URLhaus Database

You are currently viewing the URLhaus database entry for https://carpetwagon.com/esa/pemitulviqitlumousa which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:2317758
URL: https://carpetwagon.com/esa/pemitulviqitlumousa
URL Status:Offline
Host: carpetwagon.com
Date added:2022-09-28 17:45:09 UTC
Last online:2022-12-01 01:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-09-28 20:23:07 UTC to abuse{at}hostgator[dot]com)
Takedown time:2 months, 3 days, 5 hours, 25 minutes Bad (down since 2022-12-01 01:48:52 UTC)
Tags:bb H322 H436 Qakbot link qbot link Quakbot link TR U425 zip

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-11-27HTWaadnxHIOnebIp.zipunknown 0462635e50968897de975c66111f66608b385aed26482c8a103395db7aa7e76dn/a 
2022-11-24GlzefhBDADMDev.zipunknown 777f09ebdad0808ffd0d3ae28e28edf1a865952be3f0574bfcebb2ba31df8b0fn/a 
2022-10-28MKAMHJkniTsluCMSe.zipunknown 3a33a94d110c318ab7626f24fb4e80e1094e9fc46c85c16f9245aff1616b5946n/a 
2022-10-23DjEybtzdDJG.zipunknown bcf564c4e4d287be3591fd09fc88ecd9aad0272f9777d674fdccd39451895e5dn/a 
2022-10-19YTNh.zipunknown 4a0c0c0d5d5aed00cb29f22ff0be6e7060300370dbf3796dd167d3db9d9ff283n/a 
2022-10-11N2166875374.zipzip f5eb5ca1c8f7632e724630f9064076b147b8d67e638ad412eae0688cc36ed09fn/a 
2022-10-09Co1630663736.zipzip d7ef2f4e4be428b86ef5649b1c886f242cdff4ae4cc8bba61115232d9f11aa1aVirustotal results 46.97% Quakbot
2022-10-06Co4156676423.zipzip bb8bce08dc9949dc85f5c6d6d8cb1e06fbaa33e515a1a869c4d1eb4d678bd8caVirustotal results 23.08% Quakbot
2022-10-04R2009270630.zipzip 393209fa67e72d9bf748047c8cfaaef5d4c4b538869a20c856a99056ea0518e6n/a 
2022-09-30Card2119477297.zipzip 7d5b53008c0838954497ef0e5316730807734abd68a02b0688f28299dba5b8d6n/a 
2022-09-29tiipmoudQe3461413377.zipzip adcdf24c34a28f8c3d7e3872fc7e1e3ec225045bffcedc713c00b45e734b5579Virustotal results 3.17% 
2022-09-29Articul4082317890.zipzip 3c59ed3486614cef98c0d67e23cec04d794ad44cd4e5c61c4272e745f7315c79Virustotal results 3.39% 
2022-09-28G4249520013.zipzip d00c06338c596d526ec96634420261ab42daf8761574c4d87f6dc22518176aaen/a