URLhaus Database

You are currently viewing the URLhaus database entry for http://rosenbaum-milan15y.ru.com/body.html which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1121268
URL: http://rosenbaum-milan15y.ru.com/body.html
URL Status:Offline
Host: rosenbaum-milan15y.ru.com
Date added:2021-04-15 13:38:06 UTC
Last online:2021-04-30 23:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2021-04-15 13:44:03 UTC to google-cloud-compliance{at}google[dot]com)
Takedown time:15 days, 9 hours, 36 minutes Bad (down since 2021-04-30 23:20:23 UTC)
Tags:b-TDS dll Qakbot link qbot link Quakbot link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-04-30n/adll 06446653a08a6e03d6af1d2a9d92206082694b743786ef89cb382a3bfaeb6552n/a Quakbot
2021-04-30n/adll c4e50871933cbc80682def9c055384d3702111031cd082ffef23ec18a7037786n/a Quakbot
2021-04-30n/adll 8094d8a17af784666365df70d4b478b5f5c0cb3165af80429af855e0890f86dfn/a Quakbot
2021-04-30n/adll 4de2640aecd5a12aa8af0d20d1a9e3088bb7a012cceb22010e6c14d122943a73n/a Quakbot
2021-04-30n/adll 64895ffcb3532b6b743caae8319414299d61dc41a9526ec93a9b072ea0c54de1n/a Quakbot
2021-04-30n/adll b430e2430814bbb208c6c0973a85292aa1814da439d5f17d5bbaac6959f4a4f9n/a Quakbot
2021-04-30n/adll f45af578b9000f72f9747be8b0eafc32c37c418f9078c78a0830986fec942c6bn/a Quakbot
2021-04-30n/adll 3c6dcb7cfa4ef2bcd59529a44044113dad52fadc9dbb304806a7af3ebde2f11en/a Quakbot
2021-04-30n/adll 6698586b596786201a0aa46b107f2dfb826e3314c3ae74263b55b81e3b892310n/a Quakbot
2021-04-30n/adll e450868c460ad3d017771d5008eabc22658727c98fb329fc132fe1473fc23e2dn/a Quakbot
2021-04-30n/adll 317479a3e1c2b63f8894216bf01043dde84913fbb31e679c65281c56a05609fcn/a
2021-04-30n/adll 037f2f2e193472edfa8a68ac0ebb21cd511a53cf0baa04a7042fa6ef712d98f3n/a Quakbot
2021-04-30n/adll 8f7f063efd6dbe198ece0bfea3e1e6f848fecbbbc2c7a4dc598659ac95bbcb55n/a
2021-04-19n/adll 6b2256e39192bc8a096dc8815396574a95ff1ccdbd94987bb7a1f8cd83aba007n/a Quakbot
2021-04-19n/adll c1fa5e029b4d077303e09b1826315f5ad599c00194af9eea4d6dfd501c175905n/a Quakbot
2021-04-19n/adll 98cad7ca94b12d64406617e2182d3b50d153354a2e464edaef1a01291207414cn/a Quakbot
2021-04-18n/adll c0102041432fb38a85d054a3667d64396e0c688c81ed2a903b51e36bd9060f03n/a Quakbot
2021-04-18n/adll de61d793bc097e9b74670f0c280f27fb3ac0e9e7ffe263a8441e2b47b9dc4bdfn/a Quakbot
2021-04-17n/adll da19534f862b9961e94ef64f3cbab12c424459849200629e13163b5249d208den/a Quakbot
2021-04-17n/adll 36c9cddea437864c7f93dc5e55b7919994a45c9608c165e3c8e2c727abb2797bn/a Quakbot
2021-04-17n/adll d61b8fba2c39d29861b6c6eb0a860af6bd8fb97a276587c3677f660cd1d9151en/a Quakbot
2021-04-17n/adll c95c0aff6dc3aae2c81370defec6a3efc7b1bf4adaf90f1057cdea9b561e1ccfn/a Quakbot
2021-04-15n/adll ebd504356bbf1bd525131b2c16104955595943d67a221a25f246eeed95579949n/a Quakbot
2021-04-15n/adll a738cf76d421dd03a9a1dbf142e0366f5ac15f07a35f8b167db3342f88f88304n/a Quakbot