URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: shbdistribution.com
Domain registrar:Namecheap -
Domain registration date:2023-02-21 16:49:39 UTC
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2023-05-16 13:42:28 UTC
Total malware sites :1
A record(s) observed :8

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2025-04-28 06:51:45 34.120.137.4141.137.120.34.bc.googleusercontent.comNot listedAS396982 GOOGLE-CLOUD-PLATFORM- USyes
2023-08-13 06:44:01 188.114.96.9Not listedAS13335 CLOUDFLARENETn/ano
2023-08-13 06:44:01 188.114.97.9Not listedAS13335 CLOUDFLARENETn/ano
2023-06-28 23:36:45 188.114.96.3SBL690066AS13335 CLOUDFLARENETn/ano
2023-06-28 23:36:45 188.114.97.3Not listedAS13335 CLOUDFLARENETn/ano
2023-07-04 17:04:41 104.21.22.140Not listedAS13335 CLOUDFLARENETn/ano
2023-07-04 17:04:41 172.67.205.30Not listedAS13335 CLOUDFLARENETn/ano
2023-05-16 13:42:31 68.65.121.200server265-5.web-hosting.comNot listedAS22612 NAMECHEAP-NET- USno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2023-05-16 13:42:31https://shbdistribution.com/bif/?1OfflineBB28 geofenced js Qakbot ext Quakbot ext USA Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2023-05-18 20:58:0151ffefa8a10b6da720a80cec4735fe173669e7c974946e46c8dda908e824d8a4js 
2023-05-18 16:15:28bbcdb87a842c5157acea98f0cedd358f764e2613b6a635e4f9f5946de8c07780js  
2023-05-18 15:30:5476443e093ed6d6e3961cb5f9bbd546bab2d05f6bc2536c5744dc86f7a769bea8js  
2023-05-18 12:31:22828ab9b198ace6540bab66d12bff28bf5b11bb1258df06ae467240d2ff175f1bjs  
2023-05-18 10:47:31bc100a785f531874618920cd99c357dfc32c33cd59fc6b19856a94b41ca3f07fjs  
2023-05-18 08:27:29f463f7a1eabfcde6cac3157449992b10b752021a61c46392c383c0949c81a709js Quakbot
2023-05-18 08:04:40c1058b3e90189dda6f009ff9980c9a284c196414c7682ef914862f8964b9950djs Quakbot
2023-05-18 07:47:29a0220d487566d1243b11c30ea5d37349418d84e8f6eb6013e0792aa4b11236c6js Quakbot
2023-05-18 05:47:55759b7245c8f5cd0c5db7853442c740696c4a66caf8aae6a281b32f063f6c660ajs Quakbot
2023-05-18 02:49:226da5adb44a26381ff077fb8a45c8d20a4888393b3fd5733d6fc8ac4519809c94js Quakbot
2023-05-18 01:07:295155a314d6e44ed6eb4d65e80d368d8bcd4e8674e293bce8d712b03395d22f6fjs Quakbot
2023-05-18 00:52:51340674eac99b309a0a10a07f5d961e87788e88c4cc2f218da6cd61ccb196deecjs Quakbot
2023-05-17 22:16:04eac6096d9525ff200431210339d6a028b68233173ae11df47f57222dc631697djs Quakbot
2023-05-17 19:56:503b521273a1f49f0fb7c2f4ea15df405e5c77af2e36c653ca0e352ada89db0c6bjs  
2023-05-17 17:37:573c39de1cdb595f8d1822395bd3cf9c81743a1b303cf7188cf41f49bf8c0005c7js Quakbot
2023-05-17 16:17:50399c7eece18438ba4f325cfc3863d0603d1237732a310fa2124a136ff2a335afjs Quakbot
2023-05-17 13:48:30e98ab08e4897807987344800297aa41a72fc207a57b0e89510243b3b8ad0e144js Quakbot
2023-05-17 13:05:367a1083b3edcdb5d47bf9938417f339c556c4737e9886bb9cd51ce8eceb3dc5dcjs Quakbot
2023-05-17 12:33:32cac584e2ff62f01ca51db682d0b6d32ff11123c3bc3b6a5e9794606ad51844fcjs Quakbot
2023-05-17 11:01:22aa64aef61f503d5d367e7c76bdaf6c28be7aa66d98f681c81feae8a2d7e5d3d6js Quakbot
2023-05-17 09:53:53776707f7f18c33e86ee2b3046380e180253c785dc4448dbb29a744dc505b605djs Quakbot
2023-05-17 06:44:170c75ba2f176c0473bec6cf00375e1751eaac0edf89119f7364059db4e51aadfdjs Quakbot
2023-05-17 06:16:008f7ad998ed90325fd7919cf37e3061f4e160b74be05d14407fb9465f388d23e3js Quakbot
2023-05-17 03:54:255b44abd7aea3c0c33cf064a6bcec770fcc240ff3712246acb546289eb50fa620js Quakbot
2023-05-17 01:07:019c1dd1d2cca255e819b0508645e3fe4b4d6f39754a8cd94b5b3e647a335f188ejs Quakbot
2023-05-16 23:51:17f30b07b3f4baa52185e7b910ad2869b4b5b9e6e48248119f96bdc1fab7376bc5js Quakbot
2023-05-16 22:26:03706752a579b785be2555d6be76804c142c7755ae671dc2ad825dca9fda312aa4js Quakbot
2023-05-16 21:06:29d7806a3e6a8759e0dd6f8b00f2fa5a304d239f3ccc9759103be1bdd238f9eb74js Quakbot
2023-05-16 19:14:04826f89458f039e2bb5f34da55b4832c80d5f7597c20e234234d6b9f340dbc451js Quakbot
2023-05-16 16:05:55279bd1eac8316aa10b29b35f8435437f2d53606d3a8870ad2bf3fa3ca1743a1bjs Quakbot
2023-05-16 15:26:28189b1dabe3e115b550e608853b8c816803fd151f1729159f3fdeb83610deb4b1js Quakbot
2023-05-16 14:48:3726788fbe6bf8661d0da605c486902e51d258b69b5aedd0b0ea83aff560a69ea4js  
2023-05-16 13:42:303b1f5ce370a948ee3e466a13577fde4784734afe13558f3914777141e782c8c4js Quakbot