URLhaus Database

You are currently viewing the URLhaus database entry for http://zkevd.com/od/etta which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:2248141
URL: http://zkevd.com/od/etta
URL Status:Offline
Host: zkevd.com
Date added:2022-06-23 13:05:44 UTC
Last online:2022-06-25 13:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Status unknown
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter:Anonymous
Abuse complaint sent (?): Yes (2022-06-23 13:13:07 UTC to abuse{at}amazonaws[dot]com)
Takedown time:2 days, 0 hours, 16 minutes Poor (down since 2022-06-25 13:29:13 UTC)
Tags:aa qbot link TR

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-06-25Copies496815666.zipzip 596b7fbed385b4a251e2fd2aeb46ad81f8a410355715984829b1b7684349b1ccVirustotal results 1.69% 
2022-06-25Dcmb4251600885.zipzip 3a7417e24365ecc3c192f6bbd2de557a103353e9a60e7ae27aa8078f2bb4c26cVirustotal results 0.00% 
2022-06-24LL1287340159.zipzip 8fee1bac9160287e046c08447738bdddfcaab872cc4d772487c089c3468babd3Virustotal results 0.00% 
2022-06-24Copies1457759694.zipzip 883a28676ae5beb808667c7b9dce7803a620d539d43cd02329f07ea773708366n/a 
2022-06-24DataS3546750709.zipzip 10a0229535d93f5601f766b0a281f70a4dda5702a984c6301e36aad7337e719cVirustotal results 0.00% 
2022-06-24Dcmb2853939625.zipzip 36e85b1679f71261d01777571b96e423618ad6f0c76751f82977b244442d828dVirustotal results 1.75% 
2022-06-23LL3607597546.zipzip f1670a1c4a160405987f2668dbb4a2589e69c86c0aa1d599516a276ae1052c91Virustotal results 0.00%