URLhaus Database

You are currently viewing the URLhaus database entry for https://ramqprofessionnel.com/ms/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2646499
URL: https://ramqprofessionnel.com/ms/?1
URL Status:Offline
Host: ramqprofessionnel.com
Date added:2023-05-30 16:51:03 UTC
Last online:2023-06-01 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-30 16:59:06 UTC to abuse{at}hostgator[dot]com)
Takedown time:2 days, 4 hours, 47 minutes Poor (down since 2023-06-01 21:46:20 UTC)
Tags:BB30 geofenced js Qakbot link Quakbot link USA zip

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-06-01document_D924_Jun_1.zipzip 31fbdce596d1dfa1ed963a75e5ca7e2a1eb8cb0f8a2aca207f2c050483d9d2b0Virustotal results 19.35% Quakbot
2023-06-01document_D938_Jun_1.zipzip 3fcfcb6d4ca2ca1eab58464476e81e254f9cb6598b341099a209f872c1687393Virustotal results 20.97% Quakbot
2023-06-01document_A495_Jun_1.zipzip d3e27d5c7c2cab00ca52ad54140e4dae2e9accf07f10396a678ce05e76cbd243Virustotal results 19.67% Quakbot
2023-06-01document_D415_Jun_1.zipzip 0dbe8a39a1b10a657978addec47d28ec5db716ca08ae1dbe033e1eab1b91360cn/a Quakbot
2023-06-01document_B408_Jun_1.zipzip fe2b82631a3beac427781c54b8912840631f0434ea76416aa5733fe8eba14258Virustotal results 22.58% Quakbot
2023-06-01document_B267_Jun_1.zipzip df97368ea488198d21637fc1f58801d2a245447d516ce78f82cd50b862f22356n/a Quakbot
2023-06-01doc_B350_May_31.zipzip 68569b100cf6cbbd44d614d82ecbc8a1d2a5a089df5eb5382ac59abe8704c031Virustotal results 19.35% Quakbot
2023-06-01doc_C862_May_31.zipzip 6a72e71d2ace5e6b8d039359f2f2692ed98fd482d2e992a714ea0882d1914033Virustotal results 5.00% 
2023-06-01doc_E497_May_31.zipzip d3c99f7b927cf3869fce631999af17ce98ad68c8224ec0bc09a9b30481551574Virustotal results 24.19% Quakbot
2023-06-01doc_D921_May_31.zipzip b15e849843155ab9e00c12b0655048e693876dd112e809c590911956559b3b92Virustotal results 17.74% Quakbot
2023-06-01doc_E197_May_31.zipzip d229aef15eeccd49ee83da3890b001a2f61cc1bb80da86b83db075c4b6bc4f4aVirustotal results 17.74% Quakbot
2023-06-01doc_E713_May_31.zipzip 2424f5c885b088c16a01113f62814b53b44b268f08811291cbb07836e8f3ecdfVirustotal results 20.97% Quakbot
2023-06-01doc_F461_May_31.zipzip 9179475dda9c6bf70b3d0f47606792b99c4c75961af0c1995e0b803144e6203fVirustotal results 17.74% Quakbot
2023-05-31doc_E543_May_31.zipzip e445f4f65444e05c686dd2d1d5b02d8d489fd669b30c8e6310203f3ea86a8e6eVirustotal results 21.67% 
2023-05-31doc_F357_May_31.zipzip b950519c15ae900aca4d9ec301dd40551ed4c7490101e6a99a83d6834490e707Virustotal results 17.74% Quakbot
2023-05-31doc_E971_May_31.zipzip 40922fc4238f86f777ef4a7c1a6e1dced7d7bc31faad59a85d2e35d3dc5d66aeVirustotal results 19.35% Quakbot
2023-05-31doc_B859_May_31.zipzip 71dbdbd58750ffa52ab1e322d0edd1210d23d02d05084d34dfc8b1da1681a1c8Virustotal results 19.35% Quakbot
2023-05-31doc_C735_May_31.zipzip b0622a088e3b8b9f4020f9a900e58788d5adc151764454ac9923beda2ebad0cbn/a Quakbot
2023-05-31doc_C851_May_31.zipzip f3c8a7b6b8cb7fbc9ee04f04e96e117aecfbf96d8191c4e31813c3035d47c66fVirustotal results 22.58% Quakbot
2023-05-31doc_B869_May_31.zipzip 023361ae3aadd6ab0f38292c2b4e691cd1decc93e0f0c6630476af831d7e8e36Virustotal results 23.33% Quakbot
2023-05-31doc_E276_May_31.zipzip 7ce68088ee47a976487dda2f816a17fce9194079f404e804757bfa1ea79de369n/a Quakbot
2023-05-31doc_C821_May_30.zipzip 45b711ea457626fb07013729d19c9521be13d9cc9ce901a08a4a32066ee0aea1Virustotal results 18.03% 
2023-05-31doc_A567_May_30.zipzip b8bfa047aec6b5da4cc18900f94264954132f30ffc43762bee24a7651f974869Virustotal results 20.97% Quakbot
2023-05-31doc_B907_May_30.zipzip 561dcf584b0f1395357af7aad34952da510a2a7bbb21277514923c9f976e4bddVirustotal results 19.35% Quakbot
2023-05-31doc_B415_May_30.zipzip 9ca4ab5c1f75b22b07ca8566d0e150700ce09d80360bdc21e7c2995198011dbaVirustotal results 17.74% Quakbot
2023-05-31doc_C712_May_30.zipzip e6a6393f2c990994520985539c37993df49b222751683635321c17536614e76dVirustotal results 17.74% Quakbot
2023-05-31doc_D842_May_30.zipzip 2a7aa30f77be58519605c0afd663a232151e39d72df6cec3f4104eda861bbfbeVirustotal results 19.35% Quakbot
2023-05-31doc_B720_May_30.zipzip 1bfc763774541cf04f29dd93419dfe7a8f153b039bca523405b88afaf8acdaa7Virustotal results 19.35% Quakbot
2023-05-30doc_D165_May_30.zipzip ba7dc882aa2021cdc210f24164859289ace36cf6b05e84700756c49dc2c9551bVirustotal results 17.74% Quakbot
2023-05-30doc_C109_May_30.zipzip 0c6e968f2b954540ea3cda66cf4f86978f0895ddb6b2d4bef005d48e6a991a2cVirustotal results 17.74% Quakbot
2023-05-30doc_E039_May_30.zipzip 8c14fae486116e0b745bdbac2cd92588bcfc61eb33e08b368e47030669cc7095Virustotal results 20.00% Quakbot
2023-05-30doc_A463_May_30.zipzip ca2fabf9e00e2607f4a51645f71378f36f90e978120dadc736766892f7201b76n/a Quakbot