URLhaus Database

You are currently viewing the URLhaus database entry for https://konam.ec/is/mrieireippssaiapcta which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:2319799
URL: https://konam.ec/is/mrieireippssaiapcta
URL Status:Offline
Host: konam.ec
Date added:2022-09-28 18:01:35 UTC
Last online:2022-10-02 07:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-09-29 05:13:09 UTC to abuse{at}hostgator[dot]com)
Takedown time:3 days, 2 hours, 19 minutes Bad (down since 2022-10-02 07:32:34 UTC)
Tags:bb H322 H436 Qakbot link qbot link Quakbot link TR U425 zip

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-09-30Post454467517.zipzip 22f2cd47aca8beefe2d0e55890ae62b9cb2be4c26f44407b1247bc9fe3f44192n/a 
2022-09-30Gall362502566.zipzip fd4bc4ab3e8a163626054eac7b048366e68b6aca0296eacd5bbc5b8f553c0465n/a 
2022-09-29G4406753.zipzip 1ae242874d198c3b3d79f834bcb4ae2532037ae6bc2af549df70f434fafeb502Virustotal results 1.59% 
2022-09-29G1316432365.zipzip 404a0e7768372860f8d870f5f4fc894c12cfe8a3ea04054d752426a2a11c5a31Virustotal results 3.28%