URLhaus Database

You are currently viewing the URLhaus database entry for https://sherylutal.com/ues/trsucks which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:2311290
URL: https://sherylutal.com/ues/trsucks
URL Status:Offline
Host: sherylutal.com
Date added:2022-09-22 21:24:18 UTC
Last online:2022-10-18 18:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter:Anonymous
Abuse complaint sent (?): Yes (2022-09-22 22:55:08 UTC to abuse{at}hostgator[dot]com)
Takedown time:25 days, 19 hours, 32 minutes Bad (down since 2022-10-18 18:27:40 UTC)
Tags:bb encrypted iso Qakbot link qbot link Quakbot link TR zip

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-10-11O_4240643739.zipzip d355f8d2ecbedff06088783730c0e1e227c31ccabeab1d12692f1d9ce09e6e49Virustotal results 3.12% 
2022-10-04ediOtlvit770595799.zipzip c539aa98bffa185551283299b79c01d2415ca0110a593df424454abb6e5deca3Virustotal results 3.17% 
2022-09-30C1314466364.zipzip 76a5adc7b676d0afb19a116bc2bfc1b2aeefac8f192c77bf4d05057cb723eab3Virustotal results 3.17% 
2022-09-30Post2408362913.zipzip b9a1328f3107582e58d4fef064f2d3998b658ccc513f9e98a513f5606400d9ben/aQuakbot
2022-09-29G188599503.zipzip 5730678d125ce8c4ba74d6d45ed3cb4c2e8b4b10f5fd81b074b86aa67e7ce4cbn/a 
2022-09-29G542140801.zipzip 2fd0c61773c1492f1e124f49839911fd91bd98c731541e61c7ae429b4605d7c7n/a 
2022-09-28AccItem315400827.zipzip 91e34bd678367bfb4841d9b4b39f208c8df7c2bd133ae6accb8988d58cbf1238Virustotal results 3.17% 
2022-09-26Articul2317434254.zipzip fb13d832ca528fac239c97f39ebc7218ab3284d21e1af4ae48bf59e8e55187d4n/a 
2022-09-26Articul871561654.zipzip 57a4d17fe5f6f5cb1556b4ef5b4ed2d429447d3bd9a7ded2e138679ed415fc0dVirustotal results 1.59% 
2022-09-25umvCle3311180020.zipzip 6be7b224249d6abe0adf9ba2a18731888e900c5b61a5e00b475f2c6430de5391Virustotal results 3.17% 
2022-09-24sCronituienctehl806637792.zipzip 47a6b9e59d9c29ce86fcbcc7a67cc8b53e02d9e2caf0135229faf9c21d5b5772Virustotal results 1.59% 
2022-09-23peuTrtmeo2829944791.zipzip 39426a88538d42fbcd36ea43b140fe5de0b62d7f35873fff0a360887829a9609Virustotal results 3.17% 
2022-09-23tiipmoudQe3120113006.zipzip 4c3f776d99d6e41f0d8a91994b474ae3888a029917d965ddb5fe9c5b2b69a8acn/a 
2022-09-22Doolvelemr4005717408.zipzip e981c32b71eb1d04593f1a983a885fc12351c0ddbad98261e757f59e40c11afaVirustotal results 3.23%