URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: hisumintl.com
Domain registrar:Public Domain Registry -
Domain registration date:2021-08-13 13:17:15 UTC
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2023-05-17 13:06:11 UTC
Total malware sites :1
A record(s) observed :7

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2023-09-25 18:54:31 103.224.212.220lb-212-220.above.comNot listedAS133618 TRELLIAN-AS-AP- AUno
2023-09-28 16:38:27 70.32.1.32ip-70.32.1.32.hosted.by.gigenet.comNot listedAS32181 ASN-GIGENET- USno
2023-09-28 18:15:06 170.178.183.18rdns18.mdlider.net.brNot listedAS46844 SHARKTECH- USno
2023-08-14 01:26:48 35.186.223.180180.223.186.35.bc.googleusercontent.comNot listedAS396982 GOOGLE-CLOUD-PLATFORM- USno
2023-06-03 23:48:21 50.31.177.150priva-115.spindns.comNot listedAS23352 SERVERCENTRAL- USno
2023-05-17 13:06:14 192.185.114.115192-185-114-115.unifiedlayer.comNot listedAS31898 ORACLE-BMC-31898- USno
2023-09-25 16:06:54 103.224.182.250lb-182-250.above.comNot listedAS133618 TRELLIAN-AS-AP- USno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2023-05-17 13:06:14https://hisumintl.com/caiq/?1OfflineBB28 geofenced js Qakbot ext Quakbot ext USA Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2023-05-19 18:18:34d7522ab4f64ae0950e24bb00df9157136bbcb900ace0c77bd1a46f06149bf37ajs  
2023-05-19 17:53:36d76b1300fd995ec8def343df0450c11a58a217803fee3749db4afacebc64182ejs  
2023-05-19 16:20:316016f12710a18923ed029eb1dc62882b5f1a032a7424e0169dd8c2228598f59djs  
2023-05-19 07:00:04c74cf0cb7927a8438a84c9cedbdbab3e4815550813336043f39674a67b6a021ajs  
2023-05-19 00:33:3651ffefa8a10b6da720a80cec4735fe173669e7c974946e46c8dda908e824d8a4js 
2023-05-18 19:16:29bbcdb87a842c5157acea98f0cedd358f764e2613b6a635e4f9f5946de8c07780js  
2023-05-18 17:35:5076443e093ed6d6e3961cb5f9bbd546bab2d05f6bc2536c5744dc86f7a769bea8js  
2023-05-18 15:43:231cea0c4b1af9170b9ed2927f3b100d202bebd1b8e69ba1527336aaa6b2c0bffcjs 
2023-05-18 14:19:57fc7feb3a30c5cb54459a1114217ba4a028dd2b4713f825110a6e56252f0c1ba7js  
2023-05-18 13:12:41ee8f7825f5b87fbdb90f5bc8eff0cfadc358c64cfca2dcb37acfd398d5b2f201js Quakbot
2023-05-18 13:02:2780ab380263a5873a2a0e5bf0f6970a2c5a2f1bb6ced244bb881a685269c5d92cjs Quakbot
2023-05-18 11:11:19e5f9fc33236b5ba2988d71e8585b3802d96cde07263ae499ce6ac56cc9db183ajs Quakbot
2023-05-18 09:18:318a9af030d5759e428811a44e1582012c64fdef7059286c4c1693f13566e2d3b1js Quakbot
2023-05-18 06:36:23a9c6050bc229b2d8d2b411d575194857f0f0b908185bcc15cd09d5c25f330867js Quakbot
2023-05-18 05:48:44a2fee1f921c59d61590ed86bdd9e19a12b68d9722d228d0e5bef678bd31d461bjs Quakbot
2023-05-18 04:23:3709f9e4d8ef85ba407416a7d168207db81c2000eabea300624e17d81f58bd0b18js Quakbot
2023-05-18 01:50:330769e73bc4ebc2ee5fdfb2e6d02b6a282085b48c709104d96e856380e8e4ecfdjs Quakbot
2023-05-18 00:07:09de40c651da56945e6aa4f1adecf9ca842f4b2c630f3e1ad45c2c02952d4578c7js Quakbot
2023-05-17 21:28:05af020f4121ed33dba057c101c7d8fb714a2c96c883601c63acf7dc505818a5a6js Quakbot
2023-05-17 21:13:32817e3087dd09d826cc20a0381d67784b264c51a854134ac760b9219f49d58f0djs  
2023-05-17 19:07:0816cf6bcb57e5b6fbd88357c73a7c2e1fea2c60e1facf1122d4f6d9ef672f908cjs Quakbot
2023-05-17 17:25:1341a9ac47a4429134ce75e112f1d067da61f8dc65ee77cd9e494c9434cf179f12js Quakbot
2023-05-17 15:21:26f7141b5e0f8768e0c1d39b6da886c311b1ba7a4a1db8d4efe2c936270bc2f0c8js  
2023-05-17 13:06:14397ed6d5f113de3b5a638878e1ab22bb58f5fb493aaef92441db571bcb4c81b5js