URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: rootalacati.com
Domain registrar:Public Domain Registry -
Domain registration date:2022-03-21 17:24:36 UTC
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2023-05-16 11:26:01 UTC
Total malware sites :1
A record(s) observed :2

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-05-05 19:49:26 199.59.243.228Not listedAS16509 AMAZON-02- USno
2023-05-16 11:26:11 31.210.89.202marsel.hozzt.comNot listedAS42926 RADORE- TRno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2023-05-16 11:26:11https://rootalacati.com/tsi/?1OfflineBB28 geofenced js Qakbot ext Quakbot ext USA Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2023-05-18 18:32:526016f12710a18923ed029eb1dc62882b5f1a032a7424e0169dd8c2228598f59djs  
2023-05-18 17:57:211cea0c4b1af9170b9ed2927f3b100d202bebd1b8e69ba1527336aaa6b2c0bffcjs 
2023-05-18 17:19:04c74cf0cb7927a8438a84c9cedbdbab3e4815550813336043f39674a67b6a021ajs  
2023-05-18 14:26:4930178c87c53066fb3b0f0dfad7264480e7f3acc9adbcdfd1d00ed34e90926fb3js  
2023-05-18 12:58:30f1cd10870a25ff5450774a8498966cb5bddf350a269b79fee66a198f6cf3b7a6js Quakbot
2023-05-18 11:15:4790d7044e2b3c6695b8ce4be887d9fedf198e2631c47d77093e427bbdc2ff19fdjs Quakbot
2023-05-18 11:12:186bf7410f1b32c7fad44030961607fb13ec400a2a008f5817485ba84c5c297175js Quakbot
2023-05-18 08:52:1247831ca3235332c96696b1add7425b7dcb044b9de06934992957a5e00cb4dadcjs Quakbot
2023-05-18 07:31:39a45416e3d9aa47760feeee7375be42c3748b04b0d9c6c573bf4db2cfa07929b5js  
2023-05-18 05:07:593938ff8a3f26ca0c121f461afcbf7394844e31d1fb9e68757fd98de2a4b3238bjs  
2023-05-18 03:15:382072042cbdf8458366261756217da566a1b8d6cf4b24541a37d71c44c07c7fdejs Quakbot
2023-05-18 01:44:547a515185d1c204dc897de0e485dd2dd335341156b5b7764220fb6df27fdbeb16js Quakbot
2023-05-18 00:50:41efc10c85b0f60f774980c7250e0358ab61ded2a4d2f8fed854bf14d05af6908ejs Quakbot
2023-05-17 21:17:4229d88d7a73d988b2b2c5ddc76ac150742366a2a8c379758bf47f13c2fcf01346js Quakbot
2023-05-17 21:09:204a5bb0d1af42aabd643a23c518cbc77c4a2931fab8d180bbad1c0ea815f5954ajs Quakbot
2023-05-17 18:26:32d112f357338680817dc9cfe7ce64d7ab03de74008f16c43f1ef94b38bd159af8js Quakbot
2023-05-17 17:12:343cc62e68f657fa870eabb640cd8e651d4ee69a242db9feadeecdbe6a0435ea99js Quakbot
2023-05-17 13:48:47ed3b42a466d5debc63224e8439d69996fd4f174cfcae800ac31dd8dcb69c921djs Quakbot
2023-05-17 12:55:310c7ba195ded6d8e316021ca662000aef82b48c95dffdd60c2ea37f1849c555b6js Quakbot
2023-05-17 10:39:05b8f021f9cc5423169bc8a78210220d45ae701382d43568f3cfbf05a6adc88f23js Quakbot
2023-05-17 08:38:31a2614fc00f8445d0f28a88dbd9b0c74be9a085cc85fe344de15e4e2dbf5eebb5js  
2023-05-17 07:08:47cc78272637bf87773cf817020a2f409e1d7f6ee6a9aa6c2e9276b4b0782da4ebjs Quakbot
2023-05-17 07:05:00ac9fce4dceed42d446c1f7f59f688f829ce346c304338323b7a2ac5ce655d884js  
2023-05-17 05:19:58d25a65dfe68c8d1b6beeb5e449d5e7025051b95bbb33e184a95acfd88adb84dejs Quakbot
2023-05-17 04:23:40e922d192231b6992b978c8c4deda9b8a6db70898ba2bfee96b6c4d91c87202ccjs Quakbot
2023-05-17 01:15:36052e455930fbda7e813ec5d15b7f2e0e40297549e83babacc95d0fcc5ec80368js Quakbot
2023-05-16 23:08:0241c0e47ab702aede56e2fdf6884e111d8be95a53eefd35c9b6f26f23ad55a827js Quakbot
2023-05-16 23:00:22436dd55831dcc6951194155bdfafdc5984cbe212684a5a2cdee39a3cf9fcce0cjs Quakbot
2023-05-16 20:29:03003f09b7602a4d5d6c6085a00970b48001cb0b3e2b604f5d765dd0de29f9ef28js Quakbot
2023-05-16 19:26:3497ee95bbedd1242075cb5da5f43ee759a9dc370755225bb0ef164c517e42dc16js Quakbot
2023-05-16 17:24:3417662114d2b3e65cdfa75ffb6da75a72f91ce726873e218b3f9574ce333529eejs Quakbot
2023-05-16 17:02:356c7c66c7f2c16605a25f953af2e4af05cfcac02a226dfada349acd64f6a86cbfjs  
2023-05-16 15:19:030a7a6dcdeae4217d6e91bb7de82600660532f76073fa34e3053498e431177d04js Quakbot
2023-05-16 12:48:18453a59ba7c4710c53f645b120279204f574517a9dfdc7f02d2d4ea5b69c116b8js Quakbot
2023-05-16 11:26:05681f1c12193042d1001cca8eff9d64673d135dc93613ed9356802b0e5e6ece19js Quakbot