URLhaus Database

You are currently viewing the URLhaus database entry for https://hannahdotshop.com/eao/efeicgalednire which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:2334393
URL: https://hannahdotshop.com/eao/efeicgalednire
URL Status:Offline
Host: hannahdotshop.com
Date added:2022-09-30 21:07:21 UTC
Last online:2022-12-01 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Status unknown
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-10-03 11:21:11 UTC to abuse{at}hostgator[dot]com,eig-net-team{at}endurance[dot]com,jayanathan[dot]muhunthan{at}endurance[dot]com)
Takedown time:1 month, 29 days, 9 hours, 59 minutes Bad (down since 2022-12-01 21:20:35 UTC)
Tags:bb Qakbot link qbot link Quakbot link TR U492 zip

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-11-27iMhfImdJySfblJMt.zipunknown 06ba0a6f16231f0797557b991f201a60935b39b568270939099f976952d1ebfdn/a 
2022-11-23NszLXKGyaMSMOUfr.zipunknown 5191a75fdbd4ec04ad187c71497ba9fa32cb7925a6298a75ff2a9a99c0eecc68n/a 
2022-11-18GeXhfiZfZpXPD.zipunknown 4de770e0769fe1acf8f0e36197fd15f848dcb8fbd228975442852349ce6bcc1fn/a 
2022-10-24DutkhmbU.zipunknown a965797a40254500b113544ccb532d90de89cdccbc1771247e57bbafea54561an/a 
2022-10-21KTpMZAISi.zipunknown 91e78a213128d9c36ff67cc7ae0bced046f838605adc15af41b456035f55f6b2n/a 
2022-10-15huRodYgLZjulEnh.zipunknown de3724d9c3ec84dea80c417d9dfce50f9c19fe253e301994c971d27ea0f4f17an/a 
2022-10-09Co2609923112.zipzip 44958a993cca493ed2248774b54b412e792674e960fb0c3ad018f8f8f2fe5fc6Virustotal results 45.45% Quakbot
2022-10-05CA3500073460.zipzip 4b7a5ea5a8c04e87ba0c30128da1507e0678738c54e3dd4736fba28b837bef75Virustotal results 4.84% 
2022-10-03C2684299101.zipzip 46d108d8ab99524da3b4d521ae6f53b3f7531996a777e3337b0fc0cf044b8b97Virustotal results 3.23%