URLhaus Database

You are currently viewing the URLhaus database entry for https://goldeneyetoken.com/ds/aspeai which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:2319190
URL: https://goldeneyetoken.com/ds/aspeai
URL Status:Offline
Host: goldeneyetoken.com
Date added:2022-09-28 17:56:29 UTC
Last online:2022-10-29 23:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Status unknown
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-09-28 17:57:20 UTC to abuse{at}publicdomainregistry[dot]com)
Takedown time:1 month, 1 days, 5 hours, 55 minutes Bad (down since 2022-10-29 23:52:51 UTC)
Tags:bb H322 H436 Qakbot link qbot link Quakbot link TR U425 zip

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-10-23zDilAyJk.zipunknown 3ca393f0128ec5c65d1c5214715e316e6cc3750278860a14808c80d0d7764ba7n/a 
2022-10-15zaonvFLtBNtf.zipunknown 12f83820b4d57faab2781c3a5964ce05d2465664713fdc9889bdf46ffd2ae8d0n/a 
2022-10-09Co1995250980.zipzip e754a27a7401ca229ae77e15c301a02d95f30632f6e634d8281ddc141c97b975Virustotal results 51.56% Quakbot
2022-10-03CA4048104205.zipzip 10f69a8be1d74ad65b76a7e1e044a5ed4ca17f452c6f9176db0de90110d26353Virustotal results 1.64% 
2022-09-30P3449674491.zipzip 8089a764011e26b8b7f58ef33395b2ea8c30d063824ea34fe2dc05c708c239efn/a 
2022-09-29Gall2282214755.zipzip 387707c0aa6c9f791ea5bbb5afd67ca4f661e4efeb34e55e91d9df51f5df282en/a 
2022-09-29XxlJBXyLrsFpIG.zipunknown abd638839f027027a3a05ad7de995c97e7819784486a249bbe7e2455ed85c795n/a 
2022-09-28pojxaoBEsyjqsGIdLy.zipunknown ab90e6943be18ceed0be8861b461dbde816ec79a72c28156a8bb8c4e07bc276an/a