URLhaus Database

You are currently viewing the URLhaus database entry for http://190.14.37.178/44466.5998287037.dat which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1645648
URL: http://190.14.37.178/44466.5998287037.dat
URL Status:Offline
Host: 190.14.37.178
Date added:2021-09-27 16:04:07 UTC
Last online:2021-09-27 19:XX:XX UTC
Threat:Malware download Malware download
Reporter: nokae8
Abuse complaint sent (?): Yes (2021-09-27 16:05:06 UTC to abuse{at}offshoreracks[dot]com)
Takedown time:3 hours, 54 minutes Good (down since 2021-09-27 19:59:38 UTC)
Tags:obama104 Qakbot link qbot link Quakbot link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-09-2744466.5998287037.datdll f616513ec4d159be158acc4f0aaf0b3e74ed962cc91fe3a3f6fe1c90c5adbc20n/a Quakbot
2021-09-2744466.5998287037.datdll 684c76807fbc092c189a711504247628a8ff96b73624cecdbb1281b38991157en/a Quakbot
2021-09-2744466.5998287037.datdll d9825a9c6670d3e7ee35f3466a023eb15434ef5bc9c55fac8ce5b9675023b848n/a Quakbot
2021-09-2744466.5998287037.datdll eb41c74a7039bdd6e03142b03a697f70bebe02d84fdaa05ee918b3b650e2ca66n/a Quakbot
2021-09-2744466.5998287037.datdll 1da727b583d5760bdf49ea6805b4476c1f2c3d846704b79455b873b49e2a76ban/a Quakbot