URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: grupoalvez.com
Domain registrar: n/a
Domain registration date:2023-02-02 15:20:54 UTC
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2023-06-13 16:33:10 UTC
Total malware sites :1
A record(s) observed :2

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-04-28 07:00:30 72.249.55.19svgt191.serverneubox.com.mxNot listedAS17378 AS17378- USyes
2023-06-13 16:33:16 174.136.37.107svgt197.serverneubox.com.mxNot listedAS17378 AS17378- USno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2023-06-13 16:33:16https://grupoalvez.com/net/OfflineBB32 geofenced js Qakbot ext Quakbot ext USA Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2023-06-15 15:22:3668024f3a0f3327957b823c3de9415207804e77b731c69632a7b0bdc1905addbbzip Quakbot
2023-06-15 14:09:4049796de5fe0d580af9be1f71f6b43300f30bd4042ebff79ef919d3c640edae0fzip Quakbot
2023-06-15 13:09:51214a41894bc66a12cf05a87a62c9e290c1324c51558cd8f63b4096fe75ad1cb5js  
2023-06-15 11:05:526ffbe5a82b8827796d3974e17596e8fa43db3c579bb21e84887ce065145e34bbjs Quakbot
2023-06-15 10:06:00837f19b5e3bbdd8213694b8bf6ace33cf991afa8f7febc3377a1b6d92cf2222cjs Quakbot
2023-06-15 08:08:39643b17141fae317ca933669dbe31a07c37efdea2d30db65dc5e2dc47fb7bc9cdjs  
2023-06-15 05:50:219e93ddbe1f77f7e8cc11348e9e0c3ed0f575a1932233be94e214ad1f58092557js Quakbot
2023-06-14 12:40:2126142a0f5c45d89a419cb74804c79a35b83fd70369f811a8c9f15807a195022czip Quakbot
2023-06-14 11:03:43e67cc251b0099e6448533274e9bbee0b22390af8c47a92bb6c7fd8fbd5725285js Quakbot
2023-06-14 10:54:3858a104218ed7ece5c31800e1f1fdc76882c4f6a6009bee726a54579874e99460js  
2023-06-14 08:41:35e07aac140a5b7d449d59bfccf9fca6c1632f2cac507a68d673a96536b797d682js Quakbot
2023-06-14 07:18:12c25ecf652174f94ac18bba8177d5d8322fb31d649edabc523b505e815cc47376js Quakbot
2023-06-14 06:51:389f3de48d50ae11c8416b11db22eca5f04706871ac6c58bc9ab556b5947e3ab55js Quakbot
2023-06-14 06:16:463f65fb92383f4ba551003b030280c3b28855834ecd6b3228a73ef2b96616f6e3js Quakbot
2023-06-14 05:26:178a9f624cffd86aa962676fc64c27678aeca0fad692090a9c3ff88ef85ca254b5jsQuakbot
2023-06-14 04:37:32784399d6d2e3875a39ca8acaabbdc39a65ab09bb8ae606316725238361ff2257js Quakbot
2023-06-14 03:39:456594b566b5566f81e8f739e53376fc4ee265475050a4df72fe32e8dcc8f1bdbcjs Quakbot
2023-06-14 02:56:098670dee51f9e9588f77e0da71d324085bd9f779001244b568f807e6e24782340js Quakbot
2023-06-14 01:55:5853619f4cda3f568df90f232752b3312b12b3b4f48e9a954049b852674bc7b778js Quakbot
2023-06-14 00:08:385a652761cdc46fb64dfac6c2d3d9ab2bd6108ccef5860b411746c8de1c6ccf59js 
2023-06-13 22:55:20bb8759ef43fe68f47088825593a27fefe39693d115e9935c8d7c14201e0ac965jsQuakbot
2023-06-13 21:22:556d2348041be986c102d77a8aedf90af383d61b6eefacda967a38137fb09022a7js  
2023-06-13 18:56:00442d04dbd9207f2e4b160299998f61debb7474325fda8ea88a4e85ed33fb994cjs Quakbot
2023-06-13 18:45:558b0945c51b038dd1ce17c6b4dee9353fc9cab765d79552c0bd30489d11f012bfjsQuakbot
2023-06-13 16:33:16285bbd470f02823a6192916c89104201e7262d1658c85ddd2fbc37e45ef23cadjs Quakbot