URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: keyurahealthcare.com
Domain registrar:GoDaddy -
Domain registration date:2021-01-08 07:24:49 UTC
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2023-05-16 13:14:09 UTC
Total malware sites :1
A record(s) observed :17

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2023-05-16 13:14:15 188.114.97.3Not listedAS13335 CLOUDFLARENETn/ayes
2023-05-16 13:14:15 188.114.96.3SBL690066AS13335 CLOUDFLARENETn/ayes
2023-05-18 21:14:28 104.21.17.108Not listedAS13335 CLOUDFLARENETn/ano
2023-05-18 21:14:22 172.67.175.122Not listedAS13335 CLOUDFLARENETn/ano
2025-04-27 14:07:43 104.21.16.1Not listedAS13335 CLOUDFLARENETn/ano
2025-04-27 14:07:43 104.21.96.1Not listedAS13335 CLOUDFLARENETn/ano
2025-04-27 14:07:43 104.21.80.1SBL681411AS13335 CLOUDFLARENETn/ano
2025-04-27 14:07:43 104.21.64.1Not listedAS13335 CLOUDFLARENETn/ano
2025-04-27 14:07:43 104.21.48.1Not listedAS13335 CLOUDFLARENETn/ano
2025-04-27 14:07:43 104.21.32.1Not listedAS13335 CLOUDFLARENETn/ano

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2023-05-16 13:14:15https://keyurahealthcare.com/va/?1OfflineBB28 geofenced js Qakbot ext Quakbot ext USA Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2023-05-18 20:55:15d3c6e06204212c1aeeef29809460056535cba3beca8cf163b7c8719671ef0c9fjs  
2023-05-18 20:42:28d7522ab4f64ae0950e24bb00df9157136bbcb900ace0c77bd1a46f06149bf37ajs  
2023-05-18 18:46:451cea0c4b1af9170b9ed2927f3b100d202bebd1b8e69ba1527336aaa6b2c0bffcjs 
2023-05-18 16:54:53bbcdb87a842c5157acea98f0cedd358f764e2613b6a635e4f9f5946de8c07780js  
2023-05-18 14:48:06c74cf0cb7927a8438a84c9cedbdbab3e4815550813336043f39674a67b6a021ajs  
2023-05-18 14:16:5565f23cfe3e7aef568faf72894b6fd0f1c6086287ac499272ed273ffd035b1a69js  
2023-05-18 12:34:20da144ecfed0906bbac01d116a74626cd6fd7ec833680cd9ff8107dc94db16496js Quakbot
2023-05-18 11:01:18c321a1664d74da4f73b983c793c4059b38202d4116be2e9f53f9aa1d4320d830js Quakbot
2023-05-18 08:52:077e29b555dd10291e663446073640ea5519a3e38a3655264511bf14299c86dccbjs Quakbot
2023-05-18 07:27:4483743f2158c1cfe6f65635d6a1c2aeec71545802940ab5e083fa9d3a98d650aajs Quakbot
2023-05-18 05:56:203f3578034596c52f8ed357e2c3f37660c2f5af439da7fde722d26c629f457d03js Quakbot
2023-05-18 03:57:48e3c9723f0c4736015e73df036ab893acc6c4160034969cd8a155187d7f0b0205js Quakbot
2023-05-18 01:38:4624579cbeb7c33196bff853d67ce422776e45c942b057519eb6a6c453ed30ac62js  
2023-05-18 00:39:35020f938e3e5a80465883b947cf72e1604c794e693956eee1cc4707135129fd43js Quakbot
2023-05-17 21:29:289ed630b44354fa9a5b12648e092b487dbecee08d6aad53bf5d2695dbea9b9cc6js Quakbot
2023-05-17 20:11:3464b83f23408d2a7227fa4c862e4bafcc65ec650c57113690f264fd64d4b9bfcejs Quakbot
2023-05-17 19:59:427cfdf6db2bcad8f5b911ac39a8da45e6a8bc3e53c287742c8afc09821a544c0fjs Quakbot
2023-05-17 19:09:3105dab37be019900d575f8a51485f2baecb4fe212712970c486fb711a173c6290js Quakbot
2023-05-17 17:22:184de2124d922958dc3b36346c1906578b79f12a6388ef771a7f8503c21e30af78js Quakbot
2023-05-17 15:03:50f37d3c915b896922eed07327ecc8b944fcab1445d20c02c26c5aab8d91473b45jsQuakbot
2023-05-17 11:58:3541d25fd2c9445a58f5ae64b05b6042873508bfb85efe4b1b00c3c1b03c4f930bjs  
2023-05-17 11:10:36eaea721c8922e13bc9050c88d1f56896e6fe8307aeec9aec10d855db1e952720js Quakbot
2023-05-17 08:42:20a4e2865cb1a7049ad5c3793fc60d379a07d3394e3f1ab1cc1f63b29df9daa902js Quakbot
2023-05-17 06:46:3263e6b3c75e70a74bd0602961a83f9d3fb6fed11081b89e6e2ebab7f6f96547c5js  
2023-05-17 05:29:50c51629a401d1257e0c3d591d42c6aa0dc6f7c50aa33bfb659fc10d6c210272d9js Quakbot
2023-05-17 04:47:2730488830ed68810d2c0142be30cebba698472f14d33d8533d8c02025f74e0919js Quakbot
2023-05-17 03:27:119bdd8b526e7714ae611c7c911a05ae6fa0a1a4ccf7faeb921b743d063f5b13b1js Quakbot
2023-05-17 01:19:05e45823f49b61f40171ffcbf73434e1400c5c342467cd41b26f038fd371ca037fjs Quakbot
2023-05-16 23:52:44c4e0795ed87c610de13363a56803a130c7fb44d9c3502773785a917c6cb43cbbjs Quakbot
2023-05-16 22:23:18aeaa1c806e0f9f457f292ca2f8a6b477decd2587a38426fed843cf0fe92e39b2js Quakbot
2023-05-16 19:58:5407986a303ed9c5887c21709330ac4141e2e281bba33828daed535f606950db43js Quakbot
2023-05-16 19:27:34d93b17a155de960bd685346446d1df26f7b1cc7ca4602bcd4bc34e7c11696c2bjs Quakbot
2023-05-16 17:19:42380a058ed2802c5cd549f8d9f70138da9d4078ae27b10854345410111c5c10c7js Quakbot
2023-05-16 15:28:2075794ebae7d318ffe14a4cc41d14314900018bcf7dd563558f9201fb9b16e24fjs Quakbot
2023-05-16 13:14:1555ee4072f670f372b2701b08110fc249e91fd986582e213d3a5d5774cf85aa4ajs Quakbot