URLhaus Database

You are currently viewing the URLhaus database entry for https://eafricadominicans.org/mruo/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2645775
URL: https://eafricadominicans.org/mruo/?1
URL Status:Offline
Host: eafricadominicans.org
Date added:2023-05-30 12:09:45 UTC
Last online:2023-05-31 23:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-30 12:13:20 UTC to abuse{at}hostbudget[dot]com)
Takedown time:1 day, 11 hours, 9 minutes Poor (down since 2023-05-31 23:22:55 UTC)
Tags:BB30 geofenced js Qakbot link Quakbot link USA zip

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-31doc_A013_May_31.zipzip 221fffbe07202c57270afb778fb565959a113f666f41684571079b7d19c773a8Virustotal results 19.35% Quakbot
2023-05-31doc_F947_May_31.zipzip 591c895c92fdb121be2d6241d49c195445d666d8f6f31267a47d22a06916c52eVirustotal results 19.35% Quakbot
2023-05-31doc_F461_May_31.zipzip 9179475dda9c6bf70b3d0f47606792b99c4c75961af0c1995e0b803144e6203fn/a Quakbot
2023-05-31doc_B046_May_31.zipzip 45d49b987b009dc6343df68ef30fcd5b09f74eb54069f6775cb6065f0b9ce0d7Virustotal results 22.58% Quakbot
2023-05-31doc_B058_May_31.zipzip 2dbdd34b36db93af206ede13960a316d9a9422310623aafe213c60285d721101Virustotal results 22.58% Quakbot
2023-05-31doc_B926_May_31.zipzip 0927212a4ce6f60ea227c0822d8013077081be80459f7f5363085daaa0fd2409n/a Quakbot
2023-05-31doc_D725_May_30.zipzip 3a0c4619afb1951b48aaaa01b495d9d45e0d815265d237b1a1e4cffffc4cc246Virustotal results 17.74% Quakbot
2023-05-31doc_C346_May_30.zipzip bb54aa6af05b859306ab92446f1087e7f1537315ed25871d1fd098219d611eb4Virustotal results 18.33% Quakbot
2023-05-31doc_B586_May_30.zipzip 377e251d96d41b30c38e33dac29936ebf4bae7644aff04647eddc932eb79dcc2Virustotal results 20.00% Quakbot
2023-05-31doc_A537_May_30.zipzip cf2146c74403b6114f40ce76afb8aa86d8b0e0aace35380cf50757a5ff9e6205Virustotal results 19.35% Quakbot
2023-05-31doc_E719_May_30.zipzip 03a4ca6d893b21bef6aec3feeea72253b454183c752eec60fd83aab7fce3bdb6Virustotal results 17.74% Quakbot
2023-05-31doc_E017_May_30.zipzip 7b212476d346fc37847c81b6663009459f830019126e181bfd262308c386f002Virustotal results 17.74% Quakbot
2023-05-31doc_F820_May_30.zipzip 7125d92567935fb4de9a20a1b5d81904ef51ebe333fae3e67037586f3b6043ccVirustotal results 19.35% Quakbot
2023-05-30doc_B849_May_30.zipzip a767b8f8f5634e13e2bf63af0fd16ad9b87a6cef6ef5e5926c922403054dbeabVirustotal results 19.35% Quakbot
2023-05-30doc_C712_May_30.zipzip e6a6393f2c990994520985539c37993df49b222751683635321c17536614e76dVirustotal results 17.74% Quakbot
2023-05-30doc_F915_May_30.zipzip 57b2d7d1daec4865a3f58737911137e668952e42b8e9619e2d767fc84b7a350eVirustotal results 16.07% Quakbot
2023-05-30doc_F461_May_30.zipzip 557290fdb24b48d7bb571f0a1e843ad6634e1f233721d0fed8ac3781058ffc69n/a Quakbot
2023-05-30doc_D389_May_30.zipzip 66169169ca4218ea6b13afdd449affc8ba70648b44230dfa39be76331b7c655bn/a Quakbot
2023-05-30doc_F832_May_30.zipzip cd7f03eeccb9707209c2ffd07a09a60931c367c245c768f488e25b3f7e6be514n/a Quakbot
2023-05-30doc_A361_May_30.zipzip b32e6bb278605fb2928870a8e6f49389305e365f64c24444ba65d0a9b3cb303en/a Quakbot