URLhaus Database

You are currently viewing the URLhaus database entry for https://klimabilgisi.com/uom/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2647737
URL: https://klimabilgisi.com/uom/
URL Status:Offline
Host: klimabilgisi.com
Date added:2023-05-31 13:31:22 UTC
Last online:2023-06-02 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-31 13:34:47 UTC to abuse{at}godaddy[dot]com)
Takedown time:2 days, 7 hours, 33 minutes Poor (down since 2023-06-02 21:08:36 UTC)
Tags:BB30 geofenced js Qakbot link Quakbot link USA zip

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-06-02document_B573_Jun_2.zipzip b9d40575a9fb0287bff6141184f25809c451ad42d3ca85d0dfbcde3accb1a3fcVirustotal results 19.35% 
2023-06-02document_D016_Jun_2.zipzip a6b6ac0784029bd69d685630cfb6d92ef5f1f059486cc2d0f6293f975dbd1f3dn/a 
2023-06-02document_F459_Jun_2.zipzip aad4e0549b000f020baae77e48cb4fd22a9da0b190611e152b2ccf316054f2c5n/a 
2023-06-02document_C903_Jun_2.zipzip 30033b784407dcf9b8547dec59dd73fd8ab9404f94c9329b22ae7a55c96da15eVirustotal results 20.00% 
2023-06-02document_D865_Jun_2.zipzip b629ddce4b60e28eefd657f574877b54e4388cd7799b918949981ab615ba9652Virustotal results 17.74% 
2023-06-02document_A273_Jun_2.zipzip 9c40a4857909791594791c263a1901242732866a7beca60777a9167b86334e60n/a 
2023-06-02document_F953_Jun_2.zipzip 2785d579cb5d386f64b47e9b38b57d4c9c8516b700b820fd6b97fb6f7129c891n/a Quakbot
2023-06-02document_A865_Jun_1.zipzip 5ba8a3d15dad95ec1d12e698ff5e20b8eaed24891d70604db4955104772861a0Virustotal results 20.97% Quakbot
2023-06-02document_C753_Jun_1.zipzip 805bda13b757cfe173230156d3030f684780182f10eb9ca93fc2834e1b346542Virustotal results 20.97% Quakbot
2023-06-02document_C693_Jun_1.zipzip 53a75af138d45a688ad57445697985cc88734bd423046d1cbd4c0a1da5b10a0cVirustotal results 21.31% Quakbot
2023-06-02document_C347_Jun_1.zipzip eae4efd3d03069cf187662d95f4359d55e1b242602547d9ad51274d0e9bbe7d4Virustotal results 20.97% Quakbot
2023-06-02document_D504_Jun_1.zipzip d6497ef7f6afb6117494197bc6dcb6e4ad9f5a35d7abe3f178df04e7263efdeaVirustotal results 20.97% Quakbot
2023-06-02document_F163_Jun_1.zipzip c78dd5a66088efb72c463a1c27ec09b6aab91062386fb85b8fb5733516bc43e2Virustotal results 20.00% Quakbot
2023-06-01document_F769_Jun_1.zipzip 10f447a4145a50410ef7858286ce0bd5a62a27c289a2d06ce78b4040976c1276Virustotal results 20.97% Quakbot
2023-06-01document_E438_Jun_1.zipzip e696c1d897e538655d14c171ec8a45225a27e99d41f1b0645cddb63cff46b0b2Virustotal results 21.67% Quakbot
2023-06-01document_C504_Jun_1.zipzip dab84ebe99a1836b92e8fed90451e59f0ae94ed375b469017e05a8a50f669f5dVirustotal results 19.67% Quakbot
2023-06-01document_E062_Jun_1.zipzip c2bd611aec129d88745345f91b586dab1da45e3d7f64ca721bd32f940bc486e3Virustotal results 20.97% Quakbot
2023-06-01document_A489_Jun_1.zipzip 54ffc1ef80832ae117273999656742e981f46ab1cba9a0d32514793dee79e9a9Virustotal results 20.97% Quakbot
2023-06-01document_C520_Jun_1.zipzip 7a8944f9a9e4f7c4818f5932026a14c3556f3116e176914017987ac329cec7d7n/a Quakbot
2023-06-01document_C973_Jun_1.zipzip 322720f5dd39c0f277821fd56e390e88926ee33a7f2a6428202efafc1dc6b148Virustotal results 20.97% Quakbot
2023-06-01document_E831_Jun_1.zipzip c0700a948489ec33d19a69042558d55cc735503f777ae0aa56e5375a5420f061Virustotal results 22.58% Quakbot
2023-06-01doc_C627_May_31.zipzip 933c85083a69efd058d75fa1b06b68fd253b26abbbaa10b6ba3aa19c2fba9b0cVirustotal results 21.31% Quakbot
2023-06-01doc_C062_May_31.zipzip ea42ac1518d7d52880f05c327a3d7557c4c13b5e5b2483b69ef2680d6ce16117Virustotal results 19.35% Quakbot
2023-06-01doc_C546_May_31.zipzip ba88ae5188fa649bf8cf6e338cf7b1051cf523e36d3bc400ca20e635479a0c1dVirustotal results 17.74% Quakbot
2023-06-01doc_E107_May_31.zipzip bf4f1bd33a669655e7078f837738d36371d83c9f42caefb2bcf4699c4557b4e7Virustotal results 19.35% Quakbot
2023-06-01doc_F468_May_31.zipzip a6c56d9174cabbca44d40dafad3290cbd98eb3edf0b7c2ea82039c127aa713e7Virustotal results 25.00% Quakbot
2023-06-01doc_E839_May_31.zipzip d7729f7ed0379f9b28da68ae1e9a5acdef5602761aac2964f85b985382e92cc9Virustotal results 15.79% Quakbot
2023-06-01doc_F386_May_31.zipzip c762c22463606bab9d393ae6dc3d8c02320463c7767946618969af08cb13ef12Virustotal results 19.35% Quakbot
2023-05-31doc_E215_May_31.zipzip 9277f96ded37cdfdb122e18f77bbb0e14aabd69e4caf898b18647db156d04b50Virustotal results 19.35% Quakbot
2023-05-31doc_F217_May_31.zipzip d8328bd9fff4fb06b15c4e2f3226415e98537969270e87672e3fd48bb7e2c772Virustotal results 21.67% Quakbot
2023-05-31doc_A290_May_31.zipzip 6a47aa32f8bda93503314da53e48874585bc91686b6dcc57c7dc94a179e00e95Virustotal results 19.35% Quakbot
2023-05-31doc_C790_May_31.zipzip 2c1e348a97a9f865704374b2cc3c2c20ebb174d7ae577a837709364f169ca2e0Virustotal results 19.67% Quakbot
2023-05-31doc_C846_May_31.zipzip b51afa683f8ae69eff86f87cb3f834bd912d754a9c1db9a3a8b96e8f4df7d9c5n/a 
2023-05-31doc_E518_May_31.zipzip 482905771227ec22adfe63490951bcf68ffeebbeab30e656016405579f3dd9ecVirustotal results 22.58% Quakbot
2023-05-31doc_C653_May_31.zipzip b2f602fd7a7cae6fee7d3b9c696ccc904b5855f65d971ba4ab37a3455304310en/a Quakbot