.com/totr/?1OfflineBB28 geofenced GuLoader ext js Qakbot ext Quakbot ext USA Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2023-05-18 15:44:011a2e818afb29521c8658d2a0643158af97370d69c32c0bd85cb900bd3e85b0eejs  
2023-05-18 14:59:2451ffefa8a10b6da720a80cec4735fe173669e7c974946e46c8dda908e824d8a4js 
2023-05-18 12:41:576cc345a8ad3df8d8da07821f31095f9c217201e0065038c5bb7e15aae14a9035js  
2023-05-18 10:08:00b4bbe3eb6f77c745b1c296728e15c69c6b766df2aa51d6d745ce4e5fee415e06js  
2023-05-18 08:50:483fe82998dbbd1b56d6f2bf670fec8d276ac794d97facd50002a2cae0c1f41b02js Quakbot
2023-05-18 06:35:490af9a445f31e51c20a58fad5f35d353da59c49e684bf1db02c436c4d7f7f18a6js Quakbot
2023-05-18 05:09:23479435405ce11b58fbf16a8d7d4f3f1b2d8952718a2dd79f8c0e4ecb91176be8js Quakbot
2023-05-18 02:56:30b87903d0aa16eb59b3bd58047ae31f7e370cc478a7b6d952e262fe4e56abb4e3js Quakbot
2023-05-18 02:03:320f8aac75339d21d38c89f545a30c35990759d0f0123017fad73ed0c8ce34b51cjs  
2023-05-18 01:59:038b5a063138d39c424fbf7ce7022dc972afa3c2df792b3a030272c1c77490dc96js Quakbot
2023-05-18 00:49:289ac768cf3025869132bdb78aad3f4505cd8dd7e5ddc218e64d6645ba8db5e4f4js GuLoader
2023-05-17 22:14:08abab065bf35d31ff71f44feed5659074ee381a93862817826b7b884996333700js Quakbot
2023-05-17 20:21:39d307232640d2944029109ca441be49052d7c8d24590a54096c256c48e4d7da1ajs Quakbot
2023-05-17 19:52:09a0220d487566d1243b11c30ea5d37349418d84e8f6eb6013e0792aa4b11236c6js Quakbot
2023-05-17 17:34:302a95cf3c1e69da726dd11f2d5621a546ce89b168fa1cab3506197a63de008d69js Quakbot
2023-05-17 16:16:018475cb42b6b2c974e37378cf11491570a83f194a37e5ebbc50add4a5677d6d72js  
2023-05-17 15:06:263c39de1cdb595f8d1822395bd3cf9c81743a1b303cf7188cf41f49bf8c0005c7js Quakbot
2023-05-17 13:43:16cac584e2ff62f01ca51db682d0b6d32ff11123c3bc3b6a5e9794606ad51844fcjs Quakbot
2023-05-17 10:50:35f1f61e0e62e3f580fde3c038e404fa35af3162db8a4591f6aeee408765243174js Quakbot
2023-05-17 08:09:38e3357d238879f17c52b63430046495100f635359feeb8312d9b90b01d90d8ca1js Quakbot
2023-05-17 08:06:18bc45b591bb1a35a3ea07c0675c681e038dcdf6661015a6b853c168e8ffdb048ejs  
2023-05-17 06:11:5888da12fa14fd56f9ff17976930a9c6f45b43f9e3572a75a715cad2e280fb3146js  
2023-05-17 04:09:35bd7900b7832cd4fb6879236d3893304dd6e4cdb8611b6a70f58eafe4239ca662js Quakbot
2023-05-17 02:46:11377f6ff39334eb002f24c94f443b0fd887adb79d82c233a8b27a6a7e292d377fjs Quakbot
2023-05-17 01:18:02c5d505d9c1dc469423ffafe6660a56843c4a9f0886eb04b98f6a2d700a7faae8js Quakbot
2023-05-16 23:10:50642f050a6858a60a526a30382740c0385aaca15c201cf84861ece07310f1544bjs Quakbot
2023-05-16 21:21:0807860800817ded2d360636271a49ae48cf3bc9229fd4d4855340799706476ab2js  
2023-05-16 20:47:53ce117e6c4b67d698e7297e8b31b388ed3d4831db7208259e12305f8d389956e4js Quakbot
2023-05-16 17:37:36e2462a677626299c0fc190bcbfd4cf57ff0759de6f39d108e0f8abba7ed3d513js Quakbot
2023-05-16 15:49:02b495bf1cd82205eb971251c426a1130b4958ecbcb366d2136b43f6ec6f7e56bfjs Quakbot
2023-05-16 15:25:44dd81904526e623ba10c6b7eb06abff983226159396811e6f6bbb47cb1cffd8dajs Quakbot
2023-05-16 12:14:44fb910b18fba060828088de30b76879d6f70a603222846046ed061bf4e7614d13js Quakbot
2023-05-16 11:26:04847cb3eebc2da7e637b151f22cfd4da999621293c08efb3adb4aac8fb3b00cd8js Quakbot