URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: positivestrategylab.com
Domain registrar:Tucows -
Domain registration date:2022-06-29 17:44:20 UTC
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2023-05-16 21:59:04 UTC
Total malware sites :1
A record(s) observed :3

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2023-07-03 08:23:55 216.40.34.41Not listedAS15348 TUCOWS- CAno
2023-05-16 21:59:10 188.114.96.3SBL690066AS13335 CLOUDFLARENETn/ano
2023-05-16 21:59:10 188.114.97.3Not listedAS13335 CLOUDFLARENETn/ano

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2023-05-16 21:59:10https://positivestrategylab.com/aa/?1OfflineBB28 geofenced js Qakbot ext qbot ext Quakbot ext USA Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2023-05-18 19:31:541cea0c4b1af9170b9ed2927f3b100d202bebd1b8e69ba1527336aaa6b2c0bffcjs 
2023-05-18 16:10:17d3c6e06204212c1aeeef29809460056535cba3beca8cf163b7c8719671ef0c9fjs  
2023-05-18 13:48:274f2488f0b9896f25d3343e49699c91bb9727215e6ec20a6ac8082de7e5bab02fjs  
2023-05-18 12:01:550b38200ce89d27eea5fb23346b4015cb585d0af5fd4f176a7c9bdb20ae369a4ejs Quakbot
2023-05-18 12:00:14d953d8ab979233a6b29a964f031086bd74ed7eb684d99d10f5a881778f4d13b2js Quakbot
2023-05-18 10:45:19fb639f61394301ec51c3c82b270fa10118b12150f177db33a72560d80ad79f25js  
2023-05-18 08:24:195e580c21deb2f7d63ad49462e90d33c85c35e0b2c3f49ffeb5363cd11e8e9ea6js  
2023-05-18 07:12:052f457141989cd8db7267b3dd982bc3aca3c0d763161cfedf75384aaa9b27bfe3js Quakbot
2023-05-18 05:59:2817da932080db984c8594c50184bd0cfde690ed29cc7cd73f3136474e2cae191cjs Quakbot
2023-05-18 04:28:0980f6fd82b28ccaacb151e0447865a17ab4711eefd8ab38eb96bff981a7077a9ejs  
2023-05-18 01:41:04d2087d9119d773d88b9ed612b2300de62865eab8a6dfbab02955c20d0bd11582js Quakbot
2023-05-17 23:21:009be436ae8d8612af572358c0394b27e9c751e6f50b2597c2b7ae636e99088255js  
2023-05-17 21:24:44fcddde4aefcc392bf143eaab986f85fa9fea69d7d232194ecf6c3080b8b60a1fjs Quakbot
2023-05-17 20:46:124df2da0e1a60159c49866a7e3899e305f80766c9bae6b676bf18955d4e2ee8ecjs Quakbot
2023-05-17 20:33:56f4454d45458f3aaadcdfc328fc4107a6c670b1c0e04df1d476ca56e831b83818js Quakbot
2023-05-17 17:44:1526a9ccdd2cb5bd68aea8b06532a4945f8f6585f5ee8e03fd64c7dd7ba9bde535js Quakbot
2023-05-17 17:03:1356e1630e4d5a2e6b1c2e4e5494d4f0934129788140e2bb2894da4d50c48ece66js Quakbot
2023-05-17 15:21:258e028afe5e530bff241456519d98c4afe35e4e8432ca6929cb4a327144ecb765js Quakbot
2023-05-17 09:59:46245894d3e7a2461255d739fc9e47c7635d8316aab44fa76e4546052aa625a577js Quakbot
2023-05-17 09:43:5730bb0250d876d6d5e9110bb14b5a13a77342d3d5c602aecf78754dbbd40fd7e8js Quakbot
2023-05-17 06:53:16faf23b2b4c6ea19c4a6aa52a015158659952a5fc53dd2ea5ee874c07c8e83ae5js  
2023-05-17 04:32:4786f032ffb0ca8467ee6f845e61556602fd2fa9f098b9e8203f59f40d9c5c0bc8js Quakbot
2023-05-17 02:44:32fd51d2435e7f72801ca1ecaa39cdf43fdf19b4056d12ab507a1c3278693300ffjs Quakbot
2023-05-17 01:58:48d5ca40ee26d298d5a485e26b637727d50f1e53ae70f4cf9301ed673e02ec2753js Quakbot
2023-05-17 00:42:04e4d5deec7636533b957ad8e7cd5d056adcfe500851842daeb053bb29f0cc01b8js  
2023-05-16 21:59:10f786a68feb57de74949282a1c868554ccb7b6799b6bde2afdda07c5bbf87a1d6js Quakbot