URLhaus Database

You are currently viewing the URLhaus database entry for https://imprimerie.casa/dni/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2660785
URL: https://imprimerie.casa/dni/?1
URL Status:Offline
Host: imprimerie.casa
Date added:2023-06-14 16:56:18 UTC
Last online:2023-06-15 16:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-06-15 00:29:07 UTC to abuse{at}hostgator[dot]com)
Takedown time:15 hours, 42 minutes Good (down since 2023-06-15 16:11:13 UTC)
Tags:BB32 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-06-15document_BD754_Jun_15.zipzip 6add808c92d3ea0b9f173fa2eaa817d1f0e396bc53a7ddf486db3c34eb4b1475Virustotal results 6.45% 
2023-06-15document_BC629_Jun_15.zipzip 33e0db65562948b81916a2b5f8dbd7c3f1e58e48dbfae77b07af432931554f4an/a 
2023-06-15document_CE947_Jun_15.zipzip e8f33eca90811cd271ee7644ffc1a52d653d38c321f13fa856d837d2322c8188n/a 
2023-06-15zZ18HvP68xrdxy.jsjs 536893afd239ca6842d6a93f06fa91ac4ad5cb09129e045a0bd62fbed93a974fn/a Quakbot
2023-06-15IMRBv424MHDWLy.jsjs 439ef2597ef366186f671f4f10c8072d99fbdad2816f146eb0a0619e7dafa799n/a Quakbot
2023-06-15d0rEYGXfvDEx.jsjs 8aa060b9d25b0f1dd0910ac3342533c0749f1cd7e0ad95e5252cd9b553f34474Virustotal results 0.00% Quakbot
2023-06-15TlulDVzSydMP.jsjs fe4901127f0283be373facab7cf2f729c9b9b36c8bcef83992672b89d8fada11Virustotal results 0.00% Quakbot
2023-06-15WWQAkCfINxUC0t.jsjs 66b1663885519b86be7a668ff8ceb8c637dba3ea7aee4f9a86518cf0f01a279dVirustotal results 3.39% Quakbot