URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: kapuas88medan.com
Domain registrar:Namecheap -
Domain registration date:2022-12-29 20:33:52 UTC
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2023-05-16 11:25:32 UTC
Total malware sites :1
A record(s) observed :8

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2023-05-16 11:25:34 188.114.96.3SBL690066AS13335 CLOUDFLARENETn/ano
2023-05-16 11:25:34 188.114.97.3Not listedAS13335 CLOUDFLARENETn/ano
2023-09-02 07:22:10 188.114.96.9Not listedAS13335 CLOUDFLARENETn/ano
2023-09-02 07:22:10 188.114.97.9Not listedAS13335 CLOUDFLARENETn/ano
2023-05-17 07:04:41 104.21.77.126Not listedAS13335 CLOUDFLARENETn/ano
2023-05-17 07:04:47 172.67.207.238Not listedAS13335 CLOUDFLARENETn/ano
2023-07-31 09:46:42 188.114.96.13Not listedAS13335 CLOUDFLARENETn/ano
2023-07-31 09:46:42 188.114.97.13Not listedAS13335 CLOUDFLARENETn/ano

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2023-05-16 11:25:34https://kapuas88medan.com/it/?1OfflineBB28 geofenced js Qakbot ext Quakbot ext USA Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2023-05-18 19:36:4351ffefa8a10b6da720a80cec4735fe173669e7c974946e46c8dda908e824d8a4js 
2023-05-18 18:26:50c74cf0cb7927a8438a84c9cedbdbab3e4815550813336043f39674a67b6a021ajs  
2023-05-18 17:47:391a2e818afb29521c8658d2a0643158af97370d69c32c0bd85cb900bd3e85b0eejs  
2023-05-18 16:47:326016f12710a18923ed029eb1dc62882b5f1a032a7424e0169dd8c2228598f59djs  
2023-05-18 14:07:35803b6f5fb74096efbf4344ef97d81dff7fdb8368c9357c7b6e2ba457a786f2eajs  
2023-05-18 13:01:4532786105579d9ee90c2b3e3c5c1aa115af93c9931e8629901c02b41150fa1636js Quakbot
2023-05-18 10:54:30f1cd10870a25ff5450774a8498966cb5bddf350a269b79fee66a198f6cf3b7a6js Quakbot
2023-05-18 08:28:10ca42f27ebd7d4d5472c9652e26b5cd7d9f089e838ea85a8ac5f1c51b37e83e30js Quakbot
2023-05-18 04:32:5876b1f9267eb932c85c8717778e7399af2196f31c3f1ee4b76d83a2cc5f2e486cjs Quakbot
2023-05-18 03:57:595e2610a338e8ef5c3c882966366fdd36d988d79233ad84071b96fe04a7ea18cbjs Quakbot
2023-05-18 02:40:258d8b15db563271d51b6caabd1d280fdd09e2262383534714503ad6903b1dd6fcjs Quakbot
2023-05-18 00:05:5937dfc4f0a00904e349fd56b330748fba27b43ebad14ce22ba20df17809091c27js  
2023-05-17 23:22:03185a635c927d918ae74aea58092eb9ecedc06bed0129605f9c210f1a3ad2d63djs Quakbot
2023-05-17 21:56:304a91fb2765da3056fe04bf5254fac9eb72f1fb4f8026845d71ffe672d4daac8cjs Quakbot
2023-05-17 20:29:445526b208f51ee2b6adbf6b588401d5c1e058973988c16897fef27cdf25f2a51ajs Quakbot
2023-05-17 17:42:2431bfb0e9f32a6891aa3b4bb9c1caeefec664295de95b74eccecf9eb67a2b84cbjs Quakbot
2023-05-17 17:12:19c7f9d6c56a28ecc44744a1c617778af39179d5869bca0ccd518016eae401078ejs Quakbot
2023-05-17 15:07:31ceb8cce48cb241bf1dbcb587ed7d6d8d4c9fdeb5f87bea993602228464eaf9a5js Quakbot
2023-05-17 14:47:057f2be16fe7cc7d8502ae20c7169578e1f795f15ed0f88cbe7c8a98ab4585d012js Quakbot
2023-05-17 12:51:01e3086e125c0def5547c4247942eaf8cdeb0e4e581562f9cef5e20b6978761c61js Quakbot
2023-05-17 10:31:49653f255937bcd8bba906de09018ca1bab325b484c4829706ad38f8569407fc47js  
2023-05-17 08:11:528832a401431bbf31268d5ef6c3891c3e25a84d07c972ef9d908a091fedab6d96js  
2023-05-17 07:04:355675f7f65f035a9fe636aab949d6e3f0b260926968dd48bd041ff07e629d5331js Quakbot
2023-05-17 04:36:506b5923c080ca126e97c53394343ad18f8e03d0568a807a3e5557b6713104d03ajs  
2023-05-17 03:53:53947d02f7a074c479dd9f3155747d3498a99dd1381f4d503c8b1a24eef3936a0djs Quakbot
2023-05-17 02:41:56847794e098a5ce1d2325889b6ca03534f3c87c0998e47620973ab6dd4fc256e5js Quakbot
2023-05-17 01:10:53c62ba0208a293dc1464df5682bb98a70ebbc61fce7d581ae75842134f4e272f5js Quakbot
2023-05-17 00:33:108f900859ef8ba81f07e76fea97a1f3fc273d3880658ae5a0cc3e19161ee251bbjs  
2023-05-16 22:29:48a30aec34c906924bcc9e6057cbde3fc3bee9988ab90edc3395279ba7d030ee40js Quakbot
2023-05-16 20:41:36086d66afabe0f47f1aff7061b4a8d917a6a0e6cca4dd4b4ee558ffc77a973a77js Quakbot
2023-05-16 17:51:43ab2bd9a5638d6ec2b5d31e0dedf8907fece092389cb3e69d058eac129ce3dea3js Quakbot
2023-05-16 16:07:53e4981597b5341e5ae399d8a1fbef1b650223ef0bb41f08d9b51f01dade3cd98cjs  
2023-05-16 14:25:37b579729ccb9be24c5f68653b913a52e0d0adc1ee79118945d2fb008f8d377c58js Quakbot
2023-05-16 13:24:253204f0a3f448a546a9a392a9d63ec1bd6cca9a0a92b85b9f7bf97d3879434197js Quakbot
2023-05-16 11:25:346ff87bb6be2f4a9ee576534e620c3ca4bee94456515bef9fd3ca01fa523e82fdjs Quakbot