URLhaus Database

You are currently viewing the URLhaus database entry for https://crediwash.com.br/to/tueruamr which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:2148120
URL: https://crediwash.com.br/to/tueruamr
URL Status:Offline
Host: crediwash.com.br
Date added:2022-04-14 14:04:30 UTC
Last online:2022-04-26 02:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter:Anonymous
Abuse complaint sent (?): Yes (2022-04-14 21:35:08 UTC to abuse{at}hostgator[dot]com)
Takedown time:11 days, 4 hours, 29 minutes Bad (down since 2022-04-26 02:04:16 UTC)
Tags:Qakbot link qbot link Quakbot link TR

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-04-25tueruamr.zipzip 51511afb1bff2dd781aeaea991997bf2331eb674b110db9c1fd396cf0ea2f42en/a 
2022-04-24tueruamr.zipzip 4629283b7ea83d6fa77b8cf5e126a546fb253cbaf3efc7566d311c0466e1b2abVirustotal results 19.67% Quakbot
2022-04-23tueruamr.zipzip 49e7588a13ca0747612594894f73bae3a028795ac34ed814cba6a1e55c461d5cVirustotal results 43.64% Quakbot
2022-04-22tueruamr.zipzip 132758079c085a3227ab1448fe4d78e4f921ad97baf3577d56e65d1d5f5133a3n/a 
2022-04-22tueruamr.zipzip 34958101567b49190c12a33656127ccd616e4265835eaa092ee2f3b829d35a19Virustotal results 18.33% Quakbot
2022-04-22tueruamr.zipzip 52cb73015bcaac0fcb65de80375cb3f514cefafc3c6396b1c275e16dc5db00ddVirustotal results 13.56% Quakbot
2022-04-21tueruamr.zipzip c24edff4395196f74d1fef9d78d31b034eb2c02a2c138c20766b022c567a5c55Virustotal results 14.52% Quakbot
2022-04-20tueruamr.zipzip 2ee369c6d6dca4e0f1e195c75566018ab13d12d7a28530d6f7097db7dd02d1e0n/a Quakbot
2022-04-20tueruamr.zipzip ba33ddd1b474297165814a9b20fcb0566fa3cc3913a497771df8d57f71c2bad8n/a Quakbot
2022-04-18tueruamr.zipzip 879c2175c115f8545322e1ea0545a0d3bbf44c00195e9bc4f59702ec21c1618fn/a Quakbot
2022-04-18tueruamr.zipzip 706410e4f6080012810736f126292afef41c383a352518217d562d5a00634631n/a Quakbot
2022-04-18tueruamr.zipzip ac6fc0f4a6d0498ba483bf1be8e5bdddffce71675fd13151bc579a926bdad0e4Virustotal results 22.22% Quakbot
2022-04-17tueruamr.zipzip 3225d8ba3e5a7e43999e5e9655f7c1261199d5963f0763135567fc9a07e62598Virustotal results 22.22% Quakbot
2022-04-17tueruamr.zipzip ea962f0f88d087fe8465f9d62ab8046e0c90bcbadda427782ddee63899facb6aVirustotal results 17.46% Quakbot
2022-04-17tueruamr.zipzip b28d5f006f9cf5777f178424ab31ff25baca831e9b28b304e91384367312d7bdVirustotal results 11.11% Quakbot
2022-04-17tueruamr.zipzip 5849509111017fd9693ac30ac0a95bb52287509a154b32f7ee8f7561901bfe15Virustotal results 22.22% Quakbot
2022-04-16tueruamr.zipzip 2fdbb6b48cf6aed729b28306ee6bfdf8c8e4b4a137521554f754f5c9e78181eaVirustotal results 14.52% Quakbot
2022-04-16tueruamr.zipzip 0d7bfc64af817808b0383343074cc67d0e573d44c97dccd01c0671215c73fd24n/a 
2022-04-16tueruamr.zipzip 4cc1838adfb2c0bc9dc16897d3635abf5b96edee92ce764b74c47b3d2c969bc9Virustotal results 25.40% Quakbot
2022-04-15tueruamr.zipzip 5cb710cd0fd51647dd1e657a8eddbb31b5e936236b16523910214fcc8eed1932Virustotal results 20.97% Quakbot
2022-04-15tueruamr.zipzip 687d83b0c8cc45be06938322492dfe3574890b8666a0a2d23bdd30d28880a3d0Virustotal results 25.40% Quakbot
2022-04-15tueruamr.zipzip 36b34f486e3c0559234066b1e3f42c8e740e38086306a40fb8f51dccbb50f3bfn/a 
2022-04-15tueruamr.zipzip 533b80f1530e7b6fe20ec447d8c550689f7494ccaee0933faa27405705654a3bn/a 
2022-04-14tueruamr.zipzip 3d066153b39b309f09d209db386ef8d0c03fb6027e981e73d641f6967684a93cn/a Quakbot