URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: tha-onecreative.com
Domain registrar:Openprovider -
Domain registration date:2012-07-28 07:19:40 UTC
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2023-05-16 11:25:15 UTC
Total malware sites :2
Online malware sites :0 (0%)
Offline Malware sites :2 (100%)
A record(s) observed :1

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2023-05-16 11:25:37 195.216.197.42lychee.ukhost4u.comNot listedAS47625 UKHOST4U- GBno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2023-05-17 13:06:22https://tha-onecreative.com/ttn/?1OfflineBB28 geofenced js Qakbot ext Quakbot ext USA Cryptolaemus1
2023-05-16 11:25:37https://tha-onecreative.com/cn/?1OfflineBB28 geofenced GuLoader ext js Qakbot ext Quakbot ext USA Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2023-05-19 15:04:11c74cf0cb7927a8438a84c9cedbdbab3e4815550813336043f39674a67b6a021ajs  
2023-05-18 23:50:281cea0c4b1af9170b9ed2927f3b100d202bebd1b8e69ba1527336aaa6b2c0bffcjs 
2023-05-18 21:33:41d76b1300fd995ec8def343df0450c11a58a217803fee3749db4afacebc64182ejs  
2023-05-18 20:36:126016f12710a18923ed029eb1dc62882b5f1a032a7424e0169dd8c2228598f59djs  
2023-05-18 19:24:0076443e093ed6d6e3961cb5f9bbd546bab2d05f6bc2536c5744dc86f7a769bea8js  
2023-05-18 18:09:3051ffefa8a10b6da720a80cec4735fe173669e7c974946e46c8dda908e824d8a4js 
2023-05-18 17:14:481a2e818afb29521c8658d2a0643158af97370d69c32c0bd85cb900bd3e85b0eejs  
2023-05-18 16:42:451cea0c4b1af9170b9ed2927f3b100d202bebd1b8e69ba1527336aaa6b2c0bffcjs 
2023-05-18 14:58:3851ffefa8a10b6da720a80cec4735fe173669e7c974946e46c8dda908e824d8a4js 
2023-05-18 14:20:5970690302f1092c03caf575612a2ea51d57a3e81c7c6f4513ce287dc6965cfd5ejs  
2023-05-18 12:29:550af9a445f31e51c20a58fad5f35d353da59c49e684bf1db02c436c4d7f7f18a6js Quakbot
2023-05-18 11:47:312805dc9f718f68c7daf0cae2b00b6ed8bd0a6e3a957fcf340055a17cc4ef7ef9js GuLoader
2023-05-18 10:09:184ade6f7d7cfcd03dbffdfe401ed93fa601500252c858fa6010e54b0587fa0249js Quakbot
2023-05-18 09:26:018496ebcccb2676a1fb21ed0fdf36c320fabcf9036d275af7acc025b0182e7963js Quakbot
2023-05-18 08:16:222936b6742f1d05f0f4625a1582b4bb5e44cf16340984eb0eaf2118709e5f7933js  
2023-05-18 07:34:46ba4eb74cda0088a1269ede2dd12d974109f7b392ff522322070233d302cb3d01js Quakbot
2023-05-18 07:22:28a4fb26b40f74df15f85f6ee98f0faab524e9434e8469ea400fb9e1d4a53e6505js Quakbot
2023-05-18 06:03:1714ce409dfb31225a9aa73965aca14ef09852a03cf69033bf2deac2a816796a31js  
2023-05-18 06:00:32efc10c85b0f60f774980c7250e0358ab61ded2a4d2f8fed854bf14d05af6908ejs Quakbot
2023-05-18 05:39:18076515d52f5219c37701ac4b38e72e4f6a809dffce463343615c3fb079c9ec89js Quakbot
2023-05-18 03:59:451d2471f7acbab8882ea6f628275c501f0f81e0aeab5ee16537702bd849e8ba6bjs Quakbot
2023-05-18 02:47:5047838303934003e958511bf93e4b40816c144d7ddb6c99ad7cdda7145ee5dcf8js Quakbot
