URLhaus Database

You are currently viewing the URLhaus database entry for https://forzzagym.com.mx/tuag/eietmaepdxr which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:2318855
URL: https://forzzagym.com.mx/tuag/eietmaepdxr
URL Status:Offline
Host: forzzagym.com.mx
Date added:2022-09-28 17:54:21 UTC
Last online:2022-11-25 20:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Status unknown
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-11-05 02:02:10 UTC to abuse{at}hostgator[dot]com)
Takedown time:1 month, 28 days, 2 hours, 18 minutes Bad (down since 2022-11-25 20:13:48 UTC)
Tags:bb H322 H436 Qakbot link qbot link Quakbot link TR U425 zip

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-10-24WNeLjydlFU.zipunknown b7945e954994fd5d28cddf892596432de8de89d817baa2e11bc67b2493142665n/a 
2022-10-19ocbGdHfRyycQpU.zipunknown b6258f24f9dff498c680279cf63d1dca4b28cad4eb287cef12cea52c46436c37n/a 
2022-10-13PuvbFkx.zipunknown b3a4db207372bfd7dfd4df52b744defb4bf603a83deea6587fe032d2a2da0553n/a 
2022-10-10Co2688437776.zipzip 1e3650ab42893ca0f0940e64967ea53c6d2c8f5792d405d8fd037694cff019ecVirustotal results 44.62% Quakbot
2022-10-06uttSi2066586613.zipzip 0943bfd1213f43c20863f6bf158e972fa1ce99850a4abd497e2fdf99b11c4ee4Virustotal results 25.76% Quakbot
2022-10-05R2726547001.zipzip 8e514410af53f3027d4c31c4436286ad8d9b9abcd4e68c25462dfac92ba6971eVirustotal results 4.76% 
2022-10-01C917244737.zipzip 64b94a3ff0be100fda82ebb488dffb998f41c2e4906ea9708bd5306c33d8e6ceVirustotal results 3.17% 
2022-09-30kIfQK.zipunknown e9bc705cdb54d4bc82056e8650f250a4aa08ebddf254a7a76d5a7e2570bdb1b2n/a 
2022-09-29XIFKS.zipunknown ed870a7fa5a450b4479410acb62a75549c686536c8c36ae270b77dfb964445c1n/a 
2022-09-29BczvhLQdLc.zipunknown ade2d2ae8abd26f9d4eec525ad942bcf67a9df14f0d5ef5f8dc2cebc51baada3n/a 
2022-09-28ETsjNhtlIbvRRvKJ.zipunknown 7ce27fe4cc5ccc5f86e06aa4d3db5ad0956de91212c5eec3b6df90d65d6ac1f6n/a