URLhaus Database

You are currently viewing the URLhaus database entry for http://190.14.37.178/44466.7053340278.dat which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1645591
URL: http://190.14.37.178/44466.7053340278.dat
URL Status:Offline
Host: 190.14.37.178
Date added:2021-09-27 15:07:05 UTC
Last online:2021-09-27 17:XX:XX UTC
Threat:Malware download Malware download
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2021-09-27 15:08:04 UTC to abuse{at}offshoreracks[dot]com)
Takedown time:2 hours, 0 minutes Good (down since 2021-09-27 17:08:23 UTC)
Tags:1632729661 dll obama104 Qakbot link qbot link Quakbot link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-09-2744466.7053340278.datdll 0f63bdf597678dcb71097ac8fba6232cbc8e385b04b75057c2b5e8ef451f052fn/a Quakbot
2021-09-2744466.7053340278.datdll 47ae4cc86d78bb88d17cb49435183a74c87c30b4418756afcee2999977c75b8en/a Quakbot
2021-09-2744466.7053340278.datdll e16a576afc8422c7180f3ab5dd2b4ea149c210597e177af3ec5057699079b49dn/a Quakbot
2021-09-2744466.7053340278.datdll 2e0dcd41b6f8c397b225e39f27ea26659ca14a25eac9064653db661b5302e35bn/a Quakbot
2021-09-2744466.7053340278.datdll 884af4f46495864f289099bffbbfbca0f4049e57eaa8033bb5efba9956242ed9n/a Quakbot
2021-09-2744466.7053340278.datdll 6b7ce26148fe55df48e887c1d18fa2c1bb12fa7d85d014dfaf4b801e345fd2ccn/aQuakbot