URLhaus Database

You are currently viewing the URLhaus database entry for https://forzzagym.com.mx/tuag/tcqacaioieuc which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:2318866
URL: https://forzzagym.com.mx/tuag/tcqacaioieuc
URL Status:Offline
Host: forzzagym.com.mx
Date added:2022-09-28 17:54:23 UTC
Last online:2022-11-17 08:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Status unknown
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-11-05 02:02:10 UTC to abuse{at}hostgator[dot]com)
Takedown time:1 month, 19 days, 14 hours, 42 minutes Bad (down since 2022-11-17 08:37:40 UTC)
Tags:bb H322 H436 Qakbot link qbot link Quakbot link TR U425 zip

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-10-24EokkDwbXfx.zipunknown 84b0c2ee88d995e85ec474a62edbce1decc8a070f81ff82ef4e32438f952c307n/a 
2022-10-15SZblmEyTLq.zipunknown 1e50b5046ae4824727c86a3e27b0ccf91c73cb9e7eef146d0fb450d680bc2793n/a 
2022-10-08Rerumquo1381204660.zipzip dd57d0e232024f9d5ba57080b9eb36a44b6486ddb6aaa262d0fe25960f3ad3fdVirustotal results 48.48% Quakbot
2022-10-04Co2805929524.zipzip 4d4480834b31cfb61383d1b7a1612c20bbe9a8b0ab388fa813da49e0774a1671Virustotal results 6.45% 
2022-10-01C4054515380.zipzip 06128d94857a1feda0334e621a014b3a601e0b69e4d97f2a0462577d325b036fn/a 
2022-09-30oJwvSztySeP.zipunknown 3eda4f541add5a4b4e541290b7e26dd67d0ce13bcef921441344df24107c492cn/a 
2022-09-29RHtXLxuMiESdSsY.zipunknown 7aaedf44cf0ddaaf46b385c4914a3117f8757994306b132e76c19d037c18575dn/a 
2022-09-28GagXXWlbJhkJqQpbaXY.zipunknown 120e92a98b02d04bac38dc7684f8303eca7195bc1192d8d9f5ebd720f96bf669n/a 
2022-09-28jyBElyruaAWEpwa.zipunknown 296876664feb11fe11fe1825efff4fd944f20a424e5673aaa18016e368ce0ca6n/a