URLhaus Database

You are currently viewing the URLhaus database entry for https://segorganizacao.com/tae/rpeauoeundidqa which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:2147756
URL: https://segorganizacao.com/tae/rpeauoeundidqa
URL Status:Offline
Host: segorganizacao.com
Date added:2022-04-14 14:03:47 UTC
Last online:2022-04-16 00:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter:Anonymous
Abuse complaint sent (?): Yes (2022-04-14 15:35:09 UTC to abuse{at}liquidweb[dot]com,abuse{at}nexcess[dot]net)
Takedown time:1 day, 8 hours, 35 minutes Poor (down since 2022-04-16 00:10:20 UTC)
Tags:Qakbot link qbot link Quakbot link TR

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-04-15rpeauoeundidqa.zipzip e01aa6ddc761383ec7e1e10fae04af322a475b8498d36872435964744fc3fea5Virustotal results 14.29% Quakbot
2022-04-15rpeauoeundidqa.zipzip 39c2d4942e7635861b0bbefe1cbc774f705cfbac5defe3bfd24c2d4f58e89097Virustotal results 12.70% Quakbot
2022-04-14rpeauoeundidqa.zipzip e2f0c7844be331a21eb2ee40437d0bde1b85c7d937be6e3d2defa9cb3ab8d593Virustotal results 26.98% Quakbot
2022-04-14rpeauoeundidqa.zipzip 9641e8ca0291bec3ba77abe64e2394465d55f12e700ec94ca2c0fd4b5a2268a7n/a