2023-05-18 01:58:49c7f9d6c56a28ecc44744a1c617778af39179d5869bca0ccd518016eae401078ejs Quakbot
2023-05-18 01:40:566be55c4c2824a4cd16aaf9002adae153b6156ce58174febfd162d82dff7ba019js Quakbot
2023-05-18 00:52:32fdf950ea03d008fe87c7f897e464c152d19d8f830013223033ceb1852f37ef5ejs Quakbot
2023-05-18 00:11:40e34af5d0c51c9f5403ca9b2aad48f7f772322fade0dff21b839a90ac6420cd87js Quakbot
2023-05-17 21:22:144a91fb2765da3056fe04bf5254fac9eb72f1fb4f8026845d71ffe672d4daac8cjs Quakbot
2023-05-17 20:00:433d234411a958948cb4805e18eb29cd95fbd93086ffda9ed636c6d322523b5e80js Quakbot
2023-05-17 19:54:428110c40ddb65d964d81ab30f4c4f9bdce11b8956b986d647f4b81c4c0652f5a3js Quakbot
2023-05-17 18:31:327faf3851af4522294594f1f661ae893ca01e462da47aeb7214a3b78b523ac9b1js Quakbot
2023-05-17 18:10:2186f81887bb6051cb0f8b8b3d948a6e4bbff1538e986a71386da56590e614f26ajs Quakbot
2023-05-17 17:13:03ac2f114a6bac8df9444849169360217c9656b866153cfc42dc444cbc6b7b6e35js Quakbot
2023-05-17 16:55:01a3cc568085570fcadc8c808a54f2482fc606cfcc1e1ad374e88b6d8b8de6ae58js Quakbot
2023-05-17 15:45:323e80a8823bae07e1aca749a62a6da2c57f0f80ebb6d4a8cd1be2ea749d3af45cjs Quakbot
2023-05-17 15:38:070efda647b9e6537d80702573e14dad4cae7edd5bb92d94eea0f136b93fdc03b7js Quakbot
2023-05-17 15:01:54482b7c299dee3be25a3be3b76fb1498df5fc3e081d157b3734fa41fd8fbb5cccjs Quakbot
2023-05-17 13:41:44dff43d93176f7f0b50d2b960680eb78be307c219d3a2f9b42d969390818a467fjs GuLoader
2023-05-17 13:06:220651c77d8fadac8f6e3798ca1534ef6af11482867d22cfb20df41d868c3cc727js  
2023-05-17 10:44:122843592f4f6518b077adc191bc1e291714c1755c8dd2ad0a04b60ea6ca1c86a5js Quakbot
2023-05-17 08:59:4950ccf67f854c29f1b64ff4e499ec97910f0bd423b97760fca260ea32229feaa3js  
2023-05-17 06:49:31ccee4e7e461a221796a16ea3bdeaf126c87e19d97bcfe6364c65d12aef18f42djs Quakbot
2023-05-17 04:33:59ae88209cee7fa39ee35ce44a7e829dcfd63e4b42bbfe4b7e0ccb369f10d33ffbjs  
2023-05-17 03:25:494ec26211b3d838a91beb3bc106bf93429c2c040049939d59c11e41ba78e6055ejs Quakbot
2023-05-17 02:29:087520de68c7c5d824e15350393ee1b1cb210d446e1ae35be47ee0c63a0c70fd13js Quakbot
2023-05-17 01:14:37366d0653d52d2bff2a52f36016d02f4820b30e068a80e018cdede1ef56af3443js Quakbot
2023-05-16 23:53:20e3f35fc2eaeda15c7e98a9e70e5907d47a13ce638730a09e5493722eaa8c59a4js  
2023-05-16 22:45:25e9eeccf92698a2717aff20e72ca92b2c3bbd8988aa76571f1ccef96e00f139e5js Quakbot
2023-05-16 21:13:343ed0e2b7c9db0217d9c582be998d6757070a7ad3ded018a8be46912901a73395js Quakbot
2023-05-16 17:52:51a0ef0902fc9a09ef5a60d2dc5c767f8b9643a6b358a41d1e4e89ec4503587efdjs Quakbot
2023-05-16 16:01:038c37c511c29d0c93a378ffe41c8cc97661d654beeb9c0812ba7ac11b2db47360js Quakbot
2023-05-16 15:09:32b42e6ec9856ba2c040e1e0016ebd6278b2d9626ada79553db69017625d139042js  
2023-05-16 13:21:363e48f9c9ad5249c94678cd2062675e552185dc75aada38f4c4cbb579c28b2425js Quakbot