URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: gititech.com
Domain registrar:GoDaddy -
Domain registration date:2014-11-26 08:00:49 UTC
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2023-05-17 13:06:14 UTC
Total malware sites :1
A record(s) observed :4

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-05-18 01:40:17 13.248.243.5a16e665f42988324c.awsglobalaccelerator.comNot listedAS16509 AMAZON-02- USyes
2025-05-18 01:40:17 76.223.105.230a16e665f42988324c.awsglobalaccelerator.comNot listedAS16509 AMAZON-02- USyes
2025-04-27 11:05:11 208.109.56.209209.56.109.208.host.secureserver.netNot listedAS398101 GO-DADDY-COM-LLC- USno
2023-05-17 13:06:22 184.168.117.2222.117.168.184.host.secureserver.netNot listedAS26496 AS-26496-GO-DADDY-COM-LLC- SGno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2023-05-17 13:06:22https://gititech.com/dm/?1OfflineBB28 geofenced js Qakbot ext Quakbot ext USA Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2023-05-19 16:27:07c74cf0cb7927a8438a84c9cedbdbab3e4815550813336043f39674a67b6a021ajs  
2023-05-19 16:19:1876443e093ed6d6e3961cb5f9bbd546bab2d05f6bc2536c5744dc86f7a769bea8js  
2023-05-19 13:18:176016f12710a18923ed029eb1dc62882b5f1a032a7424e0169dd8c2228598f59djs  
2023-05-19 08:34:30bbcdb87a842c5157acea98f0cedd358f764e2613b6a635e4f9f5946de8c07780js  
2023-05-19 00:44:22d7522ab4f64ae0950e24bb00df9157136bbcb900ace0c77bd1a46f06149bf37ajs  
2023-05-18 23:06:4651ffefa8a10b6da720a80cec4735fe173669e7c974946e46c8dda908e824d8a4js 
2023-05-18 18:10:41d76b1300fd995ec8def343df0450c11a58a217803fee3749db4afacebc64182ejs  
2023-05-18 15:43:33d3c6e06204212c1aeeef29809460056535cba3beca8cf163b7c8719671ef0c9fjs  
2023-05-18 14:07:566c7608b57a65b96c8be0af22e31071e9606d6cc4fdd18e398656b3fb91d1d035js  
2023-05-18 11:56:157a515185d1c204dc897de0e485dd2dd335341156b5b7764220fb6df27fdbeb16js Quakbot
2023-05-18 11:26:41a1f08963f5715bb8830f2ea036c6be1f8a5f34bc8a6bc799c36611f79e54b14djs Quakbot
2023-05-18 11:12:474657c8d962a15da8cdc6ff3c1ab3d492a89eebdd09249e8d29eea382791500abjs Quakbot
2023-05-18 08:27:03928de378e1b8690de67deab709ed80da406ac542daf31e7c5859f02c0b9a4240js Quakbot
2023-05-18 08:04:05f7bc14c8c137444d5d046f1c1304ca9eb96509ce61adeffaa967dc07f21c17d7js Quakbot
2023-05-18 06:07:22d307232640d2944029109ca441be49052d7c8d24590a54096c256c48e4d7da1ajs Quakbot
2023-05-18 02:54:230769e73bc4ebc2ee5fdfb2e6d02b6a282085b48c709104d96e856380e8e4ecfdjs Quakbot
2023-05-18 01:57:43e7958ccd8a002219ae5c0a15fe85c42f33e3433270f0ba102d597f19a494e2e8js  
2023-05-18 00:08:52404e30334a58830297758dd73f2fee67f6ed0ea8c6d7fa501d7eb809925d82fcjs Quakbot
2023-05-17 22:38:50c2b44422f7f4e7dc1cd2abeab300413b55a00cd9d34fda7542a467dd852bafb4js Quakbot
2023-05-17 19:29:42a4d5af2c7491cf9e8c6fc213f49572749af1f591ad0e453bfc3770dd17d884dfjs Quakbot
2023-05-17 17:37:03655729ffaa1d79b40a1df6017495f362432d5497a1c79b18220fdcc46d21f2aejs  
2023-05-17 17:23:48a9c6050bc229b2d8d2b411d575194857f0f0b908185bcc15cd09d5c25f330867js Quakbot
2023-05-17 13:45:451023d2a3febc48f033a53509d7c13ab44b981e38169392d13c7ad15e12b37515js Quakbot
2023-05-17 13:06:22562698d61476d96d6f3b0fd847585b9c5e4d1f9eb96f8153ba577725aa0eb697js Quakbot