URLhaus Database

You are currently viewing the URLhaus database entry for http://185.82.202.248/44461.9575523148.dat which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:1640567
URL: http://185.82.202.248/44461.9575523148.dat
URL Status:Offline
Host: 185.82.202.248
Date added:2021-09-23 06:39:04 UTC
Last online:2025-08-15 12:XX:XX UTC
Threat:Malware download Malware download
Reporter: AndreGironda
Abuse complaint sent (?): Yes (2021-09-23 06:40:04 UTC to abuse{at}hostsailor[dot]com)
Takedown time:3 years, 11 months, 12 days, 6 hours, 14 minutes Bad (down since 2025-08-15 12:54:32 UTC)
Tags:1632302707 obama102 Qakbot link qbot link Quakbot link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-08-1544461.9575523148.dathtml 00be7f643a12ac2221c9ba8df4fb34b3701c336fa830d24fe906c55364ef7b35Virustotal results 22.58%
2021-09-2344461.9575523148.datdll 05b2c3fa8a76f226473278b84e2196ee5f31fa2a7b81621a22cd19541d90fa90n/a Quakbot
2021-09-2344461.9575523148.datdll cb7ebeddc3c28840ee861f514d98754f6543a43a7887fc034bf9c9b10fa15e28Virustotal results 10.77% Quakbot
2021-09-2344461.9575523148.datdll 59a923b3fc147d0e901c7d0e92e554f2234abf2269e627d5e66f086a62711b46n/a Quakbot
2021-09-2344461.9575523148.datdll e299bb3f761394a50254615694ff588983b3b71c3c2db50a7c4a834645133eceVirustotal results 13.64% Quakbot
2021-09-2344461.9575523148.datdll 4b180d141bee0c721dad7b3c269c13cfa7c3350e5eeca83f1b141e28a4400262Virustotal results 10.61% Quakbot
2021-09-2344461.9575523148.datdll 1000d138016067266fed2c010ba021c2c55bb8f62d48be751f5433cf8d8dad81n/a Quakbot