URLhaus Database

You are currently viewing the URLhaus database entry for https://atlanticoleiloes.com.br/ugm/acfrxeee which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:2317421
URL: https://atlanticoleiloes.com.br/ugm/acfrxeee
URL Status:Offline
Host: atlanticoleiloes.com.br
Date added:2022-09-28 17:42:12 UTC
Last online:2022-10-01 19:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-09-28 17:43:12 UTC to abuse{at}cloudflare[dot]com)
Takedown time:1 month, 20 days, 6 hours, 23 minutes Bad (down since 2022-11-18 00:06:32 UTC)
Tags:bb H322 H436 Qakbot link qbot link Quakbot link TR U425 zip

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-10-24WlJDanWXcJ.zipunknown f691d445a4987d96b0eccc2d85e793063f7c4fd36924445524c5ac3644a614cdn/a 
2022-10-23jNfeJ.zipunknown 94e47f65ce44f862778968ff7b00823a5992425b55d0b5ddd0b2e08668b19c58n/a 
2022-10-05R3687466329.zipzip 28c36d4783c4a5ecfc7a3f4bcd9e5e5958901f52cbadbe82dab2e9f641334225Virustotal results 24.24% Quakbot
2022-09-30CA2128858534.zipzip ad41801f86613a2958e375655c0b95515e5e0879f7d2413898b56a72b89f121an/a 
2022-09-29FmrQEzbKmKnT.zipunknown 88ca4d18846100edb4e1b4ad530c7434f819896385a2e64ecb0e40cb47401f08n/a 
2022-09-29suOh.zipunknown 606b1ca16d8138db1d26c1418bb5c6284da61f9d7cba9f79665e96e96d8cf714n/a 
2022-09-28pceftqqBhGBKLvNkK.zipunknown 1db0ff989a8ed0e78fad124f64f2df4f332332693deb49b28b5ecd3706769378n/a 
2022-09-28KBVlszYQies.zipunknown ba2bc6d2dcb31b082264959ce28aa93dc08a8d37e313bd3a0081083f093f8da9n/a