URLhaus Database

You are currently viewing the URLhaus database entry for http://defineoverseas.com/cida/abtluvoisteptu which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:2249327
URL: http://defineoverseas.com/cida/abtluvoisteptu
URL Status:Offline
Host: defineoverseas.com
Date added:2022-06-25 03:43:23 UTC
Last online:2022-06-29 04:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-06-25 04:10:09 UTC to abuse{at}publicdomainregistry[dot]com)
Takedown time:4 days, 0 hours, 18 minutes Bad (down since 2022-06-29 04:28:17 UTC)
Tags:aa Qakbot link qbot link TR U523 zip

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-06-28Copies1367028388.zipzip 8d76e6fb8763bd26c4f1936acda08581ecd51915ea650deb397484e2ee42a9deVirustotal results 1.72% 
2022-06-28Main321579799.zipzip 43c0c4cd872a9965a3fb0795368f53aeebf9d098a026152f04b2bc47ed1ce71aVirustotal results 1.67% 
2022-06-28Copies1173526188.zipzip fb4ad2854921835fa0dd7e5b616fce17aeba6ee470c4e80b8dcb423eca868a2eVirustotal results 0.00% 
2022-06-27Copies2162563493.zipzip 094a878852ffecc2414efe9db34dc59cc5a6e5d3d29209e45ad8503762de6ce2Virustotal results 1.69% 
2022-06-27Copies3902818770.zipzip f041c3f40d7a08d91bfffd2330cb97e51fd510a2e490978c7d2186ea2272828fVirustotal results 0.00% 
2022-06-27Copies1197918746.zipzip aab9baf54e0ca2dd9fd39b586b76e4526d250dd13ec9ede40855fdea11f9c6b8Virustotal results 0.00% 
2022-06-27Copies365985178.zipzip f0bb8b11e08e56cc786fc4eb3dbf105a2995e24ef1c64b4d418cd0bca8b28405Virustotal results 1.69% 
2022-06-26Copies550669058.zipzip 79ecefa3e9793e38f789e0d85f1b1cef0204ecd702b7178395308c32f0f39c83Virustotal results 0.00% 
2022-06-26Copies684055334.zipzip 3790995453e17c0f093e071dfd2302ef11bcf3cb0b5b210823326e6c62bfe722Virustotal results 0.00% 
2022-06-26Copies4067696089.zipzip abbbf20b58c695cb46f6cd5c8a1e0b3af3c95906226b1cd974bd252a4f347bb1Virustotal results 0.00% 
2022-06-26RH-242564836.zipzip a5655f3a07397d789cffb4dcd0bd69bb22bcf462c9556a8d78919b9cec89440bVirustotal results 0.00% 
2022-06-25Copies1801127151.zipzip 70fad73dc374fc5d5c888d9715c56490dbedac2d1f4208782cf0676f14c3bed1Virustotal results 0.00% 
2022-06-25Copies2704938243.zipzip a84275054d1fb255ffa31ae0b82182c7a3050ee0ed54a83146cb6e2eb2f7d2c4Virustotal results 0.00% 
2022-06-25Copies2980595646.zipzip f4f1132a37836b5d8b46509115d439e03f6d558613b8cd691a851d5f9febe62cVirustotal results 0.00% 
2022-06-25Copies937018632.zipzip d3ef7d81e232855a3078c8311458158d3d6d07b07cae4bf9ec6e2ec519a2963fVirustotal results 0.00%