URLhaus Database

You are currently viewing the URLhaus database entry for https://segorganizacao.com/tae/sourunatteqm which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:2147338
URL: https://segorganizacao.com/tae/sourunatteqm
URL Status:Offline
Host: segorganizacao.com
Date added:2022-04-14 13:45:57 UTC
Last online:2022-04-15 17:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter:Anonymous
Abuse complaint sent (?): Yes (2022-04-14 14:08:05 UTC to abuse{at}liquidweb[dot]com,abuse{at}nexcess[dot]net)
Takedown time:1 day, 3 hours, 17 minutes Poor (down since 2022-04-15 17:25:10 UTC)
Tags:Qakbot link qbot link Quakbot link TR zip

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-04-15sourunatteqm.zipzip e19977cf716eb8f8bec6a909789d19e1ec82ec3a1029f09716bfcb6dd6373097Virustotal results 12.90% Quakbot
2022-04-15sourunatteqm.zipzip dfdbab21338ff603e704d84c4720a2f37a30fc7a1835b5783bac9be0471e3423Virustotal results 23.81% Quakbot
2022-04-14sourunatteqm.zipzip 5f1d0d576c820687278bd01bd2279e5a26e634bc32f43ca11aaa523821c9a641Virustotal results 14.29% Quakbot
2022-04-14sourunatteqm.zipzip 9cc4a02b6063fcb783a08f0e3986ece737290e1d894cb70196e1d2da7b3fddccn/a Quakbot