URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: newsvks.com
Domain registrar:123-Reg -
Domain registration date:2022-07-28 14:38:20 UTC
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2023-05-16 21:58:04 UTC
Total malware sites :4
Online malware sites :0 (0%)
Offline Malware sites :4 (100%)
A record(s) observed :12

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-10-16 00:33:24 44.208.83.180ec2-44-208-83-180.compute-1.amazonaws.comNot listedAS14618 AMAZON-AES- USno
2025-10-16 00:33:24 54.84.240.235ec2-54-84-240-235.compute-1.amazonaws.comNot listedAS16509 AMAZON-02- USno
2025-07-28 21:01:18 199.59.243.228Not listedAS16509 AMAZON-02- USno
2025-05-17 14:59:23 91.99.12.85static.85.12.99.91.clients.your-server.deNot listedAS24940 HETZNER-AS- DEno
2025-04-27 16:39:54 104.21.112.1Not listedAS13335 CLOUDFLARENETn/ano
2025-04-27 16:39:54 104.21.16.1Not listedAS13335 CLOUDFLARENETn/ano
2025-04-27 16:39:54 104.21.32.1Not listedAS13335 CLOUDFLARENETn/ano
2025-04-27 16:39:54 104.21.48.1Not listedAS13335 CLOUDFLARENETn/ano
2025-04-27 16:39:54 104.21.64.1Not listedAS13335 CLOUDFLARENETn/ano
2025-04-27 16:39:54 104.21.80.1SBL681411AS13335 CLOUDFLARENETn/ano

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2023-05-30 16:50:40https://newsvks.com/to/?1OfflineBB30 geofenced js Qakbot ext Quakbot ext USA zip Cryptolaemus1
2023-05-30 16:50:39https://newsvks.com/eif/?1OfflineBB30 geofenced js Qakbot ext Quakbot ext USA zip Cryptolaemus1
2023-05-16 21:58:10https://newsvks.com/em/?1OfflineBB28 geofenced js Qakbot ext qbot ext Quakbot ext USA Cryptolaemus1
2023-05-16 21:58:09https://newsvks.com/psci/?1OfflineBB28 geofenced GuLoader ext js Qakbot ext qbot ext Quakbot ext USA Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2023-05-31 00:58:4338d2e00525395176028c478b22cb39c589e763477d472c122efa210a64814e23zip Quakbot
2023-05-31 00:19:21ca5219eb3707cfeb3adbdf5d8c4319f9b8a92ae4cc8888f5b1b1781c393385fbzip Quakbot
2023-05-30 23:33:1103454b2938c634094cc0d3d44704d499ba300f925581b4207c024b8563510fc2zip Quakbot
2023-05-30 22:59:58f8a5fdac3e8eac3a1a2648dc0849ab287caa4dccf05b4186645cd9da99f41cdfzip Quakbot
2023-05-30 21:13:13677e647c257c39a9f53a96ac81b5683f256faced9aa901e19006852172e5df5azip Quakbot
2023-05-30 19:26:5770997447522151ba2463a8e62e4eb04b5f3618d8af0f9f417b12a3041faa3a7fzip Quakbot
2023-05-30 18:10:02a624a26fbf49c0c9192acf7beaa3092a415aff805bf00e101198f6b4fd676abbzip Quakbot
2023-05-30 16:50:406dc5b3cfff991dbf5b8935cfcd56fbcf26d922df56879b89929def26487d1511zip Quakbot
2023-05-30 16:50:39271c8f0ae809f1ab1cf7cfab73abecc9fb08f0fd9007a192c1890488367230b6zip Quakbot
