URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: marzanocars.com
Domain registrar:GoDaddy -
Domain registration date:2023-04-25 14:19:24 UTC
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2023-05-17 13:06:39 UTC
Total malware sites :1
A record(s) observed :15

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-08-08 05:37:24 172.233.219.123viridian02.parklogic.comNot listedAS63949 AKAMAI-LINODE-AP- USyes
2025-08-08 05:37:24 172.233.219.49viridian01.parklogic.comNot listedAS63949 AKAMAI-LINODE-AP- USyes
2025-08-08 05:37:24 172.233.219.78viridian03.parklogic.comNot listedAS63949 AKAMAI-LINODE-AP- USyes
2025-08-08 05:37:24 172.237.146.25viridian06.parklogic.comNot listedAS63949 AKAMAI-LINODE-AP- USyes
2025-08-08 05:37:24 172.237.146.38viridian04.parklogic.comNot listedAS63949 AKAMAI-LINODE-AP- USyes
2025-08-08 05:37:24 172.237.146.8viridian05.parklogic.comNot listedAS63949 AKAMAI-LINODE-AP- USyes
2025-06-11 07:20:39 72.52.179.175lb01.parklogic.comNot listedAS32244 LIQUIDWEB- USno
2025-06-08 07:02:45 15.197.204.56a3edc0dabdef92d6d.awsglobalaccelerator.comNot listedAS16509 AMAZON-02- USno
2025-06-08 07:02:45 3.33.243.145a3edc0dabdef92d6d.awsglobalaccelerator.comNot listedAS16509 AMAZON-02- USno
2025-05-04 08:07:38 13.248.213.45a67c48129651a0940.awsglobalaccelerator.comNot listedAS16509 AMAZON-02- USno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2023-05-17 13:06:43https://marzanocars.com/ua/?1OfflineBB28 geofenced js Qakbot ext Quakbot ext USA Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2023-05-19 08:48:30d3c6e06204212c1aeeef29809460056535cba3beca8cf163b7c8719671ef0c9fjs  
2023-05-19 01:34:151cea0c4b1af9170b9ed2927f3b100d202bebd1b8e69ba1527336aaa6b2c0bffcjs 
2023-05-18 23:14:32bbcdb87a842c5157acea98f0cedd358f764e2613b6a635e4f9f5946de8c07780js  
2023-05-18 22:43:456016f12710a18923ed029eb1dc62882b5f1a032a7424e0169dd8c2228598f59djs  
2023-05-18 19:33:071a2e818afb29521c8658d2a0643158af97370d69c32c0bd85cb900bd3e85b0eejs  
2023-05-18 18:24:5751ffefa8a10b6da720a80cec4735fe173669e7c974946e46c8dda908e824d8a4js 
2023-05-18 16:45:17c74cf0cb7927a8438a84c9cedbdbab3e4815550813336043f39674a67b6a021ajs  
2023-05-18 14:32:12ef06c7a48f757f2e65d039464dbc0ffb74cd49707a2214139e4516d7205576f9js  
2023-05-18 12:44:41c2b560cbbb7dc30cad06a2a6b715f07591269b172bde5101a639fbb04e4dd9cfjs  
2023-05-18 11:07:12939b394768f864f5af2b1e196cb9982563bcbf1157f23f9a873030ba262566c3js Quakbot
2023-05-18 08:15:31743cf712f367f3c69cc6bfc3a3734a66d19bef6e76aabcc6a8b97c534a3b5557js Quakbot
2023-05-18 07:32:09229271acfd7face73c4919f8ae74ec7e9e3d276810827e045c7ee12baf2e75bfjs  
2023-05-18 06:36:46fb2bca8ce3aa4207fc636e9ebc34bb47cc0d9b6a233352bff3b6875b6bedce3djs Quakbot
2023-05-18 06:18:148116e7914df0a4fae9adad12da668660206754557fac016131c53fcd305d537fjs Quakbot
2023-05-18 02:42:41fc9e138d576712bb870d465c8c9568c010f3081a0cee5918a906d5f82a1dfa57js Quakbot
2023-05-18 00:43:574a2d1d02742e1dbb3fdee1d9ff6862a5a45e7920404df24a06740007d4b653d5js Quakbot
2023-05-17 23:04:5938994d258f8bfb97fcb4ad671d962c6f000efb90f29ef01a8ca9881d7a206c66js Quakbot
2023-05-17 19:30:0417c3055ce856c6ee8bbfdfa36ea81dedf3d495e3aa418145fea73358747d4cd0js  
2023-05-17 18:19:241e96a7079b653386193018082948ee18ee1ca517dd96395eb46b4d5e30507b87js Quakbot
2023-05-17 17:07:42f5a9de314dd0e63ac6262d4d17d66999b1a0ef8384756576c26eb7623a678f71js Quakbot
2023-05-17 15:32:17ad3a510115f62b2cdabc978db56cb5d93c372bcf45b52fa39d4d125e1cae3caejs Quakbot
2023-05-17 13:06:43874c90fd9f5dbc042d5e87dee75b68570376e628600a8d08dc1083545283052ejs Quakbot