URLhaus Database

You are currently viewing the URLhaus database entry for https://atlanticoleiloes.com.br/ugm/oddsloeir which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:2317402
URL: https://atlanticoleiloes.com.br/ugm/oddsloeir
URL Status:Offline
Host: atlanticoleiloes.com.br
Date added:2022-09-28 17:42:09 UTC
Last online:2022-11-26 17:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-09-28 17:43:12 UTC to abuse{at}cloudflare[dot]com)
Takedown time:1 month, 28 days, 23 hours, 49 minutes Bad (down since 2022-11-26 17:32:35 UTC)
Tags:bb H322 H436 Qakbot link qbot link Quakbot link TR U425 zip

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-10-27NRuouDxemrvlU.zipunknown 474b590271cadef80dd8badc30b8b3c990fab75d87082d84f2bff9ae47582fb5n/a 
2022-10-17pFQDzHQELiG.zipunknown 24791e53d37b2dffc9b86e275edb1453f68033715d4d3bcda1fccaa804f7f100n/a 
2022-10-13VPIMk.zipunknown 398d62be24e0c24ce26a6efbd429153c15596ed2b410bede342e6e3ff6eec7a6n/a 
2022-10-09Accusamusest703351306.zipzip 86f4f1b1a5fdcc633967c397f6ff96ccc5015175fd8411c9afe42d3e5679ccf0Virustotal results 46.97% Quakbot
2022-10-06R1878725419.zipzip cdcce099a4a3effb1d80b9ab73eb3245045b0c6f202fb5a34085a98276722101Virustotal results 21.21% Quakbot
2022-10-02ArtItem4018816184.zipzip 6d15c4b0840b564020bbf4b368c9e998df0f7bd0a03c2020488e08e0aa302e6dVirustotal results 1.61% 
2022-09-30Post3999769365.zipzip 77fac3010ea5ef0d152f9be4a09889ba50fad6729de65e4af05441cdcb3826ffn/a 
2022-09-30emlMRlst.zipunknown 17895a0d9ce29a7c458e587adf1b50cb79490f94c914490673d5c884466481f2n/a 
2022-09-29lrDESDAWALCdcKl.zipunknown 7b9e077cb507709c77a3011e0f5dbef35def252d7954d1b49422fd6b1e2fbcfcn/a 
2022-09-29sPFiZqwhHT.zipunknown 3fc4dbc5db7d727db25407ebd3613483fd0fcb058dcd8b9e26cdf0abf6a28892n/a 
2022-09-28azqaUhAwl.zipunknown 8c040c0820f4f86776c715d72dd13e9595c1406f7c2d17199ae99700c1a5e93dn/a 
2022-09-28PlAPN.zipunknown 7e6dd742376b09e79270087d1b05d4a2c13a03f4ad151a8e485d42252081c8b7n/a