URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: kzpott.com
Domain registrar:HostGator -
Domain registration date:2021-03-02 23:37:57 UTC
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2023-05-15 15:14:39 UTC
Total malware sites :1
A record(s) observed :1

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2023-05-15 15:14:47 108.179.232.251108-179-232-251.unifiedlayer.comNot listedAS19871 NETWORK-SOLUTIONS-HOSTING- USno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2023-05-15 15:14:47https://kzpott.com/iis/?1OfflineBB28 geofenced js Qakbot ext Quakbot ext USA Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2023-05-17 20:08:16f65cfd45df99f110dd5e24acdcb4a032a333c2d5f289d2867feb0d7fc6aa1960js Quakbot
2023-05-17 18:32:154a5bb0d1af42aabd643a23c518cbc77c4a2931fab8d180bbad1c0ea815f5954ajs Quakbot
2023-05-17 17:24:33a64cebdd853596ce95beeb112b9dfab6eab26ff09b77eaad1c909cb1b6cff48ajs Quakbot
2023-05-17 13:49:06f37d3c915b896922eed07327ecc8b944fcab1445d20c02c26c5aab8d91473b45jsQuakbot
2023-05-17 11:10:423f981a1967089e05af05885173620b3933551cec4a09409c5472958389e98ee7js Quakbot
2023-05-17 08:43:46bafe320776bc2529c835ce971b6865063820cfb46ae15852c7bad4e54c9bb47djs Quakbot
2023-05-17 07:20:157797932797f41de1c92c1de7261ccf2ebbf77d0a22c000f66e628ac0d4232af3js Quakbot
2023-05-17 07:05:50c51c0f4ad4a1daedd37faa64ee13626367bb85351c43f75d5fb2574906e8d72cjs Quakbot
2023-05-17 04:48:37b7bb9b67e54b717680a9d2f0d17f2fcc309e654750ee0337c750760cce043404js Quakbot
2023-05-17 03:54:0867358af4dc6bb21fdaf08da3622bf6748a4e667c4d3742d1078dabfa048cbcfajs Quakbot
2023-05-17 00:51:04043109bc560ffd09e43d8663db554bb676f94bd623a3d35e84b8bfbbd2b82ee7js Quakbot
2023-05-16 22:35:39b85f601c37cc81a12cfdd247856c44bb22c89c0a9275f35557d7a0682522a4cajs  
2023-05-16 21:23:44c15ab776c1d8e8d80c43d348451e3e9049c979687a8aaa7e5b8dd1038da9050ejs Quakbot
2023-05-16 20:51:00591712e8f5b134e1a3660b1833aeba3d7e78f50672170670f682a8c081f1897ejs Quakbot
2023-05-16 18:38:2070d1288a607fd1f74ad5f72746ad1bdfdbc40e16666946f6dd645607bd721141js Quakbot
2023-05-16 15:48:441c7bdc975811d20c41726d0dfa9b1fc4ec1d01f8f8cfec22a93960edc73e1132js Quakbot
2023-05-16 15:16:20cfbe0c18e1fab9acc97b891f292a495653e895ca6b797018b77aabab845da78fjs Quakbot
2023-05-16 11:58:280b07d53e6d17188c476273992e6d269d70530ed22fa9abd7d94a365e507f82b1js Quakbot
2023-05-16 09:22:21d0f5c5549d34d673c4f0a37cb2e0b8375377051455322bb8d6d9c149d2df7d96js Quakbot
2023-05-16 07:01:34c30a10e18d0b7b4f5a5e122fee2a3568dc733fdb3724ed664553ac8ff37bd6fcjs  
2023-05-16 06:20:42fd21cdd073b4410aab16febbb0418351c19ba26ee177c3c1d7f81a4749d2a3a0js Quakbot
2023-05-16 02:27:589ae2618021eddb2f4d2d0d120ec5213664faa167fe4dc494b94e3f13d69f2dbcjs Quakbot
2023-05-16 00:00:57e06e72a4fe029d9c6e2c478aec75dbfdb6a38dd2f2bb245205bd7ef5c27d5244js  
2023-05-15 21:47:356bab7a20051b3ed99b21e731970eb8ffd1854f2d52317bf363c453a562eba655js Quakbot
2023-05-15 20:31:08c6f632a8acf3a46836dc173731773d971bc8de0adfdf6ef577c852354016b3cajs Quakbot
2023-05-15 19:12:21878dc8314805491aae8003158559d658faa0fa4661871b1c0ff2f6f82153299fjs  
2023-05-15 15:14:41b0f26d86be5ffc3e57c0e806e5562b66934943463648541bb4d421025e1420b7js Quakbot