URLhaus Database

You are currently viewing the URLhaus database entry for https://kubetgame.online/wp-content/1QSqjusFskXL0oLLURnVf5Dw4/?i=1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1986491
URL: https://kubetgame.online/wp-content/1QSqjusFskXL0oLLURnVf5Dw4/?i=1
URL Status:Offline
Host: kubetgame.online
Date added:2022-01-18 13:56:05 UTC
Last online:2022-01-18 15:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-01-18 13:57:10 UTC to abuse{at}cloudflare[dot]com)
Takedown time:1 hour, 3 minutes Good (down since 2022-01-18 15:00:43 UTC)
Tags:doc emotet link epoch4 heodo link SilentBuilder

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-01-1830653636863848.xlsxls ec527c59ba416c8eda361c7069ac38bf84ee678c4b0b0c60588711a172a8d8ccVirustotal results 37.29%SilentBuilder
2022-01-189519433171656.xlsxls 7ff7872e83522e607e0795de63cbbdce9440358acb4f994d4655f52c49fc5d4cn/a Heodo
2022-01-1855645038415386454276.xlsxls 4a1f0312b2fd859957bda97b5cd2cb465ef5f9fea28798450bef3186cb1a8439n/a Heodo
2022-01-1839350355526393090782.xlsxls 722ded1cbcabef90968fdf9be67676481bac9dd847289d7f23e7625a66087723Virustotal results 27.59%SilentBuilder