URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: theleakdetectionpros.com
Domain registrar:GoDaddy -
Domain registration date:2020-10-30 22:52:06 UTC
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2023-05-17 13:06:47 UTC
Total malware sites :1
A record(s) observed :1

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2023-05-17 13:06:50 50.62.141.186186.141.62.50.host.secureserver.netNot listedAS398101 GO-DADDY-COM-LLC- USyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2023-05-17 13:06:50https://theleakdetectionpros.com/reec/?1OfflineBB28 geofenced js Qakbot ext Quakbot ext USA Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2023-05-19 20:22:051a2e818afb29521c8658d2a0643158af97370d69c32c0bd85cb900bd3e85b0eejs  
2023-05-19 13:15:2276443e093ed6d6e3961cb5f9bbd546bab2d05f6bc2536c5744dc86f7a769bea8js  
2023-05-19 06:39:4951ffefa8a10b6da720a80cec4735fe173669e7c974946e46c8dda908e824d8a4js 
2023-05-19 02:14:43d76b1300fd995ec8def343df0450c11a58a217803fee3749db4afacebc64182ejs  
2023-05-18 23:23:07c74cf0cb7927a8438a84c9cedbdbab3e4815550813336043f39674a67b6a021ajs  
2023-05-18 21:31:44d3c6e06204212c1aeeef29809460056535cba3beca8cf163b7c8719671ef0c9fjs  
2023-05-18 18:48:096016f12710a18923ed029eb1dc62882b5f1a032a7424e0169dd8c2228598f59djs  
2023-05-18 18:37:03bbcdb87a842c5157acea98f0cedd358f764e2613b6a635e4f9f5946de8c07780js  
2023-05-18 17:05:40d7522ab4f64ae0950e24bb00df9157136bbcb900ace0c77bd1a46f06149bf37ajs  
2023-05-18 14:18:290d073c58ba2f423b9368a0c3146e6f51f6529b2ea0ccec7b171e7542b7bfe1c7js  
2023-05-18 13:00:2127544c60ff36a51e0dae2573402a63de5c6ae28c1c7160377a0d3787272d74bbjs Quakbot
2023-05-18 10:56:492ac229fd994bdb64a7cde85dae50a0f2f6a3229eed9afc763d5f8d0e9b4f0ef9js Quakbot
2023-05-18 10:37:06c977474e11ea0066144f719c48b4f2d5ae32da3a13eab7d64cb3433546b8d738js Quakbot
2023-05-18 09:29:33ba0c34e538207bb899f624292efada218b4202e276606cdaed6e258bd29572b4js Quakbot
2023-05-18 07:18:245526b208f51ee2b6adbf6b588401d5c1e058973988c16897fef27cdf25f2a51ajs Quakbot
2023-05-18 06:19:29c98276273a209f91c3e1637785f0f3e59d5724b05ee395f9f32ae11ee5e8679cjs Quakbot
2023-05-18 02:55:07a4fb26b40f74df15f85f6ee98f0faab524e9434e8469ea400fb9e1d4a53e6505js Quakbot
2023-05-18 01:38:35c66769c1beccde8a71bc20172ba3978dfa20fa8e27c21976b94c10327af6d4cajs Quakbot
2023-05-18 00:10:37d7c515caf105f46c900f5862443f7dccfef29b7544788a80e4bf47e410fb0106js  
2023-05-17 21:55:038323339fe9864a8ae4d4d40aaccb4bf92a9b3ba6b545c2210dec09fb28bf9374js Quakbot
2023-05-17 20:22:493ff223428a9d2b7b897fd823e4add6ae4cc119c86e47eb073bdbf5a578a17226js Quakbot
2023-05-17 18:35:596d9b8f4761b3d2b4e1c031cece4e6ae593e6a9e7de18a01dd28c1235bf7900d7js Quakbot
2023-05-17 16:30:48a74b08fd8574636c900a77d9d50f0c7d91b058b6a82d501d33a366e1e7c3d343js Quakbot
2023-05-17 14:21:07f4915f167c3fb3624d4d085f3c8bed83ad6edb3d7f55c9b9bb17a4f06111e131js Quakbot
2023-05-17 13:06:50c5a390d1bf67c2241e5a9cb33cab3e83b41d4319c494c9f15d864cff3015e95djs Quakbot