URLhaus Database

You are currently viewing the URLhaus database entry for https://cuellargalvez.com/anam/atltovemluvep which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:2318228
URL: https://cuellargalvez.com/anam/atltovemluvep
URL Status:Offline
Host: cuellargalvez.com
Date added:2022-09-28 17:48:38 UTC
Last online:2022-10-12 05:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-09-29 16:51:07 UTC to mochahost{at}cloudequitygroup[dot]com)
Takedown time:12 days, 12 hours, 36 minutes Bad (down since 2022-10-12 05:27:30 UTC)
Tags:bb H322 H436 Qakbot link qbot link Quakbot link TR U425 zip

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-10-05Co4102750539.zipzip 3c30671a18bf5677948c79bd917b33f99a5bc290b18dad589d9bd6670aa17002Virustotal results 4.69% 
2022-10-02C5261448.zipzip 5aff2cceb233ce9fa61c917ea9e4738c23dfcf048bc8f0549fd98488d4c2e219Virustotal results 1.61% 
2022-09-30Consequaturquo432470867.zipzip 1bc3ceea559f751abfc300e04159fbe06be3608228ccc5873b2204b7b2dd3e14n/a 
2022-09-30G438607230.zipzip 00b86d78ab573d24d552c22dc756aba5190fffe4bb8368bb1b2bbb54077743a3Virustotal results 1.59% 
2022-09-29Gall3999333056.zipzip a2cf85fdd96ad3e6c228e16f2b594e6a491e6f621979627713df777be3ef4ddbVirustotal results 3.17%