URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: strategycandle.com
Domain registrar:GoDaddy -
Domain registration date:2022-04-13 10:11:27 UTC
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2023-05-16 13:42:13 UTC
Total malware sites :1
A record(s) observed :5

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2023-09-20 14:09:44 15.197.148.33a2aa9ff50de748dbe.awsglobalaccelerator.comNot listedAS16509 AMAZON-02- USno
2023-09-20 14:09:44 3.33.130.190a2aa9ff50de748dbe.awsglobalaccelerator.comNot listedAS16509 AMAZON-02- USno
2023-07-19 20:39:53 34.102.136.180180.136.102.34.bc.googleusercontent.comNot listedAS396982 GOOGLE-CLOUD-PLATFORM- USno
2023-06-01 12:54:59 68.178.148.7272.148.178.68.host.secureserver.netNot listedAS26496 AS-26496-GO-DADDY-COM-LLC- USno
2023-05-16 13:42:21 68.178.145.155155.145.178.68.host.secureserver.netNot listedAS26496 AS-26496-GO-DADDY-COM-LLC- USno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2023-05-16 13:42:21https://strategycandle.com/nmeo/?1OfflineBB28 geofenced js Qakbot ext Quakbot ext USA Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2023-05-18 20:51:081a2e818afb29521c8658d2a0643158af97370d69c32c0bd85cb900bd3e85b0eejs  
2023-05-18 19:40:47d3c6e06204212c1aeeef29809460056535cba3beca8cf163b7c8719671ef0c9fjs  
2023-05-18 18:08:43d76b1300fd995ec8def343df0450c11a58a217803fee3749db4afacebc64182ejs  
2023-05-18 16:50:32bbcdb87a842c5157acea98f0cedd358f764e2613b6a635e4f9f5946de8c07780js  
2023-05-18 13:45:43f6d127fa14835ecd427e6989f06b137fbbd8cd57a0887d2a4f163f8b6c4af9fdjs  
2023-05-18 12:01:3593be05e8c37282bca34649a25ba07962fb7da33e5799c01e05c15cc3b72589ecjs Quakbot
2023-05-18 11:46:132312d94387e675afd3db56f1fd5419a3a083bea7bc690341fa3d49d3e3f69f53js Quakbot
2023-05-18 08:41:0242d74e9be0d442e0bbebc6134157922913abc72510b235bfa67b53092757a2f4js Quakbot
2023-05-18 07:07:401d57c903d9a9f7a6aafe34d3d44ced534b1878b64b93029c391c25c05c708094js Quakbot
2023-05-18 06:12:15fd0ca1aeb929c31a64a1ec9c5027c0c2c644161a6fe7faacf6ea8ec30ca8806ajs Quakbot
2023-05-18 03:16:258f5bae7c3310650dc125b9223695f4a40a6d1394f6f6f9dff466a3e53099ba7ejs Quakbot
2023-05-18 00:54:342a38d5dd759f5e13e433429b8fbed42e9b1fa7de9f671bf87d0739862847c16ajsQuakbot
2023-05-18 00:22:36b7aee295279db7ddc9a5aaf2c89b1395f0a2c3ad92cabddcb41b024dbeff9c64js Quakbot
2023-05-17 23:09:49a357a8a9b62674cff6660b76659f4cd36ccd979d44937371bde57235d81c392ejs Quakbot
2023-05-17 22:19:46119865e21bd0f564ac17f9e36940d9360139b87392fa02dce3483f1a789ab4abjs Quakbot
2023-05-17 21:33:50a4633a3bade267edfd4e6171fb238320ca7b8fc6ce56403954409c8af38c4ca5js  
2023-05-17 20:23:29becfbdbbd5a9cfbb918940eafdd8f586133d77eb11bfc5dac1f96e7787abfd65js Quakbot
2023-05-17 19:24:38cee11dd3e06833ff80c75ab19feaefb05e62b347d9ed97e9ecb8f4ac5a889f95js Quakbot
2023-05-17 17:04:300b38200ce89d27eea5fb23346b4015cb585d0af5fd4f176a7c9bdb20ae369a4ejs Quakbot
2023-05-17 13:46:11c2c29ea19d16a1a70e365c2161d223994c0610958fe527bfcb605ed47c4a4d44js Quakbot
2023-05-17 13:40:54ba4eb74cda0088a1269ede2dd12d974109f7b392ff522322070233d302cb3d01js Quakbot
2023-05-17 11:49:207001d12f0aff0c6712230ed17f0fa70b2b0f2f7f58554663f28e687b643386efjs Quakbot
2023-05-17 09:49:36d43f96dac125a7e7a221ef5b494c8dbfd9888caaf704d7265d6a6443f9626c5cjs Quakbot
2023-05-17 06:55:137077268371e40385bc6cf9bf7105b845e89bfe87e694771027070f9deee7dd41js Quakbot
2023-05-17 05:16:07fa7d6648bf3891e933e618268b30cd85ae83c57e4e71b2527c34fc29007e64eejs Quakbot
2023-05-17 03:25:067d6d5be263b7f09887428b7dafbbfc4c416f2379dd62332b9f5dc87a360e1a46js Quakbot
2023-05-17 01:29:126e6937d09da6883cee31a5623099e57dd86ba58990ac0c73e84ca81f9e1da7d4js Quakbot
2023-05-16 23:54:140443dbcf2b983509b06d86ee242a141d4a1ef698c68b854a676cfd5544cf1791js Quakbot
2023-05-16 22:40:342a61d949144b82019914554d7682662a1e12ea6f7428d5f4eb1b3db9efb99c38js Quakbot
2023-05-16 21:21:4189d31a80551a1a98ace9df97260e88b0a35c48d0dad84f75ad0bae920d2f79efjs Quakbot
2023-05-16 19:30:2567db64de7d5da5448d470fadf99e61f196f8dd77ec95249a798c76ce8b12008ejs  
2023-05-16 19:26:4577e7cd10831c033da66b7d5bedd6f997d76d9b272ec08c863472877c1fde5d32js Quakbot
2023-05-16 15:50:1200927f483ee85b3da4d64bf54c02026ed04c2d75883d07ea9994619911c58ad0js Quakbot
2023-05-16 15:19:1550fcf618431878b0d01ca7196002559751817dea067f5dbbc5c920b16ecc2095js  
2023-05-16 13:42:21789f4298cffc53d52be8c8e587a44cbd4bf46e542b7755d2f72eeb4be2f0380ejs Quakbot