URLhaus Database

You are currently viewing the URLhaus database entry for https://chinargoc.com/ea/oiseraidm which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:2317915
URL: https://chinargoc.com/ea/oiseraidm
URL Status:Offline
Host: chinargoc.com
Date added:2022-09-28 17:46:16 UTC
Last online:2022-10-17 23:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-09-28 21:04:08 UTC to abuse{at}hostgator[dot]com)
Takedown time:19 days, 2 hours, 31 minutes Bad (down since 2022-10-17 23:36:04 UTC)
Tags:bb H322 H436 Qakbot link qbot link Quakbot link TR U425 zip

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-10-11NE3536141841.zipzip 364f1128478f6dfef12102aa33f9c48b61f5f2facd9277dce35c2adc52e651b4Virustotal results 1.61% 
2022-10-09Co3280989921.zipzip 26bf9e4c627ae74f33e2a052a54b3060214e188d9d0358b7fd4c7f649faaf61cVirustotal results 45.45% Quakbot
2022-10-08R824269190.zipzip 45f9525e72cdb71ac7cd99861a36fc7b1fdcf2a663a78710bcb4850aa12ac004Virustotal results 33.33% Quakbot
2022-10-06Co1873505903.zipzip 18ddfcd380676ecc32406ca15bcf3f66dfcfabbeaf3519c24705ad10bdec79edVirustotal results 22.73% Quakbot
2022-09-30CA2948094318.zipzip 0804b87235aee54d715ef97fdf95977206fbb9b25955502de6b3be979169f765n/a 
2022-09-30Gall3538772758.zipzip 3730bdb5aefac49bc174688041c37820446b3a8e31327e9033e3dda04f1cd887Virustotal results 3.17% 
2022-09-29AccItem4009256757.zipzip 8c5898e416141545c699bf5376ebaa2ac8806d097f71c6a27f4a6389e74a9ce1Virustotal results 3.17% 
2022-09-29G1672022761.zipzip c11be0980264740809c14d69fd2b5de41e12a51ae08f2a190ef5743849b72218Virustotal results 1.59% 
2022-09-28esulicntDe1858279682.zipzip 3aabbb9205ca76d34002b9d8788ace019469c2fb240ac59c4f1d1414afa83dfen/a