URLhaus Database

You are currently viewing the URLhaus database entry for https://ecotasar.com/ua/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2647937
URL: https://ecotasar.com/ua/
URL Status:Offline
Host: ecotasar.com
Date added:2023-05-31 15:57:11 UTC
Last online:2023-06-02 09:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?):mail Yes (Ticket DCU100125784 created on 2023-05-31 15:58:03 UTC)
Takedown time:1 day, 17 hours, 54 minutes Poor (down since 2023-06-02 09:52:29 UTC)
Tags:BB30 geofenced js Qakbot link Quakbot link USA zip

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-06-02document_C049_Jun_1.zipzip 6db75d1358f6b315c2c54bbe0cfc5d20b7644bde47856e718bbbd954a2b174c8Virustotal results 20.97% Quakbot
2023-06-02document_E321_Jun_1.zipzip 2c658f14a90cb201998322f63fde0cbc02874dd991f09cfeb447b882655b5a27Virustotal results 19.35% Quakbot
2023-06-02document_B826_Jun_1.zipzip fb33077d38e34a2d3b8a9ff20fd0a687e5f90ee62649836fdbf3bc6a2cbfba59Virustotal results 20.97% Quakbot
2023-06-02document_D856_Jun_1.zipzip 0187b91017ab99749fdb23664cdba89990cba82e626beac38ac861da77826a06Virustotal results 21.67% Quakbot
2023-06-02document_D564_Jun_1.zipzip 8ec5c75b9d894a70816d72808bbcaca57fd492336c57aa3c3c26bda2f9848469Virustotal results 18.33% Quakbot
2023-06-02document_F941_Jun_1.zipzip 9471df99cc0001627fd4928af5f378d1845699297035c09400bb7cf2b352d832Virustotal results 22.58% Quakbot
2023-06-01document_B516_Jun_1.zipzip 93051fc0bb77d0ac0ca53909a0c9982b9dca3b8a7942fd63938a99946e194919Virustotal results 20.97% Quakbot
2023-06-01document_E780_Jun_1.zipzip f07a39eb84966decd71f136391d508c7d989732661aeda9a45d117be37902586Virustotal results 13.16% Quakbot
2023-06-01document_B823_Jun_1.zipzip b68b800971404a2d689dc62d39dad9c01870c865f651166a8864e93c9fb107b3Virustotal results 19.35% Quakbot
2023-06-01document_A452_Jun_1.zipzip 5fa22f91c75866cdf222df7abb1b046125fa551d8fe1b4e48800080470e89176Virustotal results 19.35% Quakbot
2023-06-01document_A864_Jun_1.zipzip 77ff966b2c64d69952c94dc51eae4fb9ba4c17ebf746ea820ae87531fbd35f2eVirustotal results 20.97% Quakbot
2023-06-01document_A093_Jun_1.zipzip e47ddf603fae0f9e2ef1f6990c1c0f7b12827762755a11a13036858fb2f4ddc0n/a Quakbot
2023-06-01document_A935_Jun_1.zipzip c537c8d0e4f54db46a29a9450aecb4f6de400af1a5331ad7ee24f789c5bcb2ecVirustotal results 20.97% Quakbot
2023-06-01document_C053_Jun_1.zipzip 4ba8023d0d97fd2857aea6483f7e61431286a39464f1c6467327e087bdced055Virustotal results 25.00% Quakbot
2023-06-01document_F937_Jun_1.zipzip de7aab82b730398800150b165284e522d58f3a85c7e953bc83a3a1c49ab1d18an/a Quakbot
2023-06-01document_B701_Jun_1.zipzip 9937dc9537c760619a837b5f615d1d0c1814f8f1be0b1712feffeb0983a03026n/a Quakbot
2023-06-01doc_B251_May_31.zipzip 2482a4f364d9b1af6ab7c1ad93adb0c0c8dfbb4afde061177d49b71835ac6395Virustotal results 19.35% Quakbot
2023-06-01doc_E813_May_31.zipzip dad75d64ab71b0581fe5dc60e48e871a2168a7c554605e4db77464126f92b3baVirustotal results 20.00% Quakbot
2023-06-01doc_A186_May_31.zipzip 4a7caccef9da5a666ec9c9a1a0b977746796ba6d5005626b802eec0b05b73948Virustotal results 17.74% Quakbot
2023-06-01doc_D273_May_31.zipzip b7da8c21d4ed3b06a7d07028db4084c22b30a3fcc6088c4509dbfc702ed0ef03Virustotal results 19.35% Quakbot
2023-06-01doc_C217_May_31.zipzip ab26e38b78ff38d24651a580f28ad0d8c77d51c9abae81e56f2d6ec76fb78d62Virustotal results 19.35% 
2023-05-31doc_D708_May_31.zipzip 71927ca55d144f73aa04984c9009154f43491d7a7bf6c6c785e31090130556cfVirustotal results 25.81% Quakbot
2023-05-31doc_B857_May_31.zipzip 9e5d0ec8366038b2dbc43f6996188f8d7fcf98e1aa746ab07458c9e550fbbf9fVirustotal results 19.35% Quakbot
2023-05-31doc_B035_May_31.zipzip 13e55767a31563c8bcb3edd3ed8b36dbe60a3ee7c97d35738ab4d0c2088a5099n/a Quakbot
2023-05-31doc_C627_May_31.zipzip 933c85083a69efd058d75fa1b06b68fd253b26abbbaa10b6ba3aa19c2fba9b0cn/a Quakbot
2023-05-31doc_E072_May_31.zipzip ec78d513824161e580be17d5ad43b0d209e015d8eb303a3f120b0a7a951c432dn/a Quakbot
2023-05-31doc_A915_May_31.zipzip 6cdaa2e3f3deb1d709d4e4ccb9e0d04a39a9dc12186905d72ced3bc60ee0783cVirustotal results 20.97% Quakbot