URLhaus Database

You are currently viewing the URLhaus database entry for http://blog.vokasidev.com/crun20.gif which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:723959
URL: http://blog.vokasidev.com/crun20.gif
URL Status:Offline
Host: blog.vokasidev.com
Date added:2020-10-20 14:30:06 UTC
Last online:2020-10-22 12:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: lazyactivist192
Abuse complaint sent (?): Yes (2020-10-20 14:32:04 UTC to abuse{at}namecheaphosting[dot]com)
Takedown time:1 day, 21 hours, 56 minutes Poor (down since 2020-10-22 12:28:44 UTC)
Tags:exe Qakbot link qbot link Quakbot link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-10-22n/aexe 7de8c22aea7b3a871d4ca5715e4a70313f7e63eb8ac661c4f0b4f84e1876183dn/aQuakBot
2020-10-21n/aexe 76dfd774e997c6f57436d26f9687330780fb4e531be2ac87b987f59caf9420c3Virustotal results 46.38%QuakBot
2020-10-21n/aexe 14f00619df4b60c9f840a78c867a69300990a47fefde58f08163aad097ebffe8n/a QuakBot
2020-10-21n/aexe 036296212b13129b81fff39a13ad73740bbaf9a776d4d502615284b3b14f2629n/a QuakBot
2020-10-21n/aexe fb9199d3881ad37698ae8457ee22d51da0f66bfec873528fd0a46514a7e46a6en/a QuakBot
2020-10-21n/aexe b118db6c80b5fa745272d1baa1c1e9d4c9535f7f7aceec2add1e5f82703616baVirustotal results 50.00% QuakBot
2020-10-21n/aexe be0f88094bd39820d7c5d5df3bec0706ae7d3ed684fba0dc55fc23abf1e4b500n/a QuakBot
2020-10-21n/aexe 3da66e99bc705805875ad287759dde11361786b3cf5efedb48498f155b53ec49Virustotal results 51.56% QuakBot
2020-10-21n/aexe daa0115c6c6db55eddf24641c7d7631c0fdd7e35752102488721f78588288172n/a QuakBot
2020-10-21n/aexe c281cc04a250df7c0a8700dc666f95b73985107d382f6f26ca90f5106469d81an/a QuakBot
2020-10-21n/aexe a03a3cc941d7bf0967a6bae380a6392e1b2a02a08af25e3aca852ecd2aaf797en/a QuakBot
2020-10-20n/aexe 76ca0f3d7cc3c4231e242c4a90ecfd5da244d4df64cfc3c95da1ce321e1c3852n/aQuakBot
2020-10-20n/aexe ed154cdde4fda3785b82e95201df899f952bdfec85650bb2c3451b81b3a7c077Virustotal results 45.07%QuakBot
2020-10-20n/aexe d0bc4126cc4314c3227cf78896ad636bde55eee476dc9a748c3919b34eb8c218n/aQuakBot
2020-10-20n/aexe 6f00837f83703021bc4f718a4df8a7fbdadf5fff50728dc09c050efa5259db89n/aQuakBot
2020-10-20n/aexe bc21c980c7d16e4903f4ad09b4d799c36491a21b8b422a57af96cef0fb99dccfn/aQuakBot
2020-10-20n/aexe 906d29829b1b495e67d9e196ad56dfa3deddc1f968a011e2678a2085b80c590an/aQuakBot
2020-10-20n/aexe 6e682ff56d1665e1462761e22246cd232e2e819a600d81fe0e770104c097db7fn/aQuakBot
2020-10-20n/aexe 1399a0c10893e6d83d602d6026434e0d5615a56e32439b5a49146b1823b01333n/aQuakBot
2020-10-20n/aexe b4f3fda2eaa587a4afa2dfc882b07c46cc3c79b350aef7e57dab0fb31f7b7fd9n/aQuakBot
2020-10-20n/aexe 28334e265932a624c050dff38f383cfa8a7d382dbd869204bfc1beaf9b4cb78fVirustotal results 41.94%QuakBot
2020-10-20n/aexe f4bfb36faa1244ccb7eff5b1ede62bbdea104a86caaab19cb962f3cba093ccadn/aQuakBot
2020-10-20n/aexe c59164aae8501626379a0956e0367081d9f4bf330165f16ccffbe0da867ed169n/aQuakBot
2020-10-20n/aexe ca58be5fcdd363c7fa2cdb540fc6cd7346df25c4ff2428961fda94e57970f245n/aQuakBot
2020-10-20n/aexe e7b71f274fa6101b23bea864a62527e991781f2b94d2158077bef3e8eefa0bc6n/aQuakBot
2020-10-20n/aexe a377d9feadbe4833a58119212059ef8ede76a06942a82c79e5f179707b5e0a2aVirustotal results 40.30%QuakBot
2020-10-20n/aexe 79aca9d3f5ef2e6e73a8966187d65d9822c7c1295b35cd4c96f9a262996dc6dfn/aQuakBot
2020-10-20n/aexe 8ffb42e60b3dcd29fd9fb67b782d418f632f975a84f6ae1eefec8c3509fcb29en/aQuakBot
2020-10-20n/aexe 8ba3aa42d5c3e1b4cd3ead07bf2c40641e4011aac0b2a1b1262f80504d423f9an/aQuakBot