URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: topansolution.cyou
Domain registrar:Namecheap -
Domain registration date:2022-07-29 10:31:19 UTC
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2023-06-13 17:52:33 UTC
Total malware sites :1
A record(s) observed :9

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2023-08-11 12:14:32 172.232.4.89hickory05.parklogic.comNot listedAS63949 AKAMAI-LINODE-AP- USno
2023-07-30 05:01:22 199.59.243.224Not listedAS16509 AMAZON-02- USno
2023-08-01 10:29:53 172.233.218.191hickory02.parklogic.comNot listedAS63949 AKAMAI-LINODE-AP- USno
2023-08-13 07:03:12 172.232.30.16hickory04.parklogic.comNot listedAS63949 AKAMAI-LINODE-AP- USno
2023-07-29 20:54:11 13.248.148.254aba1c1ff9d2ec5376.awsglobalaccelerator.comNot listedAS16509 AMAZON-02- USno
2023-07-29 20:54:11 76.223.26.96aba1c1ff9d2ec5376.awsglobalaccelerator.comNot listedAS16509 AMAZON-02- USno
2023-06-13 17:52:41 104.21.87.98Not listedAS13335 CLOUDFLARENETn/ano
2023-06-13 17:52:47 172.67.169.50Not listedAS13335 CLOUDFLARENETn/ano
2023-09-07 13:50:31 172.232.25.17pebble03.parklogic.comNot listedAS63949 AKAMAI-LINODE-AP- USno

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2023-06-13 17:52:47https://topansolution.cyou/dd/OfflineBB32 geofenced js Qakbot ext Quakbot ext USA Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2023-06-15 15:24:1619c7341295255f0e4f0f796aa90d0cebc52bb68d424af6dd30d648fd90a2810fzip Quakbot
2023-06-15 14:20:317f7c792038aed04b31bbb3bca20c468bc3ff653193a935d5430f4730fa99bcf3zip Quakbot
2023-06-15 12:54:131ea3a5686d289d2ad63ff46208286dbcceaa5b1065d0f20046b570f98917d8e0js Quakbot
2023-06-15 11:42:555bbfe077bbbeee1245fccfe1c2dd22be3e57c0f67c939173a1faa371e9d20b93js Quakbot
2023-06-15 09:13:425e1869540af3f11592fcebabcbc72842afa04aad93f0a707f6fc2ecfaece77afjs Quakbot
2023-06-15 08:27:11ea1a4f95f7300428676711206b127edf19c2af9fa5e5f08daebdb5ca1a94c204js Quakbot
2023-06-15 03:50:3167a37f560da0f0c326515250c83e9de5c6698b83be2bf802025f11dcc66a6c06js Quakbot
2023-06-14 13:36:3806391250e488efba3f0c0b30a3cef8e76d0f03525d7f6a4837c4aa80636e03b9js Quakbot
2023-06-14 11:12:59c673bfcb47ede45a743fd4f7a77f4191994558953aa9456806cb2fd6281a9031zip Quakbot
2023-06-14 09:51:43fb5e6d7464b87d8c745f417d2dfaeb41eddc6b75737084e27beef82da95c5d05js  
2023-06-14 09:10:152c0eb730bf95ed68473c18275de6e8fa29ca3e48e96a78a75ac8b1126fc3d6bejs Quakbot
2023-06-14 07:33:077c57c6396460e902ae047f35fccfda7d912a5eb5a2fa1fb0a9352aad5a8396c2js Quakbot
2023-06-14 06:42:475e92672bf7df5ffa648fe80afc84767228698c68568d57820a3e6bf224b89ce9js  
2023-06-14 05:23:32f78c1d478c74c5e8ba107eaa636933f7419351ece3fc7db8dd2dccbc493c07bfjs Quakbot
2023-06-14 04:46:043922d1b1d955cbeb3e393a4e1df563935c55fe5f545938c5a1db1a821a3c2b54js Quakbot
2023-06-14 03:24:0667a46e1abc05ae69934c409625634ad82d9964d9ab9fde45f3d44744b319d83bjs Quakbot
2023-06-14 03:02:47375ea3deb01c54281ba1f5b42d7de80aeb35ca33e18a3b95baa37a8a059d01f8js Quakbot
2023-06-14 02:15:38815a422eeb72437dff06c8a1d009e146a9284984c8af86cee45dcab526b61e97js Quakbot
2023-06-14 01:32:29b0234d241c2e2947f7b6e107c8a00868e98cfa15f4dc4cb91dcba8122c3520cbjs  
2023-06-14 00:57:453ee16b577ee32fab665db753b79031e1de22fd16c928db3f0e5000213409f70ajsQuakbot
2023-06-13 22:42:55b3eca9550c45112394df705cacbe795be845f5a7ee5411f0ae9230a8bb452e55js Quakbot
2023-06-13 22:23:58660ff12604e28d9e2c91a490f5d055fbe152df411d179df1578c9d54b875c06cjs Quakbot
2023-06-13 20:19:15bde0d66fa6e4905f5ef251efa83fbb85ea4ecc10344d586450bc50b8b4a59fdfjsQuakbot
2023-06-13 19:41:13bd485cf1bc655c2a73b499c7f956c50fcbf14d2df790508b92cdd75e2ee1ec41js Quakbot
2023-06-13 17:52:35adcae1d1fb482479d82631cc80ba134245ec8123c2e45d10c82639e058783e2fjs Quakbot