URLhaus Database

You are currently viewing the URLhaus database entry for https://lesdeuxpalmiers.com/st/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2647993
URL: https://lesdeuxpalmiers.com/st/
URL Status:Offline
Host: lesdeuxpalmiers.com
Date added:2023-05-31 15:57:21 UTC
Last online:2023-06-02 19:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-31 15:59:20 UTC to abuse{at}godaddy[dot]com)
Takedown time:2 days, 3 hours, 54 minutes Poor (down since 2023-06-02 19:54:07 UTC)
Tags:BB30 geofenced js Qakbot link Quakbot link USA zip

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-06-02document_B651_Jun_2.zipzip 6a7c47b589748c2cc7b7e115682939a302644ac4170d26e62b9fd12c977e683fVirustotal results 21.67% 
2023-06-02document_B168_Jun_2.zipzip 830e6b41ae37df7fe7170018791931f43160917e3a9c1753b7d5a23685e6b0f9Virustotal results 19.35% 
2023-06-02document_D064_Jun_2.zipzip 68d10c7e9806a1360faa63e5996a413581b97d271d368cf4fb80fb13ecdad0bdVirustotal results 19.35% 
2023-06-02document_B825_Jun_2.zipzip c7f777b4898fb254a32a4820a2af559ee71931db116ae631c99eba2cfe82e508Virustotal results 20.97% Quakbot
2023-06-02document_D932_Jun_2.zipzip 6d7fd7a274230c0d54211b7bd8795ce9e915479f06bd4d606b6220ae78cf186an/a Quakbot
2023-06-02document_E697_Jun_1.zipzip 1e22adc2da7ce49e1f0a45b221e6e3b2962bc2be9b1c75ffe5e16d459f6efc2fVirustotal results 21.67% Quakbot
2023-06-02document_E075_Jun_1.zipzip 6ccef167f60f7885a48a340db90e1db5c78e297f5104b86cc8b9a55ff664fe44Virustotal results 19.35% Quakbot
2023-06-02document_E783_Jun_1.zipzip 33422d163c1aea1d47bf5f826d0ca25f746e18af9d419a2ee98c2108f1dd4e2eVirustotal results 22.58% Quakbot
2023-06-02document_F815_Jun_1.zipzip 6209f86c4ba6a552cc07dec5b51ae87f7a4d357d0d7daa65fec855906853d134Virustotal results 22.58% Quakbot
2023-06-02document_C071_Jun_1.zipzip 8c2400f9801aed5bdd0e524c97a8d24bbaa8e57c222d64189123be34d0eb89d5Virustotal results 20.97% Quakbot
2023-06-02document_D850_Jun_1.zipzip 7c6e77c05f74ad2794ff7c1059987209e1b4b4a03ed4f0e7a30b927fb7451edaVirustotal results 19.35% Quakbot
2023-06-02document_A196_Jun_1.zipzip 95fd9263630162476ccd4b4870e0ff0e1497f50d8e755bce5b9a6e8c9023233cVirustotal results 20.97% Quakbot
2023-06-02document_A415_Jun_1.zipzip 9a009dffb8d23716bfdf471cb9d830be6eb0a8566cebb2850b93605154628e09Virustotal results 20.97% Quakbot
2023-06-01document_E950_Jun_1.zipzip b4ca86f4865c3bf585d4cb406d9b4d9190991c20e1af0943b6da6a74d3d40c9bVirustotal results 19.67% Quakbot
2023-06-01document_B152_Jun_1.zipzip 36c682cbaaeeedffa9a5e58949c728a649bc4f5fb21d3ad5e16a6195611a6f7dVirustotal results 19.35% Quakbot
2023-06-01document_F163_Jun_1.zipzip c78dd5a66088efb72c463a1c27ec09b6aab91062386fb85b8fb5733516bc43e2Virustotal results 20.00% Quakbot
2023-06-01document_D412_Jun_1.zipzip fb069830cc72474f8e36ac998f6294cf8e45476f072808353cbc9646652ab737Virustotal results 19.35% Quakbot
2023-06-01document_C803_Jun_1.zipzip d35fbbac3d82f1e359a65c1004c6358ce298350fbb74176b936ea32b35bd9ce2Virustotal results 19.67% Quakbot
2023-06-01document_E384_Jun_1.zipzip a333944621014eedf4c0eb004409e6240fc8c452fd53d49a1568087067cac74bn/a Quakbot
2023-06-01document_F281_Jun_1.zipzip 07dc733754097099d31ffa11d068239c5849509f970fd62d826ffee632932833n/a Quakbot
2023-06-01document_D681_Jun_1.zipzip 7bbcf234e99dc5ee47ada4058322229c225289ff5e09be35099dca10c19f8342Virustotal results 22.58% Quakbot
2023-06-01doc_B957_May_31.zipzip 9b03c41b7b01416f06f58b7d4f612819d75b74fdc65fbb74e5ab77f654840e3eVirustotal results 20.00% Quakbot
2023-06-01doc_D038_May_31.zipzip 54e59a8a6a583d0b9f91a0745ddbae304e2c352ce47b4628bf289775457bcf5dVirustotal results 19.35% Quakbot
2023-06-01doc_A913_May_31.zipzip 57e710bb7a635a3c6244c43adad77420dd01f36b9d5e16b9b9315c3d5978d0b1Virustotal results 22.41% Quakbot
2023-06-01doc_E170_May_31.zipzip 0ae9e5f9d970d493ac2291f94e84a40b5a8beceb209aeee55609e06ec27b7fa5Virustotal results 19.35% Quakbot
2023-06-01doc_E678_May_31.zipzip 161db0fa1f7c2ab8d9b5e7f43f8a55b1ed2d888fd22f08dbb16c273e12a12605Virustotal results 20.97% Quakbot
2023-06-01doc_C165_May_31.zipzip 13de78c1bac400b7c86077e1d99cb723ec1c117826a7e6e844ece552efda6666Virustotal results 21.31% Quakbot
2023-05-31doc_D120_May_31.zipzip d1e96f48c0a6696530b05f9526ff0cd3e2e9a63658421f60913c977f9dcc261fVirustotal results 19.35% Quakbot
2023-05-31doc_A690_May_31.zipzip 7eeacfbc9d34b58c9ff0a0b0c9ab19c5e810f9c67144a689db34ffa589a75234Virustotal results 19.35% Quakbot
2023-05-31doc_C650_May_31.zipzip 1f553a3ecc81453a926a739d4ef2ecbcb776e92b57cfcaedb389758d4c729058Virustotal results 20.97% Quakbot
2023-05-31doc_C487_May_31.zipzip ac58ea07dbd1070249fcc792635eec4492c857dd2a3783f3e4466c34a1cac866Virustotal results 18.03% Quakbot
2023-05-31doc_A238_May_31.zipzip 9250ecee0cc29b5f8f7ed0be744bbb006d5ed349d877095e9cd36c51b3e61c3bn/a Quakbot
2023-05-31doc_B276_May_31.zipzip 25d605a81ee238185f1f42c14c157babe0e34bd85f39671e8f4fb57db08fef97Virustotal results 22.58% Quakbot