URLhaus Database

You are currently viewing the URLhaus database entry for https://ideaspoint1.com/ediq/tuqtsanceuruo which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:2319573
URL: https://ideaspoint1.com/ediq/tuqtsanceuruo
URL Status:Offline
Host: ideaspoint1.com
Date added:2022-09-28 17:59:25 UTC
Last online:2022-10-10 17:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Status unknown
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-09-29 14:04:06 UTC to abuse{at}namecheaphosting[dot]com)
Takedown time:11 days, 3 hours, 55 minutes Bad (down since 2022-10-10 17:59:47 UTC)
Tags:bb H322 H436 Qakbot link qbot link Quakbot link TR U425 zip

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-10-05Co2395706360.zipzip 40ce51cd81418c856cd17cc6f7d93436cf93be4478fb77fc36017acd5b1d58e8Virustotal results 3.23% 
2022-09-30ourrrnetS222840398.zipzip 96076e14e6bdecf79352f61c4d08be00f76ae990c9c751bac2782fb72209c162Virustotal results 3.17% 
2022-09-29Gall3496634888.zipzip c010ac988660a581056fd4b3edd418db4e4d849bc694c56041a1ef6be29156b0n/a