URLhaus Database

You are currently viewing the URLhaus database entry for http://afrozaway.com/qtuu/oemmnnei which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:2249255
URL: http://afrozaway.com/qtuu/oemmnnei
URL Status:Offline
Host: afrozaway.com
Date added:2022-06-25 03:42:11 UTC
Last online:2022-06-26 03:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Status unknown
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-06-25 09:45:05 UTC to abuse{at}ioflood[dot]com)
Takedown time:18 hours, 2 minutes Good (down since 2022-06-26 03:47:38 UTC)
Tags:aa Qakbot link qbot link TR U523 zip

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-06-25Copies3213399771.zipzip bd08fd933af6ccb28b6ed84f885a0c1ab786a0225504499939e82a9ac4f813cdVirustotal results 0.00% 
2022-06-25Copies2065436375.zipzip 414ebac64eefb9f96f17de2f52ac72aa8876f250a0ba537358d22dfd43323cc5Virustotal results 0.00% 
2022-06-25Copies1512860986.zipzip b4ab8a0a6d40a7b3c9ca095f313cd2e9996c03a243c767f20a8e459a3647b9beVirustotal results 1.69%