URLhaus Database

You are currently viewing the URLhaus database entry for http://defineoverseas.com/cida/preiaatmviel which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:2249325
URL: http://defineoverseas.com/cida/preiaatmviel
URL Status:Offline
Host: defineoverseas.com
Date added:2022-06-25 03:43:23 UTC
Last online:2022-06-29 04:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-06-25 10:27:05 UTC to abuse{at}publicdomainregistry[dot]com)
Takedown time:3 days, 18 hours, 28 minutes Bad (down since 2022-06-29 04:56:04 UTC)
Tags:aa Qakbot link qbot link TR U523 zip

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-06-28Main1858937469.zipzip 744b01ef124902c1fd378616269be8368779134a60df2c8652e65cb21cc8f4e2Virustotal results 1.67% 
2022-06-28Main2107051879.zipzip a75c35f90979d64fb6a77f0434eb9f802cd1006ccfb371a1243083f688722f3fVirustotal results 1.69% 
2022-06-28Copies1451924651.zipzip 84d89ea71e2e29b6edd83459c5d032cffa27d0a66dce7a45bd080c71799e7196Virustotal results 0.00% 
2022-06-28Copies54027303.zipzip 6cde803ad172bed5b1ab6c47d5baaa6d963c6569458343b3c2d79775a619e1c6Virustotal results 0.00% 
2022-06-27Copies2213700605.zipzip cc97ac8b29a74c1abc8974795e7e139515cb4c6eb8ee272b87d16c6f3ad29d9fVirustotal results 1.72% 
2022-06-27Copies95434548.zipzip 0684770df753b8f7be7753c202c9f2e066db2cd85a9407b28d724ea9cc9d3044Virustotal results 1.69% 
2022-06-27Copies2591754560.zipzip c037ed7d11d92d0a249fa1040ed14755579c80c10841eec8af4d5c27b5afaf4eVirustotal results 0.00% 
2022-06-27Copies1117046265.zipzip eeacc3e6bd023cbc69959f966b51e3814c87cf1b311fd483b988abdb858c5377Virustotal results 0.00% 
2022-06-26Copies4156464776.zipzip 70b890aabf4cdb7f5dfd47808d1a1e17abbdeddc5df27f71983337902f206207Virustotal results 0.00% 
2022-06-26RH-1128332544.zipzip cea142913454251fe5a120924bd82b226a6599e1b5c4ba6802f136bc1f6d6e32Virustotal results 0.00% 
2022-06-26Copies141821352.zipzip 596b7fbed385b4a251e2fd2aeb46ad81f8a410355715984829b1b7684349b1ccVirustotal results 1.69% 
2022-06-25Copies645930796.zipzip d24d9ffc68aa854100550aa8ab59a5cd2bf50f786d510f3475ec74253bb75856Virustotal results 0.00% 
2022-06-25Dcmb2327518030.zipzip 85489a05691f0044936de57bc5b11e309d953aac2f313d1ff539e2508b0656b3Virustotal results 0.00%