URLhaus Database

You are currently viewing the URLhaus database entry for https://wallowemb.com/qat/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2647643
URL: https://wallowemb.com/qat/
URL Status:Offline
Host: wallowemb.com
Date added:2023-05-31 13:31:12 UTC
Last online:2023-06-02 08:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-31 13:32:42 UTC to abuse{at}cloudflare[dot]com)
Takedown time:2 days, 7 hours, 45 minutes Poor (down since 2023-06-02 21:17:46 UTC)
Tags:BB30 geofenced js Qakbot link Quakbot link USA zip

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-06-02document_E810_Jun_2.zipzip fc2613c48304e9183ffb33e7c1fdffc99a896b334d9d21f952d7873af62943f2Virustotal results 19.35% 
2023-06-02document_F789_Jun_2.zipzip 7625d1dcc8f2dd1c43d774c2652cd9fc38ea2c3dad021cca749bca9daf306d7aVirustotal results 16.39% 
2023-06-02document_A317_Jun_2.zipzip e8082e62ec253d66bba8b965571719fbb0f254da1504dde56ea216fed32a9b4an/a 
2023-06-02document_F841_Jun_2.zipzip 2621d65081c397637a205b0b8af700554091f157eb3a8670908a131ed549b475n/a 
2023-06-02document_D378_Jun_2.zipzip 07e5feb3683a91f4a04a20948d17748145d412d326f8621c3b3cc9adf01ed9d3n/a 
2023-06-02document_F542_Jun_2.zipzip b032f6c317fda9de1a1193d3d4697dc2055539c052f9e806c7e3429b8a51bdefVirustotal results 17.74% Quakbot
2023-06-02document_F873_Jun_2.zipzip 3d7f9827bc50b8ed3e38aebb314439eebf4f4191cec14e9eeaacc34e87b560e1n/a Quakbot
2023-06-02document_D415_Jun_1.zipzip 0dbe8a39a1b10a657978addec47d28ec5db716ca08ae1dbe033e1eab1b91360cVirustotal results 19.35% Quakbot
2023-06-02document_F651_Jun_1.zipzip 3adc392ce8fff5f019972844cd7181c22b0203a0c3052e3ff80445eda44cb478Virustotal results 22.58% Quakbot
2023-06-02document_E237_Jun_1.zipzip 8dabd0325a38ecd7a2d04f794e4adee990ca794a4b124236bfae08c08e6a051fVirustotal results 20.97% Quakbot
2023-06-02document_C809_Jun_1.zipzip 38735116b94d946d3b8fea7e0e6cbcc00e2d9a1e0efb9e74b51fa0b90650ef8dVirustotal results 20.97% Quakbot
2023-06-02document_E975_Jun_1.zipzip fd80cfcb84cea70bb18349105afd4d2c31f5938551147d962834a3609ab54fc0Virustotal results 19.67% Quakbot
2023-06-02document_F376_Jun_1.zipzip efb8a8c1bdf7a4700780e51c217ae115e158ec6462d906106b82bd3993a14071Virustotal results 22.95% Quakbot
2023-06-01document_B348_Jun_1.zipzip 5a43c30355473d1402bd4862f304ccd932bb13266a7809b1986e0fd1d9db5350Virustotal results 20.97% Quakbot
2023-06-01document_A937_Jun_1.zipzip fb693b15ec8213950c5192e613b3e49acf7c4808e0093c9fba49db181cc2fc7eVirustotal results 20.97% Quakbot
2023-06-01document_A721_Jun_1.zipzip 1a8f00b68739523861c81b6863a4de5bf9e793cf7cca07336e05bb50a45ee05cVirustotal results 20.97% Quakbot
2023-06-01document_F368_Jun_1.zipzip 1a22cfaaaa6800df1f3c766dd5a8a6a0137e6b1effc3a28918be178aa8933b56n/a Quakbot
2023-06-01document_B409_Jun_1.zipzip 1a8d7b881c90d3682a5820c6a849d4f08915925c8fe306237f07813ce1e404f0n/a Quakbot
2023-06-01document_C795_Jun_1.zipzip d3374deb40fd164e94c4bfa809a385b4deea3f908c48f18b42dc4ebbdcd4adc6n/a Quakbot
2023-06-01document_A590_Jun_1.zipzip 2749cae9b0133954e7c93f35afddc07b4f0a0fe7293e428ab87c20c4ca872769Virustotal results 19.67% Quakbot
2023-06-01document_E438_Jun_1.zipzip e696c1d897e538655d14c171ec8a45225a27e99d41f1b0645cddb63cff46b0b2n/a Quakbot
2023-06-01document_B754_Jun_1.zipzip e9d0ef7d10017c5408c923ee61023d701fa21cb4c9e8e89f1370345d9cdd2030n/a Quakbot
2023-06-01document_A091_Jun_1.zipzip 5f5efbb53c4905a4c3e5c92c19c9ddef2e82d5156d80089b5e5c62bc95e812b9n/a Quakbot
2023-06-01doc_C980_May_31.zipzip fab7ca158a048c1ba0bbd9b16c994aad451890ea13eeea7d5f414d59053a8744Virustotal results 19.35% Quakbot
2023-06-01doc_B051_May_31.zipzip 2ec47766bfbb052c557f34ef1350b12d00a77c7410a7729a90aa19d152b2988bVirustotal results 20.00% Quakbot
2023-06-01doc_A405_May_31.zipzip c540a0ce040d8a17b473474e20da5505b722db9d26d6797ad3a0093c70dd28ddVirustotal results 19.35% Quakbot
2023-06-01doc_C592_May_31.zipzip c925684a14fb0a0460ce00e5b7ff2fc48c17779d6be5ead680a0b270772b5709Virustotal results 20.97% Quakbot
2023-06-01doc_A769_May_31.zipzip 90db7950d8f057ad3039552891e105d8f377b8a7702ac9a985d63f73aef81c08Virustotal results 17.74% Quakbot
2023-06-01doc_F491_May_31.zipzip d97446c62192197cfb7bc5ecc86d25c352e5591cb560e5a797356bbea9f14a94Virustotal results 17.74% Quakbot
2023-05-31doc_F270_May_31.zipzip 2fd35cb6ac1b8ca3aaca3a4320cfc762672da8cc79f0ffd0af64c19a30a330e8Virustotal results 23.08% Quakbot
2023-05-31doc_B645_May_31.zipzip 278ee16e04a46f2bc21d589851bd27a00d3475a9018a125701e89d3c70a57e96n/a Quakbot
2023-05-31doc_F405_May_31.zipzip 9cb273bfa33f335e3b41548c690bb1ab0cbaae3bc22bea467a36a88c4136f1aan/a Quakbot
2023-05-31doc_A278_May_31.zipzip b751c22b2679cf009f3aab78a00bd34867778f73836077ba306df5d2e20541b6Virustotal results 19.35% Quakbot
2023-05-31doc_E492_May_31.zipzip c49223eadbea0e33f92fd564beccbf412331199cee9b79e2529a35cb11cf47f0Virustotal results 20.00% Quakbot
2023-05-31doc_C098_May_31.zipzip bf64f1f91e686b9f2902b1b374f70dc945b0d4c94b5123927e10b38806fdb82an/a