URLhaus Database

You are currently viewing the URLhaus database entry for https://wazfnee.com/oi/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2646100
URL: https://wazfnee.com/oi/?1
URL Status:Offline
Host: wazfnee.com
Date added:2023-05-30 16:50:18 UTC
Last online:2023-05-31 02:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-30 16:53:23 UTC to abuse{at}cloudflare[dot]com)
Takedown time:2 days, 4 hours, 6 minutes Poor (down since 2023-06-01 21:00:12 UTC)
Tags:BB30 geofenced js Qakbot link Quakbot link USA zip

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-06-01document_E658_Jun_1.zipzip b09295c5ed8c82a1d3c7e1d328a38e0b11916af5cfceaa30672caf195c225f23n/a Quakbot
2023-06-01document_C347_Jun_1.zipzip eae4efd3d03069cf187662d95f4359d55e1b242602547d9ad51274d0e9bbe7d4Virustotal results 20.97% Quakbot
2023-06-01document_F184_Jun_1.zipzip 818afe732348d1191052708f8127dc7f2fc3007b6a00cfbac7c1573a8bdae0c2n/a Quakbot
2023-06-01document_C506_Jun_1.zipzip 1df0776532f023f00ae0f40618cfa01c874a2c3597538d0252147011ff4ff55an/a Quakbot
2023-06-01document_E724_Jun_1.zipzip cde6c6ebe09f4511074e41630f9c2a3ecde94281247f07da690de9c2d5f8b376n/a Quakbot
2023-06-01doc_C920_May_31.zipzip 091b58511fa80b0cd12e8b471ffb0dc51cad0135977e617fdbf9aa87a8d2d2bbVirustotal results 17.74% Quakbot
2023-06-01doc_F561_May_31.zipzip f9a4eacf4a6388a19c59b8d7ea1c691fe492429bf475eae090d0b7fd662bbf5fVirustotal results 25.81% Quakbot
2023-06-01doc_E275_May_31.zipzip a8ab492574e069b0c7166e569395fc44d952f49eaf4d17bf8e7d0e72e3dbd480Virustotal results 25.81% Quakbot
2023-06-01doc_E170_May_31.zipzip 0ae9e5f9d970d493ac2291f94e84a40b5a8beceb209aeee55609e06ec27b7fa5Virustotal results 19.35% Quakbot
2023-06-01doc_E752_May_31.zipzip 1b7212fd30c2e3bfdf84536a7ffe756b0462860d00e2d2b066fa55b8400bc7a9Virustotal results 17.74% Quakbot
2023-06-01doc_A824_May_31.zipzip 60289159c2c2311791c078276b634b16192e733a2c88097fcdf4e586f8be887aVirustotal results 24.19% Quakbot
2023-05-31doc_E368_May_31.zipzip 17677c211f0734014909cc10ff2bbbff08040b40e221ce3ae0b2ca7c5213b437Virustotal results 20.97% Quakbot
2023-05-31doc_F368_May_31.zipzip 066c9b00d05b5a6caca804775e94ff0e10d7cce31d4a48cb88f22ee1aab45ec6Virustotal results 17.74% Quakbot
2023-05-31doc_B130_May_31.zipzip 35f259504a3df4af0b8cd9badf05c3b5914120e3b337dd8ea32a4e2cf7f4eaa5Virustotal results 27.42% Quakbot
2023-05-31doc_D973_May_31.zipzip 2d3c167d8e11166072654824271439eb021a7ad07a01e9031c10cdbd14991f72n/a 
2023-05-31doc_A826_May_31.zipzip 3424a79769fa1d3a3d4af96955dba993ff6844b51423aec419a36ec42989997en/a Quakbot
2023-05-31doc_A586_May_31.zipzip 1a46c4843b314b708b71ee767d63226e8f2ea5c890f29566da05fbd7c1edc4d7Virustotal results 20.97% Quakbot
2023-05-31doc_C712_May_31.zipzip 653520f3472ee8860d1ed161bbf3e00091edf0bad43f907ab0542cb7b602337en/a Quakbot
2023-05-31doc_E109_May_31.zipzip 5fe8697411b0f3e25efb47797c238227a6826d37d5edfcab96782444f73ec544n/a Quakbot
2023-05-31doc_C172_May_30.zipzip 5ad4425902fe306c877b93f1fe12c2c1186a2c35cd49bcc9d89353c865d32861Virustotal results 19.35% Quakbot
2023-05-31doc_A173_May_30.zipzip c2292466ea568bbfff4a94888fea4db23bf557c07de35dfbefd908fc7705839cVirustotal results 20.97% Quakbot
2023-05-31doc_C740_May_30.zipzip 2e0fc586b53a6ee3ff80c93449d1ebe189d487585b01577f91cfd1e46fb97d20Virustotal results 17.74% Quakbot
2023-05-31doc_B162_May_30.zipzip 03f525bd9d31fb34668135f53ae10803faac06942d153d866b6f9d1ee99211e6Virustotal results 21.67% Quakbot
2023-05-31doc_A751_May_30.zipzip b345b61adea43fb0ce27cc7f82c7c87c1031e2bbabfe8fe347d6e60b0200e3d6Virustotal results 19.35% Quakbot
2023-05-30doc_C130_May_30.zipzip 0069622a5ec236231de79f787b49ab84e6d86cb531b44fbb02d8635dcda3f6e5Virustotal results 21.67% Quakbot
2023-05-30doc_D761_May_30.zipzip 9321f113c9248e8a01dcd9547ae7b5160c10de0669d2ffab1ceaa3a5be533a00Virustotal results 18.03% Quakbot
2023-05-30doc_B274_May_30.zipzip 70adaaf9bbadc874068001ece7328479e40a8457405e66eb85083d3dd8d4d55fVirustotal results 19.35% Quakbot
2023-05-30doc_B836_May_30.zipzip 94512a5cc912a842ccd99bb914712c8f200a67384544cb68fbf25672652df0e1Virustotal results 19.35% Quakbot
2023-05-30doc_C310_May_30.zipzip beb1c6fc50fed2ceb289ae326fbf8ea8afa95fab6603c2051f4c994b5720bac3n/a Quakbot