URLhaus Database

You are currently viewing the URLhaus database entry for https://casadabateria.com/lm/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2646217
URL: https://casadabateria.com/lm/?1
URL Status:Offline
Host: casadabateria.com
Date added:2023-05-30 16:50:32 UTC
Last online:2023-06-01 22:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?):mail Yes (Ticket DCU100124439 created on 2023-05-30 16:51:39 UTC)
Takedown time:2 days, 5 hours, 21 minutes Poor (down since 2023-06-01 22:13:36 UTC)
Tags:BB30 geofenced js Qakbot link Quakbot link USA zip

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-06-01document_C645_Jun_1.zipzip 234727b5b9d84197d79d6bdcbc1d5b177970da1c20438e26980894922c418e02Virustotal results 22.58% Quakbot
2023-06-01document_B598_Jun_1.zipzip 16bd09f0e8aed0efea30bbdf70ca343074815010ffdee3ec3eef5fbbaf64ae73Virustotal results 20.97% Quakbot
2023-06-01document_E297_Jun_1.zipzip d37e8c6a911410629506d2376defb682cac11f2722743fc0f2a30b84b0cf5209n/a Quakbot
2023-06-01document_A513_Jun_1.zipzip ffaf3f6ac82d4f11d8d2dfa1ab4e08ea9d8029c842caccfd05bef63c7933d138n/a Quakbot
2023-06-01document_C821_Jun_1.zipzip 92d3b776a015eb53af3c9881767dcc41853042b6e679e5bb31198e18e06b7612n/a Quakbot
2023-06-01document_E235_Jun_1.zipzip d1bfc9018d88d104af4b6efd446a52cfcef6cdb1f21ddecf5b62400d6087958an/a Quakbot
2023-06-01document_C568_Jun_1.zipzip 630040def98e9ea1c59d73a48705698bfd0966574c2876e7133b8f0bdf5d3c6an/a Quakbot
2023-06-01document_B162_Jun_1.zipzip 8f683a73d385051d1c9acee88c4c46ba1572bca71ac26158dc95ac62af6ee647n/a Quakbot
2023-06-01doc_F758_May_31.zipzip fd8a0e7249db7479bdfa187e10599f71eb307f6542a3092ac511156abd1e19a2Virustotal results 19.35% Quakbot
2023-06-01doc_A690_May_31.zipzip 7eeacfbc9d34b58c9ff0a0b0c9ab19c5e810f9c67144a689db34ffa589a75234Virustotal results 19.35% Quakbot
2023-06-01doc_F468_May_31.zipzip a6c56d9174cabbca44d40dafad3290cbd98eb3edf0b7c2ea82039c127aa713e7Virustotal results 25.00% Quakbot
2023-06-01doc_E587_May_31.zipzip 0a3e7f461ee5e0596a2141e13d63fb928a97b872f7d8e83e378939553a4a06dcVirustotal results 21.31% Quakbot
2023-05-31doc_E629_May_31.zipzip db0636ae9936f3e97f535bbe8c980941350f3b87a34adfb1e10f1511c64aa986Virustotal results 17.74% Quakbot
2023-05-31doc_D932_May_31.zipzip a8d2f5d1776257172ed0b3e360aafb7176c1634ff03e74c529c881553a0949e3Virustotal results 17.74% Quakbot
2023-05-31doc_E904_May_31.zipzip 6ea1a1d9af802fb57f5721ca94917df871b3289f84c37e4c5da7517ed2be27cbVirustotal results 19.35% Quakbot
2023-05-31doc_D973_May_31.zipzip 2d3c167d8e11166072654824271439eb021a7ad07a01e9031c10cdbd14991f72Virustotal results 19.35% 
2023-05-31doc_F479_May_31.zipzip d48211932b093685c82451cd14e6b4ec721e59e9062c9fc28a371088e2ce413fn/a Quakbot
2023-05-31doc_C604_May_31.zipzip fe5310299d7de553676582859664c960bee1c270c388959a7b46324d4cc5efc0Virustotal results 20.34% Quakbot
2023-05-31doc_D081_May_31.zipzip 7fac309787bee62ad12518cc17d542558852ffbde4546fd237e3bd049e00045bn/a Quakbot
2023-05-31doc_E634_May_31.zipzip 74bfa74031c9c51a187420e8ef4b1a192f04fb84bac893266997772521f57ea1n/a Quakbot
2023-05-31doc_B028_May_30.zipzip 2081583aa8befdd03ad9b25940be9aa911b6e692a26128226bf6719f98cae079Virustotal results 20.97% Quakbot
2023-05-31doc_A693_May_30.zipzip c3333833e279f23696314f06a9fb08229b2f010ed379c8ce8d14d07742e28cc4Virustotal results 19.35% Quakbot
2023-05-31doc_E134_May_30.zipzip e106d10ee0ce9f3f241f0cec3ca7d0ab7511832aee4862709731e0d6992e3edaVirustotal results 21.67% Quakbot
2023-05-31doc_E781_May_30.zipzip d31f729ede01b59b4bd0c0cd2a28bbbadb5ebf0c9f62be55b27bf3640a9343a2Virustotal results 20.00% Quakbot
2023-05-31doc_B079_May_30.zipzip 4c95a351730c5e5653d6a6da53fe8c4c51d06cb8d83d237d75af8ece302dc473Virustotal results 18.03% Quakbot
2023-05-31doc_E592_May_30.zipzip 8a2d1ca78d0a4fcffd21564cf4c7f5227c30e8b35d9ab72c75dd3a2e6a8367a1Virustotal results 19.35% Quakbot
2023-05-30doc_B342_May_30.zipzip 0eab347792df472d6416a98e2681062009716debdea349586cdd3ceb3d38065cVirustotal results 17.74% Quakbot
2023-05-30doc_C519_May_30.zipzip b2c38a094a15a0373a3018c92b40ae7f7a1f675e15f8345fb6256293a05aa81en/a Quakbot
2023-05-30doc_D039_May_30.zipzip 3bcf2b4098dc6eba540097f62a3deac8b676cf036b55453a6e504648e6cdd397Virustotal results 19.35% Quakbot