URLhaus Database

You are currently viewing the URLhaus database entry for https://hannahdotshop.com/eao/quisatu which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:2334482
URL: https://hannahdotshop.com/eao/quisatu
URL Status:Offline
Host: hannahdotshop.com
Date added:2022-09-30 21:07:34 UTC
Last online:2022-12-02 13:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-10-01 16:27:11 UTC to abuse{at}hostgator[dot]com,eig-net-team{at}endurance[dot]com,jayanathan[dot]muhunthan{at}endurance[dot]com)
Takedown time:2 months, 1 days, 21 hours, 25 minutes Bad (down since 2022-12-02 13:52:49 UTC)
Tags:bb Qakbot link qbot link Quakbot link TR U492 zip

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-11-27iZwSUAMkbe.zipunknown b904fb07c2f57b7d7017c0f18bdc21307e96828113cbaee5b123e893fe9c27b0n/a 
2022-11-24PDPoebhnxXRZwZn.zipunknown fe3d27197873c2e03eee2defd3c146bd259ac1123cde6cd67634699b5dab964en/a 
2022-10-31AubkPEtUgKGGYZbASy.zipunknown 37f152ccc8fcb27905c10566ba079ae44bad55baef82ecc8ad492000022b6a33n/a 
2022-10-28aNzNeNwBAJHrVBw.zipunknown b89a80cf4ad7bccf36ff5a6fcf8ad233de50c97ea075143cd85707a7953408afn/a 
2022-10-18OzXOdMyySECTDzkw.zipunknown 03cee70c9c9de97e60d47c5c77d07c9bf3bb0452b14189b5dd767c5d6c5bda08n/a 
2022-10-14iFucWVzZFVuqtbdK.zipunknown 93f324ae8bf0145ae51571ffe749b78ce59cb4a6129205e475928640d646909cn/a 
2022-10-08R4069326502.zipzip f671fcb2037cab0ac203d82461921186d954d8464be5bb3f48f00c7ed4bc69edVirustotal results 47.69% Quakbot
2022-10-01CA3546614495.zipzip 29ac5b0e5ba65cfcada6d1b40463bb9fd889b1da9a31f5a6bb66163f2bdac096n/a