URLhaus Database

You are currently viewing the URLhaus database entry for https://melaniegowen.com/tech/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2660838
URL: https://melaniegowen.com/tech/?1
URL Status:Offline
Host: melaniegowen.com
Date added:2023-06-14 16:56:24 UTC
Last online:2023-06-15 16:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-06-14 19:50:11 UTC to abuse{at}godaddy[dot]com)
Takedown time:20 hours, 40 minutes Good (down since 2023-06-15 16:30:41 UTC)
Tags:BB32 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-06-15document_EC108_Jun_15.zipzip 07bfe73d27f9981ec3cd27ff12bf8a07f4b1dd3880f45d306617dfc4bc6f4fedVirustotal results 6.67% Quakbot
2023-06-15document_DB960_Jun_15.zipzip e8cf044998fb449fdaaca5b489a007e22f50c8a0660111216ceb5f851f8d55f6n/a 
2023-06-15eKRlTUTwlJ3E.jsjs eb605d4066647576dfc406abb5566276ce380161582b6e5fd881958d3807d078n/a 
2023-06-15yKhHpSLdpqsCwG.jsjs e8d6e05796571f553d8fa58318cc2108eaaa0e8d919c3e3ce4edd58055282103n/a 
2023-06-15UBAXHNgFGrTXBD.jsjs 24086114f7c564a23e400bcd9ddfea9d788fa601bb16ff8c85cdf17e69033820n/a Quakbot
2023-06-15joRMDw8sUgPwzt.jsjs 644fe597cfdd8e664129da3f9027c167abf46d99dbb30873c04a49772bd2d1d3n/a 
2023-06-14tdSRfPcfNu5zD.jsjs 31c79cfbdc926a508e608169b492e634fe0573eca22742de473cb9383539830en/a Quakbot