URLhaus Database

You are currently viewing the URLhaus database entry for https://datastatresearch.org/uaha/uaha.php which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:2599927
URL: https://datastatresearch.org/uaha/uaha.php
URL Status:Offline
Host: datastatresearch.org
Date added:2023-04-06 15:41:31 UTC
Last online:2023-04-09 04:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-04-06 15:43:04 UTC to abuse{at}namecheaphosting[dot]com)
Takedown time:2 days, 12 hours, 22 minutes Poor (down since 2023-04-09 04:05:50 UTC)
Tags:755 BB22 geofenced js Qakbot link qbot link Quakbot link TR USA wsf zip

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-04-08Z.zipzip 42f24d175a8d267d26bf7421614829fada4ccf2fa2fe1bb87a0d960a38afb9d1n/a 
2023-04-08Ygw.zipzip 16e9e95e68b5bfebd21fda25f84eb0da4eaecd66ddf4512e70d6de6e17927dd1Virustotal results 3.23% 
2023-04-07Zm.zipzip 472588a7534cd1e7f02b40d061ea42e0052f2ffa7337369cad74531223d824ddVirustotal results 0.00% 
2023-04-07Dddm.zipzip 67cec13ced34f20513309a4611d68e01af3dab457a6bb05330a3ac2969ddae4cVirustotal results 0.00% 
2023-04-06Yf.zipzip bb82c3c429efb005ff73179d4ad86a65d3be63da264f8a6b08106876bcf03eb1Virustotal results 0.00% 
2023-04-06Ydo.zipzip 252e16c8928858d3b0d2d8723f1beb0553d803e010fd09b4245b1e42bdecd2f5Virustotal results 0.00%