2023-05-18 19:34:08d3c6e06204212c1aeeef29809460056535cba3beca8cf163b7c8719671ef0c9fjs  
2023-05-18 18:49:0051ffefa8a10b6da720a80cec4735fe173669e7c974946e46c8dda908e824d8a4js 
2023-05-18 18:45:006016f12710a18923ed029eb1dc62882b5f1a032a7424e0169dd8c2228598f59djs  
2023-05-18 18:27:10d3c6e06204212c1aeeef29809460056535cba3beca8cf163b7c8719671ef0c9fjs  
2023-05-18 17:22:236016f12710a18923ed029eb1dc62882b5f1a032a7424e0169dd8c2228598f59djs  
2023-05-18 15:44:451cea0c4b1af9170b9ed2927f3b100d202bebd1b8e69ba1527336aaa6b2c0bffcjs 
2023-05-18 15:43:5751ffefa8a10b6da720a80cec4735fe173669e7c974946e46c8dda908e824d8a4js 
2023-05-18 15:01:581a2e818afb29521c8658d2a0643158af97370d69c32c0bd85cb900bd3e85b0eejs  
2023-05-18 14:30:2533b3b33a7711fe42208255ce8fdfdbbd2ee12a048f2c94466ef6b8c8f1beab0bjs  
2023-05-18 13:43:10b8176598b3d73a24dd0b5171493b1159401fcb54a868a78ff1f1be72fe8d33f0js  
2023-05-18 13:41:170b26bdb33f82264e6ee139e028f16f756cf3c276a5c8fdc923aa5d5e2e385872js Quakbot
2023-05-18 13:10:55fd32fe1312ed075ac00d30123df24382ead0744d83a1a8787e5f0303d68f70cajs Quakbot
2023-05-18 11:14:11a84a8c5338c73e889cff9d58c510657f8624b8deedf847eef71befacab5ed60ejs Quakbot
2023-05-18 11:11:3003de8856a9267b9e96c1454bd5a13ff8d068076ae6a1b7ca1984367997fa981ejs Quakbot
2023-05-18 09:35:22649828b67fb96d9addc5f4c9518dfd03c7eaef5dfe3afd081708297f2d160360js Quakbot
2023-05-18 09:31:055284d5807da5986ffb17fdd9761066974cb34030eb5067e7f9a65e48b32f37e8js GuLoader
2023-05-18 07:08:51874c90fd9f5dbc042d5e87dee75b68570376e628600a8d08dc1083545283052ejs Quakbot
2023-05-18 06:38:075e580c21deb2f7d63ad49462e90d33c85c35e0b2c3f49ffeb5363cd11e8e9ea6js  
2023-05-18 06:16:2870cbe6d0639705257a62be9eb8da5151af27830bf379d05aaffea8a6d1f49b39js Quakbot
2023-05-18 05:08:17c183dc69a6e054260b5800df8cb1bdcf33338ca9f2d92f1b6d2161ca1fa1b850js Quakbot
2023-05-18 04:29:17c3b7288bc652fda94fb09ac95870f66d2e355b6637b09d5c9fd1b7d64d660a52js  
2023-05-18 04:28:063a2fe931e43de04dd026f5fa57590b2baf3539c2930e6d9239ec3a95a1ec6bd7js Quakbot
2023-05-18 01:46:2568e8f2f3d6612aa52ea6f93813be80d9984f0626bfb504047a29018c7e7748a5js Quakbot
2023-05-18 01:36:38cb6a65f1e6220e908455c9dfaf1b69114b9b0c5666dc2b80f597d2c1e4ab29c7js Quakbot
2023-05-18 00:50:04ce5efda576bdfd577cb85bba27c1785787f37d30869878530f7249504d45cf69js Quakbot
2023-05-18 00:44:325fe1ce92222b0ef2d0fe599c26907689fbeb05acb3c14dcc9cd468d2db479a26js Quakbot
2023-05-17 23:02:31d4048bb4d8d517078d21db74a0238b8f0696dbad0bfb9cecbe0dad5e3a89bb47js Quakbot
2023-05-17 22:55:244779dbaf4f01d866b1dd6a2cdeb855c53a82951952ba41e9af73be849bc9116bjs Quakbot
