URLhaus Database

You are currently viewing the URLhaus database entry for http://neamatflourmills.com/wp-content/uploads/2020/01/choice/512/512.zip which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:312720
URL: http://neamatflourmills.com/wp-content/uploads/2020/01/choice/512/512.zip
URL Status:Offline
Host: neamatflourmills.com
Date added:2020-02-10 20:46:05 UTC
Last online:2020-03-13 00:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter:Anonymous
Abuse complaint sent (?): Yes (2020-02-10 20:48:02 UTC to abuse{at}hetzner[dot]de)
Takedown time:1 month, 1 days, 4 hours, 3 minutes Bad (down since 2020-03-13 00:51:29 UTC)
Tags:Qakbot link qbot link zip

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-02-16512.zipzip c966809b9137fc8d7ee3aeb94f86e9750f4f97cd7ced1bea1bdc7b10ff687b2dn/a 
2020-02-13512.zipzip b07739f51d181c8f6478d17130d2becb7f32144c2e38a43e327b1e22d018f938Virustotal results 27.12% 
2020-02-12512.zipzip d92892174b61684b441cd8c6f274cae182382170d4d678c604720eaef31fa61bVirustotal results 18.03% 
2020-02-11512.zipzip 0a5ce98d26ba9475a4a296ac4b4bdf48f4f783bd5ef243e674fa5203fbe5023an/a 
2020-02-11512.zipzip ee43fe74c32328c4ee154422f6a3af9158ab41cfa432ae0f8ae2736715b78bb4Virustotal results 22.03% 
2020-02-10512.zipzip 8e753589c3eac0dc5359795d66153e38ef9c6326ad888d9321e22a7348877e08Virustotal results 19.05% 
2020-02-10512.zipzip 9da4bb94c72e8c6b1acfecfdfef1bab2652239a5656db9ae3b81d4759b905ac0n/a 
2020-02-10512.zipzip b745ef2b377f1b7c0aac26436daee751518b6c5aa1510407851a31e8b678f4ecVirustotal results 22.41% 
2020-02-10512.zipzip 48cd3a0204c7f3e71bf80d6c8e8343996892579a5c20b0ad49d6dff065b98b52Virustotal results 18.97%