URLhaus Database

You are currently viewing the URLhaus database entry for http://mercyhealthfamily.com/ul/atemits which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:2251796
URL: http://mercyhealthfamily.com/ul/atemits
URL Status:Offline
Host: mercyhealthfamily.com
Date added:2022-06-28 07:06:30 UTC
Last online:2022-07-03 14:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-06-28 07:22:09 UTC to mochahost{at}cloudequitygroup[dot]com)
Takedown time:5 days, 7 hours, 2 minutes Bad (down since 2022-07-03 14:24:48 UTC)
Tags:aa Qakbot link qbot link TR U523 zip

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-07-03Main3057027277.zipzip 5d4e7ea5f4b4ab00a8dd1d4f314e595434feac250fe534513b26109835052bd2Virustotal results 1.72% 
2022-07-02Main3244941469.zipzip 79a141f803ce312d92a79a2da2cd81d16c8cdc37dc5ece0824bf04dc9daa7272Virustotal results 1.67% 
2022-07-02Main2728349965.zipzip 303f3a27f5eba9949bba8087ac75743dabf5850f6016f338331d15a3b5c3365bVirustotal results 3.33% 
2022-07-02Main2225908039.zipzip 8c6f98a00f6ede4a880a31d3462d55db7b94309f9684265ba019b6467137a641Virustotal results 5.00% 
2022-07-01Main2855704274.zipzip 04033f7dc0d4344c2f09ddcd4c92551fc0609647900fb22b2c1369e6af2fec5fVirustotal results 1.67% 
2022-07-01Main2783003680.zipzip d01c4c6571f99def063eaf72f6793f0442773e831fd035d609ecdd0424a6e973Virustotal results 1.67% 
2022-07-01Main2322726094.zipzip 8dc1a42c4aab266dd21cbc5129cc2456b1ebb6ac1a0461635fad0feb2f746a3fVirustotal results 1.67% 
2022-07-01Main1187622898.zipzip 89643dfa883591f2d16cc12a0047f2b399a97c888bf48cb41344ba36fbb887edVirustotal results 1.69% 
2022-06-30Main1676378232.zipzip ecca6fce66211b424be135eb71b0200bad3a30642ecd2f3ad1790f6ef0749b08Virustotal results 3.33% 
2022-06-30Main3902340990.zipzip 41aa4411f72f148ea0ab559b0abe4e115a19493ebb1f00f7d6ee80162128764aVirustotal results 1.69% 
2022-06-30Main3795056995.zipzip c670c764b611a94d519ee73eb5ce484dfa1d8c365ebac83293e0267c29df3d3fVirustotal results 1.67% 
2022-06-30Documm2663440884.zipzip d5641aff7b249ed91f1eb912ab670c6325168b24225586c836250265413580acVirustotal results 1.67% 
2022-06-29LL1454927414.zipzip 61faa759f3b4accd5e5dfc383bcbc9ef9523df2dc9748e5d108dd3337bc8e438Virustotal results 1.67% 
2022-06-29Main4152615360.zipzip 0dff9af757469c4467e7ac66280e6e759431c244dd43b00e88e99943f893e799Virustotal results 3.33% 
2022-06-29Main3127480858.zipzip 2c5a69b74c807ed27094b91ef1156bd0177b6f2842d42e32b1d0162cf88f63cdVirustotal results 1.75% 
2022-06-29Main107771889.zipzip a157cd1558cb2b5b0dc8839e5029feded1b64fa89d75bceaae0f1e9c790e479bVirustotal results 3.33% 
2022-06-28Copies2629367864.zipzip 3fb01b6f0defb7c93f2328e68fc46cccb437807df67f07aacafe2e2ad0e364aaVirustotal results 1.67% 
2022-06-28Copies458004340.zipzip 1b2e3736d4f0b5ab27f53b7473da33d18f1b54df14b2576dbb56d688c9e60754Virustotal results 0.00% 
2022-06-28Copies4102201745.zipzip 05baebcfb8deaa0b0a45da8ca73839afbd6121f786c5afd77eac6defc616e853Virustotal results 0.00%