URLhaus Database

You are currently viewing the URLhaus database entry for https://allerorts.de/ultq/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2647605
URL: https://allerorts.de/ultq/
URL Status:Offline
Host: allerorts.de
Date added:2023-05-31 13:31:08 UTC
Last online:2023-06-02 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-31 13:32:52 UTC to abuse{at}space[dot]net)
Takedown time:2 days, 7 hours, 30 minutes Poor (down since 2023-06-02 21:03:36 UTC)
Tags:BB30 geofenced js Qakbot link Quakbot link USA zip

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-06-02document_D864_Jun_2.zipzip b9d9ad2283acfe3130b8980dd0b69f6e3199117b325cf6992acecfb56c2f72efVirustotal results 19.35% 
2023-06-02document_D652_Jun_2.zipzip c82c5c7ed19355de43e37e12840cc0e06b0882cb5109dd37eaf610b152df6e9cVirustotal results 19.35% 
2023-06-02document_A756_Jun_2.zipzip e4294ebaf8f0a286b18f365f6921ffc07c0fed9fd899958d6e9fa3dfa93cac82n/a 
2023-06-02document_B139_Jun_2.zipzip afef1c985decbeef1a61f24bfe5e1f5e7ed8bbcb4be3e4ed3e0bc44184668bd5Virustotal results 19.35% 
2023-06-02document_C895_Jun_2.zipzip d970b46adaea48a1ea8ce879ac557b0028e0ac48d823aea9db68165847de4aa4Virustotal results 19.35% 
2023-06-02document_E217_Jun_2.zipzip 3563e963cc4dd69336900362d61fae667ba26fd327e899d2e025f550efad44fbVirustotal results 17.74% Quakbot
2023-06-02document_F078_Jun_2.zipzip 9d1ddbec56a78900d8fc11ceef12d4826183befec92fb9bab3473258f04b77d5n/a Quakbot
2023-06-02document_F012_Jun_1.zipzip 440b9034a43f9094107fa012566c69713dfc0232ea7cbc52cf584ed88be54465Virustotal results 19.35% Quakbot
2023-06-02document_C680_Jun_1.zipzip 61daba7ea0cfcb98497102a8f4cbc21f36c6afe824e752ff51cc8e5b4b2c60a1Virustotal results 20.97% Quakbot
2023-06-02document_A387_Jun_1.zipzip 9bd35fed511d6890b2d2e991a243fb6318e69eb2ab26c8b74dfe419263588553Virustotal results 20.97% Quakbot
2023-06-02document_B941_Jun_1.zipzip 2ee8cc23d87da52d36d0b1a0fe1c12c81b0b0134a04e1abe420d607920163855Virustotal results 20.97% Quakbot
2023-06-01document_A927_Jun_1.zipzip 213e6365e5f423d117106b1336b183c2c727d76c03fbaa79ccf1e537a4b1145cVirustotal results 19.67% Quakbot
2023-06-01document_B842_Jun_1.zipzip bc59402da8a16bd56b148eedf24a06ccac4fac24d944b1df269144739ac33a5dVirustotal results 20.97% Quakbot
2023-06-01document_D512_Jun_1.zipzip ffde76ed6942149a4371d1760f1010bb64f5dce56b732d82b2dd02e0f92cd20aVirustotal results 20.97% Quakbot
2023-06-01document_A513_Jun_1.zipzip ffaf3f6ac82d4f11d8d2dfa1ab4e08ea9d8029c842caccfd05bef63c7933d138Virustotal results 19.35% Quakbot
2023-06-01document_E301_Jun_1.zipzip 12d715d01fb0036839d046aa0ff39ab2c1532322754d94dd2cec8aa8f8d0731eVirustotal results 20.97% Quakbot
2023-06-01document_D325_Jun_1.zipzip 048a38ca515e4e0518d5d3563a6c97e62900373dc692ff6dd0c3b6c3c984f7d4Virustotal results 21.67% Quakbot
2023-06-01document_F784_Jun_1.zipzip a9f729ef83e095a37d342e58377b54055908653bfc9388964c90cd7cb792e307Virustotal results 22.58% Quakbot
2023-06-01document_C307_Jun_1.zipzip 1ba52ec71b05156015555d441f3f18ead5a2d8cb8d80ff4e158d0037ef6858e7Virustotal results 21.31% Quakbot
2023-06-01document_F163_Jun_1.zipzip 9e252d701a138198d85be9da26334d2bea3e0364922134d27945bc1ac054f910n/a Quakbot
2023-06-01doc_E379_May_31.zipzip ad71eb171e28d20e8830f95e9ff1dab88beaaf8ff4160aa0a3a7bc84351a8718Virustotal results 19.35% Quakbot
2023-06-01doc_D652_May_31.zipzip 378a919acea43214f20c855c0cdaa67403c38dc89eb65b03420f078944400b8cVirustotal results 19.35% Quakbot
2023-06-01doc_D761_May_31.zipzip 1f58258e3c92e3772f1c8367dd05cb4c9bf5f074a8d522c548af515e36990cdaVirustotal results 20.00% Quakbot
2023-06-01doc_D791_May_31.zipzip cbe4de80d3a7f894ec50b9b566002889656f27710a677c877c7b2c63828558a6Virustotal results 19.67% Quakbot
2023-05-31doc_C915_May_31.zipzip 966107b495df61e73caf3a3d6d541a34b7c338b4fc17fc50b9967264adc9caceVirustotal results 17.74% Quakbot
2023-05-31doc_C901_May_31.zipzip 8cbc810699f77821a3c1e4383e89ef7088042993ff110d562ab011b268c4c74eVirustotal results 15.79% Quakbot
2023-05-31doc_F675_May_31.zipzip 4c171a4f382f29a4e21965f19a385132d3c0eac789c456ff4495465895ff9302n/a Quakbot
2023-05-31doc_A546_May_31.zipzip d96e218870df535028886fa421421c8ee7e6c13744537cfe0e7254973bd45a41Virustotal results 20.97% Quakbot
2023-05-31doc_A793_May_31.zipzip b10c7f34c25c168d4e8daa9af47aa927ebd22574d6314316945bd135edcad996Virustotal results 22.58% Quakbot
2023-05-31doc_B908_May_31.zipzip c89aee78410ce45d20244fe702f7ad45fff4f938cde1f78a9942bd1c583eab7dn/a Quakbot