URLhaus Database

You are currently viewing the URLhaus database entry for https://bladna24.ma/fsin/liahitun which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:2317747
URL: https://bladna24.ma/fsin/liahitun
URL Status:Offline
Host: bladna24.ma
Date added:2022-09-28 17:44:27 UTC
Last online:2022-10-29 20:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-09-28 18:06:12 UTC to abuse{at}cloudflare[dot]com)
Takedown time:1 month, 1 days, 2 hours, 10 minutes Bad (down since 2022-10-29 20:16:31 UTC)
Tags:bb H322 H436 Qakbot link qbot link Quakbot link TR U425 zip

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-10-16xeQtUkM.zipunknown 43663a5586afffaf051c8853feba4533c0a6b3e0ab90fe4098b2008a254fe18dn/a 
2022-10-13XycaVgiQ.zipunknown 84997b403be7888369709c7e2137c6dd99fc999a0a7b94aeaebe6980b56961b9n/a 
2022-10-09Co51366060.zipzip ef2d28e8dc6d1a1c5312ab05902ce3da8a1abf9aab2cb3624953ba95e0ef6ccbVirustotal results 46.97% Quakbot
2022-10-08Co112565120.zipzip 15b0876090e31bcc5f7ad16d5be10f7413834ffa4ffe07559395a5fda104ec0fVirustotal results 45.45% Quakbot
2022-10-05R2113953467.zipzip c9030d049a476ae09fe2540f287335b1fe21519a720550d7bddc704dfe2f8c7fn/a 
2022-10-01Card245398216.zipzip a5593ccc5a3d112f0dcdcc21cd04a8867040fda274dedba7cf31f38477134075Virustotal results 3.17% 
2022-09-30Post734147012.zipzip 6214647f5b8b8f711fc7912dc226e7eab4b86229c6a125460a60db8c8cb10641n/a 
2022-09-30Gall973466806.zipzip 6f2ab9898f08a3d22d4f4838c4bbf98c1ce46b7af616d2ed4e94ac91c76c2536Virustotal results 1.59% 
2022-09-29G414797603.zipzip d72cb5fe861970d65d07a8fea7d8e6bfa96f00f47899f3f4c820f42f849ea7e6Virustotal results 3.28% 
2022-09-28G827237421.zipzip 9a88c9783c38e1ae74749ff0a348fb0787a50744e6ff95d699fb025c0ca91c07n/a