URLhaus Database

You are currently viewing the URLhaus database entry for https://wallowemb.com/eq/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2645905
URL: https://wallowemb.com/eq/?1
URL Status:Offline
Host: wallowemb.com
Date added:2023-05-30 14:42:07 UTC
Last online:2023-05-30 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-30 14:43:19 UTC to abuse{at}cloudflare[dot]com)
Takedown time:2 days, 7 hours, 33 minutes Poor (down since 2023-06-01 22:16:56 UTC)
Tags:BB30 geofenced js Qakbot link Quakbot link USA zip

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-06-01document_E210_Jun_1.zipzip 9b308ed3e9dd09f0730c8c320739a7fe8a4d893c5279bc99258338a7fb786480n/a Quakbot
2023-06-01document_F102_Jun_1.zipzip 4fa9d2ea3f7981e52ba030eb3011861b6cec3f643b53eb51b5efb55f8248d8a9Virustotal results 20.97% Quakbot
2023-06-01document_C049_Jun_1.zipzip 6db75d1358f6b315c2c54bbe0cfc5d20b7644bde47856e718bbbd954a2b174c8Virustotal results 20.97% Quakbot
2023-06-01document_C172_Jun_1.zipzip 3662c483bbeab0a7a9c335982e3fe5b1a8ee122f041a30b43ce38a189fa9b5bcn/a Quakbot
2023-06-01document_C359_Jun_1.zipzip c2eced4bdbbd1b54e247cdea2e48b68de378d5abfc4e14c438d635e95fba24dcn/a Quakbot
2023-06-01document_A843_Jun_1.zipzip efe1f8f3f58e8e3266d90bb8c372ccba0b3bd4c1335e21c2c280f9f2e95412f9n/a Quakbot
2023-06-01document_E524_Jun_1.zipzip 0b6992e0d048683c39eb3afdcc116cd331302089939f1bf76d54cda852ab4fcbn/a Quakbot
2023-06-01doc_B285_May_31.zipzip dc4bceea65f3abf7437828598325cb027e5b9bd5d33edc8b2371e82a4ac68102Virustotal results 29.03%Quakbot
2023-06-01doc_A930_May_31.zipzip 99432b847ac4011f0717b2d870bb084cfa8e27629f59daffe43927351be383cfVirustotal results 25.42% Quakbot
2023-06-01doc_D128_May_31.zipzip 58a3c9c2e09efcbdfedba8a0cc7260287a49db7eff18e7707f8338cf28879c01Virustotal results 18.64% Quakbot
2023-06-01doc_E928_May_31.zipzip ecb90711b53fef3d96e5f4d9c2fcc0ae78c303d65eb8eecb18b6e498e20aecaaVirustotal results 20.34% Quakbot
2023-06-01doc_E619_May_31.zipzip 745eb82e3b57f293b16f10239d63b132246f6961a2292c8d313ecc71a67cb902Virustotal results 21.31% Quakbot
2023-06-01doc_A459_May_31.zipzip 7967e54a6bec438b212e873903b8efa62d2431b4671e9dd54bc1ba027fd239e4Virustotal results 19.35% Quakbot
2023-05-31doc_B208_May_31.zipzip 0801714901729054a25bf84c91c9e12ee369d89da6175e596cddadca8af3e004Virustotal results 17.74% Quakbot
2023-05-31doc_B243_May_31.zipzip cbe68df7a512d91e419d5bb2ac9c4331bcf8dedca1945fd05ccaf0f1f50ca273n/a Quakbot
2023-05-31doc_E762_May_31.zipzip 23e251d7798d5e46666dea2dc8b50ba8f3dcb830f379266c931f1aae09302f10Virustotal results 20.97% Quakbot
2023-05-31doc_F078_May_31.zipzip 41e1093bae966c809d31f52dfd6407e68673d79d2fd15b1a2fe10eae1bc1a0dan/a Quakbot
2023-05-31doc_F439_May_31.zipzip 03aa1aba9bb878a4c95b0f153c229ab54f3613283163515bd94129c55c57b714n/a Quakbot
2023-05-31doc_D249_May_31.zipzip 7f35bcfe30453e23eb3cb67bbc76821ec6583c0d5ace1e2961388983f08fe138n/a Quakbot
2023-05-31doc_C902_May_31.zipzip 8576379fc29fb72e6e69359f3a5b84e1f52949041a12895b1207096527e59732n/a Quakbot
2023-05-31doc_D154_May_30.zipzip 36a4b19b2feedb1fc0590a894ed1db9a63c85504ad5b520d3e7c83344fa259beVirustotal results 17.74% Quakbot
2023-05-31doc_C943_May_30.zipzip 5720c340128ef434f12b46ee89701019621bfe86a3baeb42c61f54ee29b6c96bVirustotal results 17.74% Quakbot
2023-05-31doc_A826_May_30.zipzip a7057453ffb24ce9f57e289ed7c2424753a6103ba17d14346adb3fdbc558b684Virustotal results 19.35% Quakbot
2023-05-31doc_E784_May_30.zipzip 284bc44fbb7ca4a5addb4f123e7d98bdf108ee2f6e1f7d52739a1dc7814a3a1fVirustotal results 18.37% Quakbot
2023-05-31doc_C469_May_30.zipzip b29ce45faa874ca2ea0086265d533025b64555bec9883b0035c3d8f4bed1ffeaVirustotal results 19.35%Quakbot
2023-05-31doc_B435_May_30.zipzip f4517dbcdd0a1b28b3a5c924dd02a96a4f6d8ae1f01e33771e448c8f52654319Virustotal results 19.35% Quakbot
2023-05-30doc_B629_May_30.zipzip 1127f568bedbb6b89146806b412364860dee8f8278e127cae28bfe5f32476e83Virustotal results 19.35% Quakbot
2023-05-30doc_D258_May_30.zipzip 2095294082c93fc1eb390017280db09481f169c43d61f4c663b7db9aa67f92d3Virustotal results 17.74% Quakbot
2023-05-30doc_B793_May_30.zipzip 2f9854602cdb319162feac2daf5d2fe971a162477b6fdba1ce434b839b420481Virustotal results 18.64% Quakbot
2023-05-30doc_F048_May_30.zipzip 395f85d1b5f6de3090c8ae93975f396a2c651641c7cf0e5348e40e1b62077529n/a Quakbot
2023-05-30Cancellation 600058 May 30.jsjs 03baf99d63fa7254bd9c5a4fbf2c81a346d359894d8a2faecde946fc14c60c7bn/a Quakbot