URLhaus Database

You are currently viewing the URLhaus database entry for https://essay-ninja.com/octi/porocqsureicum which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:2318702
URL: https://essay-ninja.com/octi/porocqsureicum
URL Status:Offline
Host: essay-ninja.com
Date added:2022-09-28 17:53:15 UTC
Last online:2022-10-22 22:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-09-28 17:54:15 UTC to abuse{at}hostgator[dot]com,eig-net-team{at}endurance[dot]com,jayanathan[dot]muhunthan{at}endurance[dot]com)
Takedown time:24 days, 4 hours, 26 minutes Bad (down since 2022-10-22 22:20:33 UTC)
Tags:bb H322 H436 Qakbot link qbot link Quakbot link TR U425 zip

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-10-18rGocjjCxQspPbrqF.zipunknown df2bfa7618b33b820058d64399025541e5d316373819e3f23901cefe997dca87n/a 
2022-10-11R3545864912.zipzip f3c79232e66b1ec6120935ee7e4faddcce062e4249e4b99142573174a5f23f78n/a 
2022-10-04C2595630131.zipzip b7816252c8c3e5388874be19b09af69faf6ff503e79ff4f99a893e4212b1a468Virustotal results 4.92% 
2022-10-01Card4068106099.zipzip 277b03b716b9451303cb8eb1eca09db441499c5fafe0dc5dd8a4aa39fc4c01f8Virustotal results 3.17% 
2022-09-30P3483458727.zipzip fa0e993bd246cd34c5deaac93a6356d978aa5f64fc089fd0d57f4b13f2c316d5n/a 
2022-09-30UtsCYkzSZ.zipunknown 8e9503ca1c5c78ddf6eba8c62f6fc13d5b06e019bd252db9881aa7203e7612c1n/a 
2022-09-29SnfIiBATRUU.zipunknown 07e244f9a2aea82bcde251375071e53e8a2fc71acc01dfbce309f715a5186d27n/a 
2022-09-29meQySGBmQJSrZygvPSn.zipunknown bb225c56883aef2ac0db2b873b06590b012352b34e1e097ed129f5ed7c8c029dn/a 
2022-09-28iRWkFuQFnOCPIgN.zipunknown a18d2c4efcdc636d1bb28067e311b4177cce3868add07f57e1d09df6e8cd14ecn/a