2023-05-17 21:20:365b2d175b18348c26ef8ad20f51fdeb4aa6ab4076aa57cc05caa3cc8772385077js  
2023-05-17 20:35:44d3174d21c0af8584eb01c73536a3c50de953ccf9c1486afb0e38c63e608d5342js Quakbot
2023-05-17 19:57:0744d23f66a1f4b2d201da3bd9764d30d67431194d1ffbbc0ee587ea63d892dee1js Quakbot
2023-05-17 19:06:54f14437be247480b6af38f3ccdd4ba46e6e55eb7b3d706b8df711f63558b8703fjs  
2023-05-17 18:35:57c28a0689fa744ad9aa6b9113d992a9fc9d303cf30f2b622975fb5e9a82ac02e6js Quakbot
2023-05-17 17:22:253c65c87cf0e371c576074e364d5d415f782faa5f2381909a0cd1d6d3e16b21a3js Quakbot
2023-05-17 17:01:05cb2b2c5c8e0ff33bbc082310f5ad09305fb6f7b7e6d660efa2c02393341d6fd3js  
2023-05-17 15:38:13c1064ed6356f294c6981938454ee3a3712e5e63930c1554a3c1602eacbd6554djs  
2023-05-17 14:52:32a5540977a0c0c5a143b8a2c6f71919f2181988f29747374bd66cbcebd4eb7b11js Quakbot
2023-05-17 13:41:30076515d52f5219c37701ac4b38e72e4f6a809dffce463343615c3fb079c9ec89js Quakbot
2023-05-17 12:31:37a64cebdd853596ce95beeb112b9dfab6eab26ff09b77eaad1c909cb1b6cff48ajs Quakbot
2023-05-17 10:44:12bd902336aa7066dfba330ae24ecffe4a4b6498a94ad2df180478f971c6df3b2djs Quakbot
2023-05-17 09:59:348606da04bfde5167153b443cd02810d744322d323d0033255f7cd8030193e0f4js Quakbot
2023-05-17 09:56:389e31e8e8feae5be7b013532a1413b5d8cb5b65415cc31671c49ca3b3ca77a09ajs  
2023-05-17 09:07:098d53abd17b74a7508884f8ff9486cc450234cb88feff1c783268b69bbb5f7d8bjs Quakbot
2023-05-17 08:51:007c6bc0441e7d3f1035b2c9f8112a62fc39de8601d1a70424f1072763e20c31dbjs Quakbot
2023-05-17 07:28:3149f6010241f216a659936d2595dfe34d4748c681d3c8b897de172cf58850c689js Quakbot
2023-05-17 07:26:04395d3671eea0503fc9623ba2e49781b84dcef78cc269104048c6fe53559473acjs Quakbot
2023-05-17 05:30:39b0d89085933157e3cdbf04ce3f8817154d7506857204f97d51d249a514beab3djs Quakbot
2023-05-17 04:51:029767f548fcf8acbf03fd414d18a47264b746d4b3f39f842b2ac6072368f8ea20js Quakbot
2023-05-17 02:47:56a140a16c6901f37ff16c16c5c14f80372dc03702a31ad5d2a021469be671de30js Quakbot
2023-05-17 02:45:1839bdd81c89837ec9dfc88b9a581d35846fcf1a0f25b4fa0b3be31b6b88819d8ejs Quakbot
2023-05-17 01:09:2174abbd08d4ac44733626512e62ad2305263f56b54f4d656017254c5e8c3ee93djs Quakbot
2023-05-17 01:02:307ed733080eb58209bd9bea643511c39f4e60d6a470221380eb366704b6528a08js Quakbot
2023-05-17 00:38:4780c1e476d5c8be401f9b11eae2dd06422f6075675202f21c6a8f9c5b9f816778js  
2023-05-16 23:08:129a5890da70b9f039072ca882f1034a742711435f98547e48bfbc41bad5d00c20js Quakbot
2023-05-16 21:58:10538809fd2840c514dd34620211ce27c34230978fcd06b9378164bb55f2c7fabfjs Quakbot
2023-05-16 21:58:095cfe2492560376944e8aa0137a694e179010b7e3d6576d453e088fd61430e96ajs Quakbot