URLhaus Database

You are currently viewing the URLhaus database entry for https://hannahdotshop.com/eao/qccinitmauutausae which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:2334306
URL: https://hannahdotshop.com/eao/qccinitmauutausae
URL Status:Offline
Host: hannahdotshop.com
Date added:2022-09-30 21:07:09 UTC
Last online:2022-11-29 20:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Status unknown
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-10-01 06:38:15 UTC to abuse{at}hostgator[dot]com,eig-net-team{at}endurance[dot]com,jayanathan[dot]muhunthan{at}endurance[dot]com)
Takedown time:1 month, 29 days, 13 hours, 36 minutes Bad (down since 2022-11-29 20:14:43 UTC)
Tags:bb Qakbot link qbot link Quakbot link TR U492 zip

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-11-19okOSXxYrPmVJqpnWj.zipunknown 1c0af87e651e4bd35756dc85c2a9d5a88a824c5484c747651dbac2ba62eaeeacn/a 
2022-11-16AKwyI.zipunknown fca743bf6438cd92c9a1415be14625d8cb66c5cad867f8b8c2305d339263bcc0n/a 
2022-11-02GstztefhFrljUqYyr.zipunknown 386fc0d26696209958eb25eed32860b9076ebfe184ec3623236319076605485bn/a 
2022-10-30jyteAcUJVLTAN.zipunknown 885757c73ba798af4078e01014dd808de40c5f8219f39c36e4720e945820a82en/a 
2022-10-15sDAsHu.zipunknown 95fe2f55ea8685416683b9d0dbefe1922f4b1a0baad9a9e52bbf13bba8f62a70n/a 
2022-10-13HdPD.zipunknown 71c5d10d7c63c385a30749678f6a044833294c163c70878be9063b94210d5169n/a 
2022-10-09Co668790543.zipzip 6edad01e8b6d45f0ce0b92df70223741e402fbfe0f7a59ec86d0800e78e973adVirustotal results 43.94% Quakbot
2022-10-04Teentruebaaet4247030842.zipzip 3e514f0c049de549c8497a4fba0f375064bd354b51d5e2ee6e9ee51ec5a1f078Virustotal results 4.76% 
2022-10-01CA2120533687.zipzip d6a6f704d47494dfc1a869798d34f77980308c5786407e3d75b3fdece422ce43Virustotal results 3.23%