URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: infobach.com
Domain registrar:Namecheap -
Domain registration date:2022-10-17 16:40:16 UTC
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2023-04-19 12:48:24 UTC
Total malware sites :3
Online malware sites :0 (0%)
Offline Malware sites :3 (100%)
A record(s) observed :9

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-05-13 11:37:36 54.215.31.113ec2-54-215-31-113.us-west-1.compute.amazonaws.comNot listedAS16509 AMAZON-02- USyes
2025-12-25 09:10:13 43.110.47.247Not listedAS45102 ALIBABA-CN-NET- USno
2025-12-25 09:10:13 43.110.47.249Not listedAS45102 ALIBABA-CN-NET- USno
2025-12-18 11:14:49 47.77.227.228Not listedAS45102 ALIBABA-CN-NET- USno
2025-12-18 11:14:49 47.88.76.45Not listedAS45102 ALIBABA-CN-NET- USno
2025-12-10 09:58:04 47.251.116.197Not listedAS45102 ALIBABA-CN-NET- USno
2025-12-10 09:58:04 47.251.245.243Not listedAS45102 ALIBABA-CN-NET- USno
2025-04-27 17:40:17 54.193.208.148ec2-54-193-208-148.us-west-1.compute.amazonaws.comNot listedAS16509 AMAZON-02- USno
2023-04-19 12:48:27 69.57.162.3premium263-1.web-hosting.comNot listedAS22612 NAMECHEAP-NET- USno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2023-05-31 15:57:11https://infobach.com/rhre/OfflineBB30 geofenced js Qakbot ext Quakbot ext USA zip Cryptolaemus1
2023-05-30 16:50:55https://infobach.com/pl/?1OfflineBB30 geofenced js Qakbot ext Quakbot ext USA zip Cryptolaemus1
2023-04-19 12:48:27https://infobach.com/ih/quiex.phpOffline921 BB24 geofenced Qakbot ext qbot ext Quakbot ext TR USA wsf zip Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2023-05-31 17:02:390c97f415ab9452167e4fb92172598923ad8645bc1b430209e4dcba5df226dfc7zip Quakbot
2023-05-31 15:57:110c314d6bd84bb57108d81f069409fdd3ee4ae5a76f9e3929c99b5449690c4565zip Quakbot
2023-05-31 14:43:1197812d4385145c47221a958b6c1e5a50a469fa9b6e888b617b25ad527054a05dzip Quakbot
2023-05-31 11:52:52cf4c9093c43043443a9d6c4d7262ec3912ffe6f586adfd81872398c9d984436fzip Quakbot
2023-05-31 10:12:38e2c80bf511427f3ac24e5db4a80cc49863a82491bd3bea3c7b62b1333c225025zip Quakbot
2023-05-31 08:41:166f015409ae881e08814f6aabe17dcf93a37249fd0820fa0e5f932af67848b50fzip Quakbot
2023-05-31 06:42:5065622f8621c4e612e5649df047242f2c9e52a3696d95c0ba0c9caf1d4b956c26zip Quakbot
2023-05-31 05:47:16d7395ac60fa908b9a789dc3ac6e31c9e3951a025ef6f40807891fa90677da382zip Quakbot
2023-05-31 03:32:04936aeb2182b96744da8969343d6005d2e83e97c1c62cec4daeedbff6eb037434zip  
2023-05-31 01:57:24c030fb9ad98c0da5a6f95de004fc04c973d11f491b47fdf3ad0a3c58dd51eae0zip Quakbot
2023-05-31 00:13:50210b75b89051e238357e5ed124f4f7ee914d31e18917c5dea21dbd967b6eef24zip Quakbot
2023-05-30 22:34:482b900c1e9da197e854fa1137f58763be1cf822442ea24e7e16763dc21b8460eazip Quakbot
2023-05-30 20:08:367b9732c887e5a20b342ea3c0478f0b75648243a6c9a691ec22bf1ef71213fbf2zip Quakbot
2023-05-30 18:04:006ed8d8a7faa904b34d4238dbf10371de1c41857e249254c59d9f9e3938211258zip Quakbot
2023-05-30 16:50:5590450c09646ce1c25386b4b068a12fa6ed5628177a4a533e64d94133e4d44a73zip Quakbot
2023-04-19 13:04:4888b044a0259e0e389ec30268c69d615c320efacbfda1134c8200b1e6ecda6904zip Quakbot
2023-04-19 12:48:272b0f3900fc40cd2760f4448a5cd94fd4f15cb2f5493532fa9b046b0783aae751zip Quakbot