URLhaus Database

You are currently viewing the URLhaus database entry for https://zambianroadsafety.org/lo/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2646188
URL: https://zambianroadsafety.org/lo/?1
URL Status:Offline
Host: zambianroadsafety.org
Date added:2023-05-30 16:50:30 UTC
Last online:2023-06-01 22:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-30 16:54:40 UTC to abuse{at}hostgator[dot]com)
Takedown time:2 days, 5 hours, 58 minutes Poor (down since 2023-06-01 22:53:02 UTC)
Tags:BB30 geofenced js Qakbot link Quakbot link USA zip

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-06-01document_F320_Jun_1.zipzip 02ab744b53314a67d62c7d12eccbe71bea0431fbc4062b44e2c6c9e61d67ca41Virustotal results 20.97% Quakbot
2023-06-01document_C625_Jun_1.zipzip c336d857a99da59887ffef978c936caaea07d6a7c535ebb6837f838bba3fdb01Virustotal results 23.33% Quakbot
2023-06-01document_A621_Jun_1.zipzip a758fa6bc857ef9c04914f885da07d0bf2e11a90f3bf6a246b1db33a23af98c1Virustotal results 14.55% Quakbot
2023-06-01document_C106_Jun_1.zipzip 7764bef6fa3f06e645f143e6e8c5e5c99da95f3c83e4aa2d341cd4394a4fc673Virustotal results 20.97% Quakbot
2023-06-01document_A540_Jun_1.zipzip 4fa2b805978c6a0e05b14280788a041bfff52ab492f055d47fc32a02f2ec2abcn/a 
2023-06-01document_A302_Jun_1.zipzip 0a9ccb9e729e8874056e68988b013a635ace924b6d008fea758b94be20798caan/a Quakbot
2023-06-01doc_C013_May_31.zipzip dc46084e62899228d075844c4bf21e31d85dbedcf9da0651d1784d16ce420aacVirustotal results 17.74% Quakbot
2023-06-01doc_D715_May_31.zipzip a45ae14af3da6458fe612e635c471b5932c5ed7a6d5cb98d1d07a49b8ca82909Virustotal results 18.33% Quakbot
2023-06-01doc_C490_May_31.zipzip 786832313ba56e9bfb3fce99f9e24f01261278c7da33313c321b54519d8c4a08Virustotal results 21.67% Quakbot
2023-06-01doc_B740_May_31.zipzip c1a85395bd898feb871f88e8a3ac5682bb1ab90280b68644505d1268d6464b4dVirustotal results 17.74% Quakbot
2023-05-31doc_D135_May_31.zipzip 6a9a5bf7fcc019f49fd06a8852183f50979249cb13995bbacfc0fd720af60f29Virustotal results 20.97% Quakbot
2023-05-31doc_F784_May_31.zipzip 9d0909a2f987b896a8e713b3413cbffec8095e61d840c0c27ee59971f6a146afn/a Quakbot
2023-05-31doc_F465_May_31.zipzip e746a66e7a9079aedb4ce3c8fcb8f9873b731fbdbbacaceaf7bd0e084e2bf365Virustotal results 20.34% Quakbot
2023-05-31doc_A549_May_31.zipzip a79e82122a7bb1a339eee6da7101b3fc45e26c6e6b9160d5ccac84223ca04512n/a Quakbot
2023-05-31doc_B029_May_31.zipzip c57289ee8baf78544f3f59ad80a07cddf2872b92b171bdb32a5676bf7dc858ban/a Quakbot
2023-05-31doc_A053_May_31.zipzip 7fc068d1e976d905996bc6327d5df975b273edb4bc2f16db32a5af16f2b64a16n/a Quakbot
2023-05-31doc_D240_May_30.zipzip d0b56a2cbdfedfc16593fcf26d007632e9ed50219cac97c3766645f87d74d382Virustotal results 20.00% Quakbot
2023-05-31doc_E945_May_30.zipzip 7ee724b46314ed21b1947826c84e9a9401862c42209c3b6ca84b0d42d78810d2Virustotal results 17.74% Quakbot
2023-05-31doc_A547_May_30.zipzip c64d17abdf8393c391e26d303c134bf5da2a09927f35e39552375fa64e7f2be0Virustotal results 16.07% Quakbot
2023-05-30doc_E401_May_30.zipzip 265ac681379556a9b9fa9b9cb4a3007920236500b0d7c566daa312fd7bae54d4Virustotal results 19.35% Quakbot
2023-05-30doc_E762_May_30.zipzip 88e9d9c99a59900fb065fbf81e8d76c29dced1d88f06bcd029de86924da28554Virustotal results 17.74% Quakbot
2023-05-30doc_C805_May_30.zipzip 4f75dfd421785423fd352fee5332ec84e265d102ba14dca8d05273b046ce883en/a Quakbot