URLhaus Database

You are currently viewing the URLhaus database entry for http://vmusicsound.com/ds/1412.gif which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:921259
URL: http://vmusicsound.com/ds/1412.gif
URL Status:Offline
Host: vmusicsound.com
Date added:2020-12-15 20:39:11 UTC
Last online:2021-01-22 03:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: lazyactivist192
Abuse complaint sent (?): Yes (2020-12-15 20:40:03 UTC to abuse{at}metrabyte[dot]cloud)
Takedown time:1 month, 7 days, 6 hours, 44 minutes Bad (down since 2021-01-22 03:24:17 UTC)
Tags:dll Qakbot link qbot link Quakbot link SilentBuilder tr02

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-01-20n/adll c5a272896e6a8ffce6c06d64923a3eb3d281e76924f796c350e0e0e2c1f5c939n/aQuakbot
2021-01-14n/adll ad327b22a79b89359e9e599b2a0349b95af13ee15733ad59f1625f13a66ffb63n/a Quakbot
2021-01-14n/adll b3ed9c9f99f087080c2f425b1e021574dd36abc7ecfc63c74e931c27296fb3d6n/a Quakbot
2021-01-14n/adll 02bed4886eff4bd38309407538386d0d97ed13f276867ec547b506283d4af492n/a Quakbot
2021-01-14n/adll 8363f36d333206d84ace44887738a088896f1a10f2f2b895ee9607e51651a2a8n/a Quakbot
2021-01-11n/adll 3f6268268a728b3c22217fa165244feedc1e919451d169dc86e900abe3e69c83n/a Quakbot
2021-01-05n/adll a467c4de159d258538bab6a450af0a2de04d638a9981e4aeffae9712c499821an/a Quakbot
2020-12-30n/adll 7e5ae0de83e73c5b4d44670e2bf530473376fbf8422245f9104f07e2cfd30eb5n/a Quakbot
2020-12-17n/adll e50dba6595751efb2655f09a45039837de117c40fb6b43554c3a712c94a5fac7n/a QuakBot
2020-12-16n/adll e5c9e475bc6be3c0802c87f96ebe73c6f4fed8b43f6571347017022a40e3bf52n/a QuakBot
2020-12-16n/adll d76e6eb0679e7184be359377a527057bdb35c9624ef83280790ffa98d84f99f0n/a Quakbot
2020-12-16n/adll 16431b2c7cacf5dd47ff25286ef3b86e8d56f5820d2fd52f2bb4355404613d23n/a Quakbot
2020-12-16n/adll 2162315a96c75d010a319bda009e51f488982f52f957324229338f33a5861f8an/a QuakBot
2020-12-15n/adll 4f1fa4e10f6e48c0a9a818f06f09955f2aeec7fe8b25708d5f5b0d1b8e8ec63cVirustotal results 27.14%Quakbot