URLhaus Database

You are currently viewing the URLhaus database entry for https://divinediamond.org/les/sercrtndunuuuqtoense which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:2318535
URL: https://divinediamond.org/les/sercrtndunuuuqtoense
URL Status:Offline
Host: divinediamond.org
Date added:2022-09-28 17:51:22 UTC
Last online:2022-10-13 09:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Status unknown
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-09-29 00:04:08 UTC to abuse{at}hostgator[dot]com)
Takedown time:14 days, 9 hours, 13 minutes Bad (down since 2022-10-13 09:17:16 UTC)
Tags:bb H322 H436 Qakbot link qbot link Quakbot link TR U425 zip

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-10-04R2542142333.zipzip 8f255cfc33bc49efbdab11a80342e176e0ea6f7e05168516399f63492a035cb5Virustotal results 6.25% 
2022-10-02Card1137106910.zipzip b80a3a7844e422023c569de0b3c0d82668786cbaf15c99e66ad2215a7def00adVirustotal results 1.64% 
2022-09-30tpraeamEo4246528646.zipzip d09ac2207a41b48f3653eb9c418ebd46ad0e1db135089774ffdf699d0270a8c0n/a 
2022-09-30G498730551.zipzip 50d0054a3a0f6d3c3e681927b834e28ae8802d1b513cc4a238893a65174b2775Virustotal results 3.17% 
2022-09-29Doloresnecessitatibus1258087852.zipzip 2845cb9e902dbf271ff185c476491311e350021c95447ffd94119a4288e4b155Virustotal results 1.59% 
2022-09-29Oditconsequatur3162891105.zipzip 5c2128eb748fa9905b42968697eae3ebeff588f173a4a0cb4dc775b4467acaa5n/a