URLhaus Database

You are currently viewing the URLhaus database entry for https://drpetertio.com/nmam/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2645895
URL: https://drpetertio.com/nmam/?1
URL Status:Offline
Host: drpetertio.com
Date added:2023-05-30 14:42:06 UTC
Last online:2023-06-01 22:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?):mail Yes (Ticket DCU100124321 created on 2023-05-30 14:43:05 UTC)
Takedown time:2 days, 7 hours, 39 minutes Poor (down since 2023-06-01 22:22:48 UTC)
Tags:BB30 geofenced js Qakbot link Quakbot link USA zip

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-06-01document_E192_Jun_1.zipzip 6e2a0b33e670b2d7185778d320ee3759c4136fb9cb13cb318a795ea9b9b959f2Virustotal results 22.58% Quakbot
2023-06-01document_C460_Jun_1.zipzip 5a88b4ab3698fc7d9e4b03f3a36d34fdf05fea05454cf262c9249cf20849178cVirustotal results 22.58% Quakbot
2023-06-01document_B096_Jun_1.zipzip 677051c707b836620b214972db238a7462b7f46f8993badce5f541b3d4d35375Virustotal results 21.31% Quakbot
2023-06-01document_B941_Jun_1.zipzip 2ee8cc23d87da52d36d0b1a0fe1c12c81b0b0134a04e1abe420d607920163855Virustotal results 20.97% Quakbot
2023-06-01document_D931_Jun_1.zipzip e219b8def9dff479cf3e16ecbf2c999fa5072ced553c3b1a6babefbb74d8974eVirustotal results 20.97% Quakbot
2023-06-01document_A968_Jun_1.zipzip 68e3d7597950cd7ae8a10ac93470268661ec7d1ac73cea6fed4d723df5838709n/a Quakbot
2023-06-01document_A930_Jun_1.zipzip 3e5856cfd29b4798661da53e42fc3b7cc44c228d0141a8c89176d657d8457108n/a Quakbot
2023-06-01doc_C048_May_31.zipzip b316a9e5721b0c4bbc375a8e30cd7709f6b8460c98b456fb75b6c6746d3d65c3Virustotal results 21.31% Quakbot
2023-06-01doc_F921_May_31.zipzip eaa157642118c7c08be8c0189eca0ea8b554f09b91be79a46f24373f814f6a68Virustotal results 22.41% Quakbot
2023-06-01doc_B425_May_31.zipzip dc2f998c3de804f72da5306de40e8336d7a8ee6e027e8d6e3bd376d93743055dVirustotal results 24.19% Quakbot
2023-06-01doc_F354_May_31.zipzip a5bbb51a0fef3daaa39dcf3f1a818671764b1e7198b20badbbe2d11d5f750fd1Virustotal results 21.43% Quakbot
2023-06-01doc_B957_May_31.zipzip 9b03c41b7b01416f06f58b7d4f612819d75b74fdc65fbb74e5ab77f654840e3eVirustotal results 20.00% Quakbot
2023-06-01doc_B130_May_31.zipzip 35f259504a3df4af0b8cd9badf05c3b5914120e3b337dd8ea32a4e2cf7f4eaa5Virustotal results 27.42% Quakbot
2023-05-31doc_D453_May_31.zipzip fb6797414c4cd993334a175a02991b1868132d608339036896aaed6a9cc80124Virustotal results 20.00% Quakbot
2023-05-31doc_B816_May_31.zipzip bf0ee2e6758f13d1136a118f34eb41445ca14d60334d56ea45c9e6e86dd49ed5Virustotal results 22.58% Quakbot
2023-05-31doc_E782_May_31.zipzip 79cb06de30200ba85e838a1d8eab4b932557f870a719bccae3e0705843939c4aVirustotal results 20.97% Quakbot
2023-05-31doc_E206_May_31.zipzip 5179b7924583975f7ea09d3df9ac06b79088963333cb2e50364b80784a6b1e6aVirustotal results 18.03% Quakbot
2023-05-31doc_E678_May_31.zipzip 161db0fa1f7c2ab8d9b5e7f43f8a55b1ed2d888fd22f08dbb16c273e12a12605n/a Quakbot
2023-05-31doc_B804_May_31.zipzip 7af3886da010e365fca2047012f714906fd2dcce5e8c642042afe116c78fb2b6Virustotal results 24.19% Quakbot
2023-05-31doc_B736_May_31.zipzip bf3efd0c156bbd347ed81137e3e8b2921e3e09da362abd43d9dc664e7369cf83Virustotal results 24.19% Quakbot
2023-05-31doc_E023_May_31.zipzip 684256a2e75321dcd7699f6daecfc15bcdc152eb25e34f766cc81c04f8a077aen/a Quakbot
2023-05-31doc_D078_May_30.zipzip f451e2b76271e19c1a6423f134f4e1120e9e0afeda889b5fde918fdc8a2453a2Virustotal results 20.97% Quakbot
2023-05-31doc_E937_May_30.zipzip 05f0c28a2f04ecac802ae3ec7f9eb4f2aeb9ee3c2a17d888f7dd1efc12e6011dVirustotal results 17.74% Quakbot
2023-05-31doc_D275_May_30.zipzip b9b80097876c242100bddc0510713058ee21792beb7715bb79aca8140ff2bf79Virustotal results 19.35% Quakbot
2023-05-31doc_C846_May_30.zipzip d75784b04ceade0b58fe4bbf2be58e57ed42bc36ecd11d4833f845b3a4e85ea1Virustotal results 19.35% Quakbot
2023-05-31doc_A376_May_30.zipzip 9d3eb1ec8dd42b555786e764e9e1dd33fac0c3c5f9a12563d2b10beb970a7610Virustotal results 17.74% Quakbot
2023-05-31doc_C675_May_30.zipzip ac80f0db62512390bcdbcd417fc133aaebeb24367f249908574a33c711100a4aVirustotal results 17.74% Quakbot
2023-05-31doc_D439_May_30.zipzip 5bbebdb22bfb2e532e0a0c3146a1bcdab67e7d4bc8091457e9b518932b9f6b55Virustotal results 16.95% Quakbot
2023-05-30doc_B863_May_30.zipzip 01796538a7a73564c055d57e6189735bff98ca1b5802e1a9658e62bce27e20b8Virustotal results 21.31% Quakbot
2023-05-30doc_C416_May_30.zipzip 216f215820f9db9d24679fdd412e511912134138c37f6d3c8e245ffdf657e4b7Virustotal results 17.74% Quakbot
2023-05-30doc_B953_May_30.zipzip cc67e4cc3a63622812aec76355607e046ed716c11906a97690f0a14bf42c5f23Virustotal results 19.35% Quakbot
2023-05-30Cancellation 583255 May 30.jsjs de7387b3e6f15595826e3e0bb56533e9b57ee37f5e6bba505ce6a43cb6cc5bfan/a Quakbot