URLhaus Database

You are currently viewing the URLhaus database entry for https://melaniegowen.com/qs/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2659299
URL: https://melaniegowen.com/qs/?1
URL Status:Offline
Host: melaniegowen.com
Date added:2023-06-13 16:37:14 UTC
Last online:2023-06-15 17:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-06-13 16:38:17 UTC to abuse{at}godaddy[dot]com)
Takedown time:2 days, 0 hours, 56 minutes Poor (down since 2023-06-15 17:34:21 UTC)
Tags:BB32 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-06-15document_FA507_Jun_15.zipzip 590d757d672504a7fd36b29b3bf323a8d9d353b87295e2380c7371e22da60b96Virustotal results 6.45% 
2023-06-15document_DF708_Jun_15.zipzip cd8ba051aa4dcb2f6b9e43e271ddbc01adf369a1dd1635b5d8e8affa83f1e801n/a Quakbot
2023-06-15document_DE129_Jun_15.zipzip 0c15ae90a50d10a6f4bf3328186b02cf8cadabb5e4e56522f352d91431922141n/a Quakbot
2023-06-15tVRBQTRIM9ekY.jsjs 1eb702501361ad8493f11fd7bc8c0cc4894b1a0c43ef895b035a37cb2c935529n/a 
2023-06-15dfYpiMLKmu2Q57.jsjs f324be80c748122a50244e8d7b295a05471e7ca3f7c981c0c2c03cbfdaa7ac8dn/a Quakbot
2023-06-15OzRTSqN5qpjJzU.jsjs 8ff3b9cd860bb4041eb6ff9f6adc6eee8635718467210699422401036e052bb0n/a Quakbot
2023-06-15F39NQZ9KjYCqs1.jsjs a6d759452ea3ce6ce9d483a7f5807845ded090d108fe5eceddb36c247137b38cn/a Quakbot
2023-06-15lWVNHpXRZbQoz.jsjs 0cf3ce4e46c328c1ce96901a6875e9def09668e91a1060e066f1af5bb1760ac4Virustotal results 15.25% Quakbot
2023-06-14ORRxY52CPWiFJw.jsjs d3352928b1b677cd594aeb1b75e39419eb2d2baa113c4cda27e29c7a17864a62n/a 
2023-06-14obn0VWa0X0UiHc.jsjs 7925a4ff07d2528ae4494e1ba5e8d4d375d1ded682577c5dea8b955dcaf2fe9bn/a Quakbot
2023-06-14yNelB7YkSuEOM8.jsjs dd579f7aa537ff0f35ac8c6041820338dcabb71f5f402f4c51d064713a16e93bn/a Quakbot
2023-06-14NWnsm6cFmfw4p.jsjs f4e6c505a295f068260e162b3702b38adb2506af13c64162cc2b517fc9919453Virustotal results 0.00% Quakbot
2023-06-14Oak15HKksczt7O.jsjs dcbb1de18c706dca894ce39fa5c0e6ec4956955cd2e0e48dd2787d8e46747b3eVirustotal results 15.25%Quakbot
2023-06-1403yUYPuhWpnyK.jsjs c7eaa1a5908dc1545a9b22e424042126b2338ad5f0764e18f8547574c1598b4eVirustotal results 1.69% Quakbot
2023-06-14a8mWJb4hQSSAc.jsjs cea0787fe709eb7bd1f4572d915f64c70f3fb2d0467373885c3f452c7b7064f7Virustotal results 15.25%Quakbot
2023-06-14KWRmJMWN4geR.jsjs 990fcc25de370c8b28fcd7dd0c37eedff5aac1fa3c53d892528aed63d3e46499Virustotal results 0.00% Quakbot
2023-06-14Zj68Y2WnMENnFt.jsjs 67bf979b452f0401ff550377f487205860ff05e118ba4128474018c6d577dc87Virustotal results 16.95% Quakbot
2023-06-14YtwAqoWz18aYX4.jsjs 8ee6d32025b0548e4ed6e55479f139e1fc07b9934ca1f80c870d8f714c7883a8Virustotal results 15.25%
2023-06-14psXByLdRUb3j.jsjs 5f30d626890f7d044cc7a72b0a2df02b2d1a62c13e427a2ad2922c786283f56en/a Quakbot
2023-06-14zE4ShhmCJjXx.jsjs dbb02169e20fe10876325788a39bc3f988e30728211464145e7613039da5e67fVirustotal results 0.00% Quakbot
2023-06-144hDYJLcH9yBUo.jsjs 2cf3d45519e1057961623380105498f99860dcfe9ca56c99098dfd434be79fa5Virustotal results 15.25% Quakbot
2023-06-14aYQa9wQyAZZ1.jsjs bc64caf34f92e2e6f063ced2c6d9e82ecfab18b7aeee5767de6094fd960d23aaVirustotal results 0.00% Quakbot
2023-06-14XdQu3FX1q1GF.jsjs 54373fa75a0dda2c7fcd65b3fd408617b4476fff9c36c456e3eb3b07961404fbn/a
2023-06-13kDkHAvag05CSb.jsjs ecd880678a249910b68ab6ee237be079049165ff0c4dff22355823e84ac59d9bn/aQuakbot
2023-06-13E9Z5x7bxaF4eZz.jsjs 8b9f00478811eaed21f3759ccae2433a5fa7167dd35dce760974ef441d464962Virustotal results 0.00% Quakbot
2023-06-13LFAotk6pLsJq4z.jsjs 8b2b5ab2f87cee54c8cc50586169b8759ffe94753cdf9084e2f12cd58cadcfc7Virustotal results 0.00% Quakbot
2023-06-13WuFbcLqsftEkW.jsjs 80cb6a04650549de1867cd400061ba1e0e95db2b60fb64c17d44dbef1480b39en/a Quakbot
2023-06-130XHDcGxBWQ3p.jsjs c0dc43667db75e00b26ab332ef35a82862f8a2ebdee5ec113d7477df9c947c15n/a Quakbot
2023-06-13LWKkyThaaGe1.jsjs c72727a2ccb8792ec845f77344643c130506799696c0c35b233bd9aee55ba414n/a Quakbot