URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: ri.posgradocolumbia.edu.py
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2021-04-16 13:05:03 UTC
Total malware sites :1
A record(s) observed :1

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2021-04-16 13:05:06 50.87.146.8650-87-146-86.unifiedlayer.comNot listedAS46606 UNIFIEDLAYER-AS-1- USno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2021-04-16 13:05:06https://ri.posgradocolumbia.edu.py/drms/rocket....Offlineb-TDS dll Qakbot ext qbot ext Quakbot ext SilentBuilder TR lazyactivist192

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2021-05-04 18:02:206b028006040a8d4b524818593e52e77357ad60a17211941db2cc6cf5056a907cdllQuakbot
2021-05-04 16:28:268e9e2d19e4391904edc664951add9c304a088c9d5f0882f7482324d6cbd12295dll Quakbot
2021-05-04 12:18:2686e0e5ca743f5098497ac8a35c5f953089b9b2126e1014b8b8ccd4b9dbf39c2cdllQuakbot
2021-05-04 08:15:137efcb019f79266b3d5f8269b5f7f5aa0c06269a2f3623ef6de37715d98d23f1adll  
2021-05-04 04:08:56965b4b03fc3394c0f46c35abb84022fc614f32e21dd65f1b21635ed85ac94079dll  
2021-05-03 23:55:16bb3c1a43008146c5b95a72cd56088feceb302ee29f89206f53b1d439e94cd049dll  
2021-05-01 01:02:5606548d52965a6d882c3be0b7237d44430a7cbcfc1ac7619931a1f9930e1ecd28dll Quakbot
2021-04-30 23:55:33ae830ecbc3d1080f341117de40f0321acc5b6350ca8a4d58b5951b0b357225b1dll Quakbot
2021-04-30 20:43:445bad5712185c48301544e9763feef1e81578d4215495697283bd60308245d8c6dll Quakbot
2021-04-30 19:31:24c2aef1363b95e2ac4c6331c264460b3cf20484d08137283dd7a11b88176d9256dll Quakbot
2021-04-30 18:22:090b3dcf10a32197566dcb9f6261ed545506bdb47983e67a331aee077647bf1a46dll Quakbot
2021-04-30 17:06:51ca567d2a135184080f4b484bcf98e7c04f57ba1ee63e1e3d960f4dd64d5dd1b2dll Quakbot
2021-04-30 15:03:56ddaa9e3f5db50490b03358b8aac5c3fd26f6bb37c4fccd23108a5cb8428f6f0ddll Quakbot
2021-04-30 13:51:07ba79555db4e8a81afe3f6e676f75235394895a9a3cad79b88d8b49856fcbf787dll Quakbot
2021-04-19 09:30:309f1471692d4c39ab9fc064a1e7b4ad02300406a410d7bb9547de404651bcbb5ddll Quakbot
2021-04-19 01:07:50d40c655899f9c9900d288e99d86833701199376e7f05b48bca011de90dbe0115dll Quakbot
2021-04-18 16:46:00b9e5c87ce51d30af35354eacb188475548c92e23ae1525213f0d0c8889da4bcddll Quakbot
2021-04-17 01:03:034c9beefc2203138e67f95aa097f491a37d0823ea63071a3bca2c422e440ed9bbdll Quakbot
2021-04-16 14:48:1101f29d031ced454ae85c996505324d0be7844fca692365b08493245bb65e8a38dll Quakbot