URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name).

Database Entry


Host: troovsy.com
Domain registrar:Namecheap -
Domain registration date:2022-09-16 16:41:11 UTC
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Control D HaGeZi :Not blocked
Firstseen:2023-05-16 13:42:23 UTC
Total malware sites :1
A record(s) observed :7

IP addresses


The table below shows all IP address observed for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones). Please note that the output is limited to 10 entires.

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2023-05-16 13:42:27 198.54.119.112server269-1.web-hosting.comNot listedAS22612 NAMECHEAP-NET- USno
2023-06-05 20:41:58 216.239.32.21any-in-2015.1e100.netNot listedAS15169 GOOGLE- USno
2023-06-05 20:41:58 216.239.34.21any-in-2215.1e100.netNot listedAS15169 GOOGLE- USno
2023-06-05 20:41:58 216.239.36.21any-in-2415.1e100.netNot listedAS15169 GOOGLE- USno
2023-06-05 20:41:58 216.239.38.21any-in-2615.1e100.netNot listedAS15169 GOOGLE- USno
2023-07-16 18:10:12 104.21.12.159Not listedAS13335 CLOUDFLARENETn/ano
2023-07-16 18:10:12 172.67.195.33Not listedAS13335 CLOUDFLARENETn/ano

Malware URLs


The table below shows all malware URLs that are associated with this particular host.

Dateadded (UTC)URLStatusTagsReporter
2023-05-16 13:42:27https://troovsy.com/cui/?1OfflineBB28 geofenced GuLoader ext js Qakbot ext Quakbot ext USA Cryptolaemus1

The table below shows recent payloads delivery by this host.

Firstseen (UTC)SHA256 hashFile typeBazaarSignature
2023-05-18 19:34:47c74cf0cb7927a8438a84c9cedbdbab3e4815550813336043f39674a67b6a021ajs  
2023-05-18 18:20:226016f12710a18923ed029eb1dc62882b5f1a032a7424e0169dd8c2228598f59djs  
2023-05-18 16:57:4851ffefa8a10b6da720a80cec4735fe173669e7c974946e46c8dda908e824d8a4js 
2023-05-18 14:28:210d1baed7654ea1bbe3ccc69ee4bf6b98fd213480408b5f97c8296b0c3726ce38js  
2023-05-18 12:45:130a6a1598b501c10c9f5b674586502de9eb32d51063c42dfce137a78f56aa4388js Quakbot
2023-05-18 11:08:5109d00cc1758af4e79c7a38e65ba9555ccb18dcc1f628a22c1d9bd5a337b03d88js Quakbot
2023-05-18 08:51:132f457141989cd8db7267b3dd982bc3aca3c0d763161cfedf75384aaa9b27bfe3js Quakbot
2023-05-18 08:31:46dc0d873178c61dae13dac14d65611d4716e9c28ebfa216e32126dbdd1ac971bejs Quakbot
2023-05-18 07:34:429162c26ac66cb673664c91b6a22e788a008db7c2bd2b4a9b7788a47fe85f33eejs Quakbot
2023-05-18 06:04:36fed0fa880fd9812bea44ff765356fb74bdc116ba4a93d3e22ad855b9e789e299js Quakbot
2023-05-18 01:08:13c98276273a209f91c3e1637785f0f3e59d5724b05ee395f9f32ae11ee5e8679cjs Quakbot
2023-05-18 00:04:569ac768cf3025869132bdb78aad3f4505cd8dd7e5ddc218e64d6645ba8db5e4f4js GuLoader
2023-05-17 21:27:44f252bb947741e263a585e14d04e2ccd38b535351fa818233c9ab294b4b174275js Quakbot
2023-05-17 20:40:25246f0936618439433071e920bc87c631f7506091006fb43ae80612f430c0846ajs  
2023-05-17 19:08:190d19b7d7e092df5355727bab9cbf454b5b17f90d5380ef6240d0cada7cb5a1c0js Quakbot
2023-05-17 17:41:359b2f8c74295c1bedca1e85a34eca84634c652741d93c24d9c5586926552a77a5js Quakbot
2023-05-17 17:07:205e30b39e34b262f145f195328ba0967ae018af26240225770cb9bbac24dc377cjs Quakbot
2023-05-17 15:03:446bf7410f1b32c7fad44030961607fb13ec400a2a008f5817485ba84c5c297175js Quakbot
2023-05-17 11:51:4217da932080db984c8594c50184bd0cfde690ed29cc7cd73f3136474e2cae191cjs Quakbot
2023-05-17 11:13:18b2e23c529e80dabc306726c89dd843df4bc84130430fb22df8bdfd18d9e91035js  
2023-05-17 08:59:57843c93673cc542d160f46482470c3a87740d05acb4541425b2faede223a58cbejs Quakbot
2023-05-17 07:02:18104f9e5b8b89ec773cf616aacafa9c176ce2e59fcf7bf798ea52ceff1c5c980cjs Quakbot
2023-05-17 04:51:037991c552f801120065c1c3b41e9560337b663c62f8d158612061a1b71e969505js  
2023-05-17 04:02:0144b96bde72ba54da6aeb3162260641b2ff61bc12d671afe9df19183a4b1c7e03js Quakbot
2023-05-17 01:57:178a0bd5830627f1fd140e0804e7b876f3ae07328dfd00c1c1b5690cbc151fc114js  
2023-05-17 00:32:4236f3f35d5c646d8481d4696491980678c1cbf8e56a0da728a9f95c01a0de19c9js  
2023-05-17 00:32:422597daed57c9f5cc48e60f510b923383853926f7f8f797c0e6b9b5c75e677272js Quakbot
2023-05-16 21:22:000459a13621ccecd94ecb647d055cf19ef18ad46577fe20d772ead5a386e8ab49js Quakbot
2023-05-16 21:12:0609482e81991f7f7a52f245f54ab0ccaf71455ad41e2681daaff045a28a436cfdjs Quakbot
2023-05-16 17:37:474201657ea90c61483d04fef9fa11ba52089b064e0acab1724a0508e8b386187cjs Quakbot
2023-05-16 15:53:04f27f86343ebd3e15cb5f6e5df845a5029cad239917accd39308e3f6763ec7a53js Quakbot
2023-05-16 15:26:0721bdc9690b07007116c9dcfded4574d2579521c4168c0f97dddf7aaab48b42ffjs Quakbot
2023-05-16 13:42:2767b3db3f5511d7f4c45c66da9cb44964bdff9a2b79861f7a20dec0254973aaf8js