URLhaus Database

You are currently viewing the URLhaus database entry for https://carpetwagon.com/esa/damntsicio which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:2317770
URL: https://carpetwagon.com/esa/damntsicio
URL Status:Offline
Host: carpetwagon.com
Date added:2022-09-28 17:45:11 UTC
Last online:2022-12-02 00:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-09-28 21:25:07 UTC to abuse{at}hostgator[dot]com)
Takedown time:2 months, 4 days, 3 hours, 16 minutes Bad (down since 2022-12-02 00:42:05 UTC)
Tags:bb H322 H436 Qakbot link qbot link Quakbot link TR U425 zip

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-11-27dgRrNQtnnDR.zipunknown 179b33b7905e3ce0b70b76ff4243c53001b51cbc5418f68132b583b6434daab4n/a 
2022-11-25gjJBiZIfjLGIvRI.zipunknown 0f7ed94f06f2e63e4e598b3f8ccff03296e467805260a499ab868cf502eb06d0n/a 
2022-11-16CCEJQnintLqwExZiLo.zipunknown e8066f3444d694d81bc89f46bf8fb772bf064f33725a5e6524daabaebf482e9dn/a 
2022-10-27fzyhPvSklaM.zipunknown 60a2ec92a7945d22f93f869161b0a8b1daac72a71fb6e96bcd347cf705087f55n/a 
2022-10-22fAoolFoIjeViVSttI.zipunknown 8b72dbe2cb624438dd3a2afe8e319704860a9e5b8c683b084c263e768279b373n/a 
2022-10-20uRMSfmwQooFOhnYpp.zipunknown 044559aaf428cc5a83322368bf1b44d2051cd7a473fe0b360aa909b11aaa6d7fn/a 
2022-10-13nlPnlsPYxC.zipunknown 13289b4d87eda0a2f4d698b62eeca788b362059c751356af8d13d0cd73140654n/a 
2022-10-09Undeperferendis2013089415.zipzip 67ec81efe5a3c0917af84aac4930ff8dc6a1a25a76beb73fb6c74f2f540526ecVirustotal results 48.48% Quakbot
2022-10-08Co4222321480.zipzip 6d06ae1a66e733b18a3f0fc807839b159ccd3910b5f76061199bfc097afb9cfeVirustotal results 40.62% Quakbot
2022-10-05C3622318728.zipzip b595d9c3ba75219bbc5d29bb7c0604b0f4c986100e00d4a41957cd83c1c89c14n/a Quakbot
2022-10-03Eosdoloremque768436842.zipzip 1f22090003a0af75cda44f5745b644b1a9365982aa183fe0580635cc80b3d84fVirustotal results 17.74% 
2022-09-29G3391272945.zipzip 3aabbb9205ca76d34002b9d8788ace019469c2fb240ac59c4f1d1414afa83dfeVirustotal results 1.64% 
2022-09-29utaEt3244719873.zipzip 7f213f5a44604485ab94b8ed52e8fa60b8f5f25799ce8a40cb65996ec89345dfVirustotal results 1.61% 
2022-09-28G3361078602.zipzip a393fe6e7f3ee0a11f44da096cb7aa9462811179077e05a7261128c443cedff7n/a