URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: ideaexchangehub.com
Domain registrar:Public Domain Registry -
Domain registration date:2019-07-26 20:03:24 UTC
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2023-05-17 13:06:14 UTC
Total malware sites :1
A record(s) observed :2

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2023-06-24 01:53:54 192.185.4.37gator4026.hostgator.comNot listedAS19871 NETWORK-SOLUTIONS-HOSTING- USyes
2023-05-17 13:06:18 192.185.21.72192-185-21-72.unifiedlayer.comNot listedAS19871 NETWORK-SOLUTIONS-HOSTING- USno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2023-05-17 13:06:18https://ideaexchangehub.com/en/?1OfflineBB28 geofenced js Qakbot ext Quakbot ext USA Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2023-05-19 20:18:13d3c6e06204212c1aeeef29809460056535cba3beca8cf163b7c8719671ef0c9fjs  
2023-05-19 18:16:401a2e818afb29521c8658d2a0643158af97370d69c32c0bd85cb900bd3e85b0eejs  
2023-05-19 17:33:536016f12710a18923ed029eb1dc62882b5f1a032a7424e0169dd8c2228598f59djs  
2023-05-19 11:38:2151ffefa8a10b6da720a80cec4735fe173669e7c974946e46c8dda908e824d8a4js 
2023-05-19 02:09:24bbcdb87a842c5157acea98f0cedd358f764e2613b6a635e4f9f5946de8c07780js  
2023-05-19 00:06:00d76b1300fd995ec8def343df0450c11a58a217803fee3749db4afacebc64182ejs  
2023-05-18 21:13:00c74cf0cb7927a8438a84c9cedbdbab3e4815550813336043f39674a67b6a021ajs  
2023-05-18 19:30:3176443e093ed6d6e3961cb5f9bbd546bab2d05f6bc2536c5744dc86f7a769bea8js  
2023-05-18 17:22:23d7522ab4f64ae0950e24bb00df9157136bbcb900ace0c77bd1a46f06149bf37ajs  
2023-05-18 12:00:44a18a3c0e37cfc92a00d139f4aebd7996690f4428dea318f028570bf9037d8abajs  
2023-05-18 11:13:58ad227c276250c72ebaf4c13e5d960347009d0762b8c2e696a35b36232e0eeff0js Quakbot
2023-05-18 08:35:2164dbefc6ce8b2caf9b441a36490ebed30319eed28e49ddf95d43659494906f10js Quakbot
2023-05-18 07:38:09a5540977a0c0c5a143b8a2c6f71919f2181988f29747374bd66cbcebd4eb7b11js Quakbot
2023-05-18 07:06:24eecafdba553631375cb34761f4cf33cae100547238141bd641f76c3cb87700f7js  
2023-05-18 06:13:376b64266f2b4feb2f9f045a12882dd0a54819e4eb7d840e0c0c092944b0a8ef11js Quakbot
2023-05-18 03:50:48f6367e6003455bd5ec09ff23726731029805bd0357bc8cd5184dfe270962601cjs Quakbot
2023-05-18 01:50:181187259a79f3d0fa43b025751bffb4506d955db2a1072f8e61e3707c5250edadjs  
2023-05-17 23:17:04939b394768f864f5af2b1e196cb9982563bcbf1157f23f9a873030ba262566c3js Quakbot
2023-05-17 22:15:19ceb34fba0cd428a9dffee10f6b9c5857bfe8e363974adecbd1c42b994a5bb36cjs Quakbot
2023-05-17 21:14:14621b5cf40077c9b8235e3525da2dea7b28a80029ac3f7ee7477d78c780f4b8c7js Quakbot
2023-05-17 17:39:52e5c5a60b175cb60af996c9c06d7956eb02b365460e950ac7662bb4ea5c87d9c0js Quakbot
2023-05-17 15:48:09cb296a47f490cbc70541030b87a0b2d9eb6c1253da849e9e37e7912f2fff796djs  
2023-05-17 15:37:3343b5fd987f46196b07b603e95e51b7c7676ad0784f913f1b136dcf29bb46e808js Quakbot
2023-05-17 13:06:189f9b7a0d9944437dbf0052fad1d08898979bd6c9a9d937a98cea3c757a5f15d0js