URLhaus Database

You are currently viewing the URLhaus database entry for http://zkevd.com/od/ruuspnrtqeraateaa which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:2248198
URL: http://zkevd.com/od/ruuspnrtqeraateaa
URL Status:Offline
Host: zkevd.com
Date added:2022-06-23 13:05:52 UTC
Last online:2022-06-25 13:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter:Anonymous
Abuse complaint sent (?): Yes (2022-06-23 13:10:08 UTC to abuse{at}amazonaws[dot]com)
Takedown time:2 days, 0 hours, 10 minutes Poor (down since 2022-06-25 13:21:07 UTC)
Tags:aa qbot link TR

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-06-25Copies3246155217.zipzip 5f19c36c1e8c6ca3537446095948d15d2a1181382d316401e7ade618cbfd1fa7Virustotal results 0.00% 
2022-06-24Copies831131478.zipzip de06542e378ca536ebb21f9b07d5ebb764c0a56346599f5c2ce67cb4a8e9d7f0Virustotal results 0.00% 
2022-06-24LL2102358653.zipzip e04e89a21a2da992abf0aba2f75cfb8825c80e48514e34d42a17a6ceafc7fa6fn/a 
2022-06-24DataS1854696860.zipzip 975566b37a939bc6f71e83e43a5180778c56b15942ff8991c50b950d51782a5dVirustotal results 0.00% 
2022-06-24DataS3196579563.zipzip d636c741d38d3c7ad093d21a790f9ffb4a0cd40c0ff72ba990aa83aa98615809Virustotal results 0.00% 
2022-06-23DataS280410132.zipzip fb25c061badb40549e60466736d0d9c980e769a7d4ea71f2565e6e2fd42271b6Virustotal results 0.00% 
2022-06-23F1222357081.zipzip 5d9acf0679e103b0e6f300c7c8d9e9d23593bc677ca7c471745c07bc0f662958Virustotal results 0.00%