URLhaus Database

You are currently viewing the URLhaus database entry for https://carpetwagon.com/esa/lredenioieriscab which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:2317793
URL: https://carpetwagon.com/esa/lredenioieriscab
URL Status:Offline
Host: carpetwagon.com
Date added:2022-09-28 17:45:17 UTC
Last online:2022-12-01 03:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-09-29 10:49:08 UTC to abuse{at}hostgator[dot]com)
Takedown time:2 months, 2 days, 17 hours, 6 minutes Bad (down since 2022-12-01 03:55:17 UTC)
Tags:bb H322 H436 Qakbot link qbot link Quakbot link TR U425 zip

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-11-27FAaRHUqBNSeI.zipunknown 9245ecc39af61aff5c052eb7fde00971beb39aa584bc39a436fbc0a6c5942edcn/a 
2022-11-21kwkNPQBlfSpBjIq.zipunknown 5aaa06d80e66a0e78e788f6ac180ac6a38dacf3f122199f85409f70cfde56ea2n/a 
2022-11-15nGzXaK.zipunknown c0f5ca51c77b1e9c2601052daece90fe9e7478b42dc16b84700c6991bdc7f90dn/a 
2022-10-29XVIRVhtjYRumkkI.zipunknown ca827bacf224276901cee7afb09273f55ce63dd2865b82e18cf4ed5e277b0e1cn/a 
2022-10-23TPrJPEzYDZAmYo.zipunknown a8e0b2c923772d96300025a103a027bfc00e67fb2d155bcc8e147af4006425f3n/a 
2022-10-16IbugTmAvxchGJGJ.zipunknown 0c8d63ba8ddc16e679a2ec3e5aaf847439193e0893076447d57ed7aff71e565fn/a 
2022-10-11ntesmEi1123376019.zipzip 9acc19357461fe2b0addd34ba6e1e81e5c08acd6ab5c0493264f31170412d1fdn/a 
2022-10-10Co3198953589.zipzip 9a62c7bb3a17034d9f6f18db86ad23d2fc6eb5a27e3141937abe4d1e9b2620dbVirustotal results 19.70% Quakbot
2022-10-06CA1205000404.zipzip 7c7fce62b7ee2329be63ec5db38176f460249c417fd27a5839984d649dfc99f2Virustotal results 23.08% Quakbot
2022-10-02Gall2757579736.zipzip 0cd4f1094b039d0c2cfb1575e3fa7d33ac40160060eca5e55220e641e06a0ab2Virustotal results 1.61% 
2022-09-29Articul3061685392.zipzip 4544536f417fd88b7ca5d4d121170b5a057e835541ae6006445a35452365b2c3Virustotal results 3.23% 
2022-09-29Gall15081873.zipzip 3b16fd04d75ac0659439947b4e20bbcb0ee9aaca704d7d8485190a0a8a931b42n/a