URLhaus Database

You are currently viewing the URLhaus database entry for https://segorganizacao.com/tae/srreutaocmutnqousn which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:2147971
URL: https://segorganizacao.com/tae/srreutaocmutnqousn
URL Status:Offline
Host: segorganizacao.com
Date added:2022-04-14 14:04:15 UTC
Last online:2022-04-15 23:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter:Anonymous
Abuse complaint sent (?): Yes (2022-04-14 15:14:09 UTC to abuse{at}liquidweb[dot]com,abuse{at}nexcess[dot]net)
Takedown time:1 day, 8 hours, 37 minutes Poor (down since 2022-04-15 23:51:21 UTC)
Tags:Qakbot link qbot link Quakbot link TR

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-04-15srreutaocmutnqousn.zipzip 7aec65184cfba7aa765f3a707c40f58e023d60734805dfd0a0f273d47291f7b3Virustotal results 12.70% Quakbot
2022-04-14srreutaocmutnqousn.zipzip 7403b159550c3735e56d328db93b8872fabe99dace64dfcd028f06d435cc2de3Virustotal results 14.29% Quakbot
2022-04-14srreutaocmutnqousn.zipzip 6d4ecdf8d5e815cb7cd189f503345a55d131ad1ca6a0466f8fec73d97f9e4510n/a Quakbot