URLhaus Database

You are currently viewing the URLhaus database entry for http://defineoverseas.com/cida/omqrhuua which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:2249404
URL: http://defineoverseas.com/cida/omqrhuua
URL Status:Offline
Host: defineoverseas.com
Date added:2022-06-25 03:43:43 UTC
Last online:2022-06-29 05:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-06-25 11:05:05 UTC to abuse{at}publicdomainregistry[dot]com)
Takedown time:3 days, 18 hours, 27 minutes Bad (down since 2022-06-29 05:32:34 UTC)
Tags:aa Qakbot link qbot link TR U523 zip

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-06-28Main1516045449.zipzip 397fe3035b97e1248a1683fc6b4dd18c2ce12dcbca4936d28de91bce5ce0ecaeVirustotal results 1.67% 
2022-06-28Main382653070.zipzip 33b7e161e0f11e279de54291a28d1f35924ebc14711f6cf04ef5dd8cf0d4e41en/a 
2022-06-28LL1692726628.zipzip 4e6652472497b2b59e7f8abb940779e2e9766179a508810961c11f30e9efefddVirustotal results 0.00% 
2022-06-28Copies506296417.zipzip f80b4da8d2abf4431a4c2fcbd86e01db3f65d29070478584a36e51c9e6ed2fabVirustotal results 0.00% 
2022-06-27Copies713772900.zipzip ff12d60deef6da690d06dcf1a6f76f19d8099f29681a654dddd370d415e60d13Virustotal results 0.00% 
2022-06-26Copies257789838.zipzip 48ffa39b7a72c1ec1e2c75a1822fd91e8dc3e1de42523a85039401cb727dc853Virustotal results 0.00% 
2022-06-26Copies386556447.zipzip f6b570fa7812acac1ed954eec23ba6b46a1154a5c3205790ee50bd825715f93eVirustotal results 1.69% 
2022-06-26Copies3479333102.zipzip d3ef7d81e232855a3078c8311458158d3d6d07b07cae4bf9ec6e2ec519a2963fVirustotal results 0.00% 
2022-06-25Copies2163217420.zipzip 06045562e482b696b438afaee650a904fb0aacc85b3369ec9ef40e35450eea8eVirustotal results 0.00%