URLhaus Database

You are currently viewing the URLhaus database entry for https://dhillontrucking.com/nue/tlunataoml which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:2318393
URL: https://dhillontrucking.com/nue/tlunataoml
URL Status:Offline
Host: dhillontrucking.com
Date added:2022-09-28 17:50:23 UTC
Last online:2022-11-28 23:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-09-29 12:10:09 UTC to abuse{at}hostgator[dot]com)
Takedown time:2 months, 0 days, 10 hours, 56 minutes Bad (down since 2022-11-28 23:06:12 UTC)
Tags:bb H322 H436 Qakbot link qbot link Quakbot link TR U425 zip

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-11-26NcwlyyPw.zipunknown f3bfcb2794843421ec0af96fd029d22624b3bae80d21e9a10146fd3fa65846cfn/a 
2022-11-17sYtYzorXgnrQIq.zipunknown 7f5b87e88f0ef05f78ced46798633770b4f7f1ee6d9791a26b81525d61baa5c7n/a 
2022-10-26esDVviSXRKQkaJ.zipunknown 6337cbbe4d7e841767e1841e09d33f24ed3fd4de8367192358bf23ede969717fn/a 
2022-10-21ITuCY.zipunknown 6a2b78e071207eca2a9e4a620664c2df0e51dd716a4ccb9ac951c0e6a370065dn/a 
2022-10-20ryTWQWwMyxKltGenpU.zipunknown 5f7c7150bab96fc769932facdf84d4948ec962af5304c13face48177ee6caef0n/a 
2022-10-14FGCnlljHDrSKF.zipunknown cfab8345f978a1ad6bca451dc2122730224012da26d24e2053b8ec9ccb62c839n/a 
2022-10-08R2561906745.zipzip 076ca69971e8b68d032d6245aef49360fbe69ff6dd1a902e9c9980ad4a04f7bfVirustotal results 29.69% Quakbot
2022-10-04Co3203582042.zipzip 2932c1542e0f214a35068b1690a9b14c485acd62e5abca85fa64a4062da9cb22n/a 
2022-10-03Card3987798308.zipzip 0bef9fe0b7325e1047f95112722688d8e7ad8d6676538d149951ed1121a27befVirustotal results 3.23% 
2022-09-30P3076667567.zipzip 258fe700278c2855b82ca02c05dae33d3b2530592732d01f703ac13b3ed471c3Virustotal results 1.59% 
2022-09-29G1825332499.zipzip f0db8549de2b51d758ae5129b9a30ca6cc888e78dd1f3460c60f2d66946dbbaeVirustotal results 1.59%