URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: shalamasonry.com
Domain registrar:GoDaddy -
Domain registration date:2023-02-08 23:10:55 UTC
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2023-05-17 13:06:21 UTC
Total malware sites :1
A record(s) observed :3

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-10-10 20:20:39 15.197.148.33a2aa9ff50de748dbe.awsglobalaccelerator.comNot listedAS16509 AMAZON-02- USyes
2025-10-10 20:20:39 3.33.130.190a2aa9ff50de748dbe.awsglobalaccelerator.comNot listedAS16509 AMAZON-02- USyes
2023-05-17 13:06:30 208.109.41.236236.41.109.208.host.secureserver.netNot listedAS398101 GO-DADDY-COM-LLC- USno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2023-05-17 13:06:30https://shalamasonry.com/tei/?1OfflineBB28 geofenced js Qakbot ext Quakbot ext USA Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2023-05-19 14:43:4676443e093ed6d6e3961cb5f9bbd546bab2d05f6bc2536c5744dc86f7a769bea8js  
2023-05-19 14:22:221cea0c4b1af9170b9ed2927f3b100d202bebd1b8e69ba1527336aaa6b2c0bffcjs 
2023-05-19 09:37:346016f12710a18923ed029eb1dc62882b5f1a032a7424e0169dd8c2228598f59djs  
2023-05-19 01:20:0951ffefa8a10b6da720a80cec4735fe173669e7c974946e46c8dda908e824d8a4js 
2023-05-18 23:47:571a2e818afb29521c8658d2a0643158af97370d69c32c0bd85cb900bd3e85b0eejs  
2023-05-18 20:54:51d76b1300fd995ec8def343df0450c11a58a217803fee3749db4afacebc64182ejs  
2023-05-18 17:40:07d3c6e06204212c1aeeef29809460056535cba3beca8cf163b7c8719671ef0c9fjs  
2023-05-18 16:10:36c74cf0cb7927a8438a84c9cedbdbab3e4815550813336043f39674a67b6a021ajs  
2023-05-18 14:32:114fe5ec9e728dd35327f58b7aa401862e51ae5663df7c3a1a3845df9971ff28b5js  
2023-05-18 12:41:09fceef22558799ba34afb830f44f63ff2d0386112e3506a24549d220e7ab2f4d1js Quakbot
2023-05-18 11:06:46fc437c6d702c5302119f00f15fd16ab7ac0bf3d40875a890571b0d7d670b7a71js Quakbot
2023-05-18 08:16:41f2a2ace114103a041e79ed5165b96ac32d3595aaa0c8f1ff92533be7728179a4js  
2023-05-18 07:08:5871399d25c8497d7f81c87b8f5ec8d5071d8a62ac85ee254638bf8d24feccc5adjs Quakbot
2023-05-18 05:36:5842046702c8332860c6d6224d63344bbd919246deac12c67a32bee542c7cde41cjs Quakbot
2023-05-18 04:13:222dba215a58d9e94365ddf7dad401aaefe0258795b13308a0521c655fc8cbbb26js Quakbot
2023-05-18 03:50:43345e76a5091b5ecf319a57a8901fc203f48dae4dcc62b70fdc4d1e542d1a1f46js Quakbot
2023-05-18 01:34:21fd6447c1e9b59d7114534e32bd988bd00fb674bcecc4c3d958b096bfc06b4acajs Quakbot
2023-05-18 00:00:40009f072fec4afeeb62ee51fc61e387113eecca3d907b9784a9e4b79ca0c64ddajs  
2023-05-17 22:21:554765e3f8945205cf00c99d49497f3f90e74523fec9fdbd0bf9ea1f6163c07512js Quakbot
2023-05-17 20:00:546d9b8f4761b3d2b4e1c031cece4e6ae593e6a9e7de18a01dd28c1235bf7900d7js Quakbot
2023-05-17 19:18:39043c810fd7d77672928841fc44891531ce536c6b4cfb9a4e54529c20b36eecd2js  
2023-05-17 16:57:39a957652292b9f2b69f858cd1f3221d9c4ae8b165a295b91459fd2bf2eedce715js Quakbot
2023-05-17 14:20:06f74f3f66b468e91f7060adfeff51f084fd09fb44b5d93a66ce1b2cccdd016bdcjs Quakbot
2023-05-17 13:06:24f093b882b8fd4a20a6b626c96af959ed31285d4cd57354e4cf7de124fb062b81js Quakbot