URLhaus Database

You are currently viewing the URLhaus database entry for https://xaydungmtcons.com/peca/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2646864
URL: https://xaydungmtcons.com/peca/?1
URL Status:Offline
Host: xaydungmtcons.com
Date added:2023-05-30 23:38:09 UTC
Last online:2023-06-01 22:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-30 23:39:07 UTC to hm-changed{at}vnnic[dot]vn)
Takedown time:1 day, 22 hours, 42 minutes Poor (down since 2023-06-01 22:21:24 UTC)
Tags:BB30 geofenced js Qakbot link Quakbot link USA zip

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-06-01document_A142_Jun_1.zipzip dbb3a53716adf6249aeceab37bc9c940f3261b7bb4bb769cce36d9cdf17fac67Virustotal results 22.58% Quakbot
2023-06-01document_F086_Jun_1.zipzip 78a3f66aeb8cf20f6f5982889773269c18e664dd3b60c9b136b7986d52ac921cVirustotal results 19.35% Quakbot
2023-06-01document_E950_Jun_1.zipzip b4ca86f4865c3bf585d4cb406d9b4d9190991c20e1af0943b6da6a74d3d40c9bVirustotal results 19.67% Quakbot
2023-06-01document_E690_Jun_1.zipzip 216db4382c3b7ad66abcc78bee2281121e82d15cef5a5505268a19463242b9fen/a Quakbot
2023-06-01document_E427_Jun_1.zipzip d3910eb2b2da8c2850fb837d69ebda0f1e36475ba96f748f56bd896a70c1ef1en/a Quakbot
2023-06-01document_E254_Jun_1.zipzip 0d94cbf03a55addee6f47ff64c53a6c55079e2caa8ed52db2db098678b158e11n/a Quakbot
2023-06-01doc_B310_May_31.zipzip 084836211e800c5c0af80b202610f145b8146d0933a4eb0a66263e836da1cdeeVirustotal results 20.97% Quakbot
2023-06-01doc_E190_May_31.zipzip 373c496bab4b9dd8f304b29ee49f0eeb3a7e8edb165d567e5736c9fcc5c32100Virustotal results 18.03% Quakbot
2023-06-01doc_A932_May_31.zipzip 85fadd40abd5f7a72810a2d81482e3d5e916af147be9bd4c53274a987ba7cf40Virustotal results 20.97% Quakbot
2023-06-01doc_F561_May_31.zipzip f9a4eacf4a6388a19c59b8d7ea1c691fe492429bf475eae090d0b7fd662bbf5fVirustotal results 25.81% Quakbot
2023-06-01doc_E185_May_31.zipzip 89522dfce422df034883aa7be367e8977e2e2d08f2155b61a51cd137df5385f9Virustotal results 17.74% Quakbot
2023-06-01doc_E638_May_31.zipzip d93b2a88b77e6a72f889f131161e78e6005eb74731b89729fca4a328342bb5b0Virustotal results 21.67% Quakbot
2023-06-01doc_A712_May_31.zipzip addf4de4b796dd93394602e13eb2dc2aa7da06ffd0bfcbb6cf317e6bef6c9134Virustotal results 19.35% Quakbot
2023-05-31doc_D589_May_31.zipzip fa88b1003c26d2a57464f6b632430db8f5e6fa644be9b6f189b7b930e4cd44b8Virustotal results 19.35% Quakbot
2023-05-31doc_B093_May_31.zipzip e3a7f2b1c2a7850240904a4f9a401f60ef7d8b7cb3ab492f7f42ce8215feca37Virustotal results 25.81% Quakbot
2023-05-31doc_F849_May_31.zipzip 642a2a8e8455d38a0f98a4019a5699c3ba299bb5919e400c2421e3481e3f8205n/a Quakbot
2023-05-31doc_C769_May_31.zipzip cc4c9d57d038a9a39561a6b7676bbbdb80146c0011a29fc26bb6eeac4cbee730Virustotal results 18.03% Quakbot
2023-05-31doc_A648_May_31.zipzip a182358d474d073ee4b01d31dbcfe5d074c8a317d981293482a3eab7f8f756een/a Quakbot
2023-05-31doc_F901_May_31.zipzip 97812d4385145c47221a958b6c1e5a50a469fa9b6e888b617b25ad527054a05dn/a Quakbot
2023-05-31doc_A869_May_31.zipzip fad3e979dc5f4014acb3905ec73301913ead25edd470d9edcd83407af9e372b3n/a Quakbot
2023-05-31doc_C026_May_31.zipzip 8e694e844c68cad467183972291bca05bc70c061ef43d8d58fdddf1033de6310n/a Quakbot
2023-05-31doc_F928_May_30.zipzip 188916b372280dd9e62b94475de419c1c7d7e65123682f417e071ec0522aa9e6Virustotal results 20.97% Quakbot
2023-05-31doc_C932_May_30.zipzip de92e593cefddc1d75ff7d24b0dec7a212ccf9d699e321ffb6e8cde6fffb9402Virustotal results 19.35% Quakbot
2023-05-31doc_B079_May_30.zipzip 4c95a351730c5e5653d6a6da53fe8c4c51d06cb8d83d237d75af8ece302dc473Virustotal results 18.03% Quakbot
2023-05-31doc_B296_May_30.zipzip 0a379ae6ea52cf9d3dd0a51b4b409ae547d5da922e7cb03b6c10970385efc50eVirustotal results 19.35% Quakbot
2023-05-31doc_F061_May_30.zipzip e03641463b68b5716b9f0cc90e8347c0afc5e5151920259d7848df9b26f6df7fVirustotal results 19.67% Quakbot
2023-05-31doc_B015_May_30.zipzip 3f4be9dc2ee2ce0ff6606e2aef8839d9eba9e413b005f4f2f09ff16632a30f8dVirustotal results 19.35% Quakbot
2023-05-30doc_F947_May_30.zipzip fa543084ef956ba1093d9f0b1dc0bf01de8aa3e91e8ba0e6e17c977b42f0f0f3Virustotal results 17.74% Quakbot