URLhaus Database

You are currently viewing the URLhaus database entry for https://chinargoc.com/ea/squmpaiai which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:2317939
URL: https://chinargoc.com/ea/squmpaiai
URL Status:Offline
Host: chinargoc.com
Date added:2022-09-28 17:46:20 UTC
Last online:2022-10-17 19:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-09-28 22:12:06 UTC to abuse{at}hostgator[dot]com)
Takedown time:18 days, 21 hours, 23 minutes Bad (down since 2022-10-17 19:35:50 UTC)
Tags:bb H322 H436 Qakbot link qbot link Quakbot link TR U425 zip

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-10-11O_1515832453.zipzip eaabf4cf87579ebb13c261968ac1e1bd57f5156ea8f8b5bde27ee6c4cf99fc60n/a 
2022-10-05R3867454373.zipzip 3d0f9a8e5611c834afc38a000e09ec24a8edf772b30de56b087cb2a7d8e49bc3Virustotal results 3.23% 
2022-10-03Card680708798.zipzip fbb6bc0169744baa93e121e0bd9310b1ebafcaebe0b91d9f427547bbbca18da7Virustotal results 5.08% 
2022-09-30P4144945619.zipzip b03c603572f27b7de88722f5fd71b24028e49751c15a96e694acc2aedcef184fn/a 
2022-09-30G1505087632.zipzip e77351e35161d47730764e795cdb6348e81f521a6a37b46873fdfd7ad3cacd4dVirustotal results 1.59% 
2022-09-29Gall3372792882.zipzip a78383f6030d5b6c190968f70b27a126ace5a49d3c798ec7d7ac5d8768a1f266Virustotal results 3.17% 
2022-09-28Gall3290828322.zipzip a3511f285816dead9bb08b5ca9d2c7703d75f646e897703941d231255b3b3f12n/a