URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: thirumularresearch.com
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Control D HaGeZi :Not blocked
Firstseen:2022-09-28 18:17:32 UTC
Total malware sites :4
Online malware sites :0 (0%)
Offline Malware sites :4 (100%)
A record(s) observed :1

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2022-09-28 18:17:36 192.254.186.120192-254-186-120.unifiedlayer.comNot listedAS46606 UNIFIEDLAYER-AS-1- USyes

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2022-09-28 18:17:46https://thirumularresearch.com/vfa/euseiemdsqOfflinebb H322 H436 Qakbot ext qbot ext Quakbot ext TR U425 zip Cryptolaemus1
2022-09-28 18:17:46https://thirumularresearch.com/vfa/ouiqsueqOfflinebb H322 H436 Qakbot ext qbot ext Quakbot ext TR U425 zip Cryptolaemus1
2022-09-28 18:17:44https://thirumularresearch.com/vfa/stutaiecnnOfflinebb H322 H436 Qakbot ext qbot ext Quakbot ext TR U425 zip Cryptolaemus1
2022-09-28 18:17:36https://thirumularresearch.com/vfa/iioaequatccacOfflinebb H322 H436 Qakbot ext qbot ext Quakbot ext TR U425 zip Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2022-10-08 10:07:58094dda58b23e9af7cbbe30bab47128efab4b30c4c0f551800955eb44e1c761eazip Quakbot
2022-10-05 22:07:0039014cd29515b6ae15ca14f9d3997e3740a47b141a74f7257c32c35cdb47a615zip Quakbot
2022-10-05 10:28:5408166d74ab79162afbe6af7d65963861d197ecf670f21bdb4b56a8e730aaacc7zip  
2022-10-04 13:26:38c83df56152ab023730f1cef462cd2367fdb66a1ba20960ae072f0b96d10241cdzip  
2022-10-03 20:48:171ff253cf4d397feae81576972c58d6214b4510d914b86670cd1e13d989f1883aunknown  
2022-10-01 18:48:13083ffe234969d1031f6ea2a30888af74718e44047aa9640f7027b319d71c3fe4zip  
2022-10-01 16:17:5406128d94857a1feda0334e621a014b3a601e0b69e4d97f2a0462577d325b036fzip  
2022-10-01 00:17:14306991dc59ef145f1015048d0a0ef1f90800fa87a1a1563d0ca8aba37a7e88fazip  
2022-09-30 22:37:535c32323078e63da20ebb5f93f03de889efc913b38f6572898546fec69a72e1c2zip  
2022-09-30 17:36:329c8741a05ab7924309c56fb381b6f8da542302d50bfa5a0193c0a51afcb34db4zip  
2022-09-30 14:41:19db9f68c9a825b6c0f9eac5845f871eadc83b60810d25d3df6e8d154044075e8fzip  
2022-09-30 10:15:08b9a1328f3107582e58d4fef064f2d3998b658ccc513f9e98a513f5606400d9bezipQuakbot
2022-09-30 09:42:27ebe99fac07d78a336e967a2bb10882fdabdae6101dc74c0526a0a5616796da51zip  
2022-09-30 09:32:1298fb3ed29a800c4ac20f3898cd938ef9925e17c8c7655134795c642746644b03zip  
2022-09-29 18:10:00448fbe5bfd4f7934523637812b951a2f3e97844294ab102289a584b6e47517cczip  
2022-09-29 16:02:34c94ad4ae7e56101b3e32cb105afd6910e4fb50b3f39e4da8cc928f2e7cdea01azip  
2022-09-29 15:52:0720a5bcdfb37e06f73d7201a2b47360a472596e98863ec74ec398bf3bf7a78e8fzip  
2022-09-29 11:54:41ef610def0c6ad4a6be2da01dad6444f256d24d6fdbc05bfe3ece6c72438d0df9zip  
2022-09-29 04:43:456e79cb4d61e1ad805098f8674057c03905b136c681ef4c670b828f0b5e2fca46zip  
2022-09-29 04:28:465376f1187a6b9b71e1cc9983ea30653e52d4dc965f10e04e44be81544532f0d5zip  
2022-09-29 02:07:385347ed794bf262260d49e3b6d0ad6ae0f92bbfc672ca4c9d215cd3662249a6b1zip  
2022-09-28 21:59:29de845e79c4ea4636878998e18440c5c4b6dd565705a75916e2bbd3f98fb14f5ezip