URLhaus Database

You are currently viewing the URLhaus database entry for https://mentorialegado.com.br/mnm/lsbniideaati which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:2320325
URL: https://mentorialegado.com.br/mnm/lsbniideaati
URL Status:Offline
Host: mentorialegado.com.br
Date added:2022-09-28 18:05:12 UTC
Last online:2022-11-29 01:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Status unknown
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-09-28 18:06:23 UTC to abuse{at}bluehost[dot]com)
Takedown time:2 months, 1 days, 7 hours, 26 minutes Bad (down since 2022-11-29 01:33:15 UTC)
Tags:bb H322 H436 Qakbot link qbot link Quakbot link TR U425 zip

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-11-23rgZTHGDDtzjYsCsuQ.zipunknown 98fffbfe2d26a3a9a356dd9a6f0918c03ab9117bf3bac2498969870e1f1a20d6n/a 
2022-10-25IfzJwtW.zipunknown d99da161a24abb723470671c212f301b1fca1373177b90a32ced757ccd9dac21n/a 
2022-10-15JBWLAgZ.zipunknown 2d2b0ddff782b1f319c2b3d078630931dbecddd41213133b38b7129c244c63ban/a 
2022-10-11NE4193633902.zipzip 6d82e491821fbbbf55e0db34cce6104f568c507c669ba41a71b82d407785a944Virustotal results 3.12% 
2022-09-30P3756301705.zipzip e40cf1376d79c927d2b8faaf1c2cad72ae8564645c6a3acd2f256d951f5db81en/a 
2022-09-30ixciYmgR.zipunknown f3fffdefaf6c2d710220bc6ad3a327938e1918068e524dcab028864e97596828n/a 
2022-09-29TXTlJqudCsE.zipunknown 1773d22d3ed2c75e31c6b254467b1ee69cb84741b4bc7e239382e2b947472568n/a 
2022-09-29fSpsXjdKqBxVRnFzUQ.zipunknown d844b332cb73babe29677b08438ead7c6b8418aa63244a44cb46093d75b2fcd7n/a 
2022-09-28tmbI.zipunknown 6f4941c78a620562aa5f5c5c483601b9d3b6037da64fe9e2d71f591b41aed40en/a