URLhaus Database

You are currently viewing the URLhaus database entry for http://defineoverseas.com/cida/aairummsep which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:2249388
URL: http://defineoverseas.com/cida/aairummsep
URL Status:Offline
Host: defineoverseas.com
Date added:2022-06-25 03:43:39 UTC
Last online:2022-06-29 05:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-06-25 05:01:05 UTC to abuse{at}publicdomainregistry[dot]com)
Takedown time:4 days, 0 hours, 24 minutes Bad (down since 2022-06-29 05:25:13 UTC)
Tags:aa Qakbot link qbot link TR U523 zip

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-06-28Main2395159376.zipzip f02ec3b3560686676a2ca66e310bf08f05501e0e250cecbcefaf0710c0c7523eVirustotal results 1.67% 
2022-06-28LL3869930753.zipzip bbb7c11ab29ccd224e203e13ba601568c0edc522efa43d905cc0b770dff4a2fcVirustotal results 1.67% 
2022-06-28LL2814506320.zipzip dbb2ed3c6c6de59e283cbde24fcb889b0025efbfe855a5c4bee1a88e29e495f8Virustotal results 1.69% 
2022-06-28Copies3394007368.zipzip 8b2a0ccb45cdb5596252e4ccfc137ff50e572507f6254b31574af337abec2984Virustotal results 0.00% 
2022-06-27Copies117401247.zipzip 01dcbe9694c4cc09ed2245574b6499e7756f50e2f69edada168c71e8bac9b396Virustotal results 0.00% 
2022-06-27Copies3095176301.zipzip 0566bd854f8786414439b083ac44e8bafcc45496500e5796d31397bc15705ff1Virustotal results 0.00% 
2022-06-27Copies1317373985.zipzip ecff0fa6b3e97cb81f283cc17c3778d0ddbd29b3f43fc8bb9b71af86f0dad67aVirustotal results 0.00% 
2022-06-27Copies2570582373.zipzip 8867fc381fe4d623a14bb2b9af23c5819f728e9cbc6b13e04cfb499655fc472fVirustotal results 0.00% 
2022-06-26LL3761632227.zipzip 6b0d2c668a8961f69af2c74f19da1e4bf1b8f4f21b11478dadae9d171c01c17aVirustotal results 0.00% 
2022-06-26Copies423714563.zipzip 2c596f369370c78761392db2b408391e4bf465c045efbc00f146f21253257278Virustotal results 0.00% 
2022-06-26Copies3237883183.zipzip 07d8c3e631a5cca9ece3c99952b4a24de3b1264463f912834c8a2f20f3de437aVirustotal results 0.00% 
2022-06-26Copies3783273967.zipzip 7554cee26ffda32b777430d933e3fe436cc4dd17c60f12fd9958b3661d504d38Virustotal results 0.00% 
2022-06-25Copies3077601125.zipzip a3e412b386fe6a86ac75cd9d27abda294ddb1ad2531b6cd88d447a2ae442368fVirustotal results 0.00% 
2022-06-25F3880906232.zipzip c2164dd5f41cfca029f9c4828a37fc017fdb833cabc5ebf7cfba49ad3a50f88eVirustotal results 0.00% 
2022-06-25Copies85111935.zipzip 428f2256ccc6f5d682f40719dfb1dede06a630b2509374ef73b0078ed189452dVirustotal results 0.00%