URLhaus Database

You are currently viewing the URLhaus database entry for https://mentorialegado.com.br/mnm/dtslbuaeciexcpelo which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:2320441
URL: https://mentorialegado.com.br/mnm/dtslbuaeciexcpelo
URL Status:Offline
Host: mentorialegado.com.br
Date added:2022-09-28 18:05:33 UTC
Last online:2022-11-28 14:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Status unknown
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-09-28 18:06:23 UTC to abuse{at}bluehost[dot]com)
Takedown time:2 months, 0 days, 20 hours, 2 minutes Bad (down since 2022-11-28 14:08:33 UTC)
Tags:bb H322 H436 Qakbot link qbot link Quakbot link TR U425 zip

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-11-19DjshdPyzkZSpnIZXN.zipunknown fcfbb4411d365971f88da9375dcd8e87f51e4bdad75c79d34e532149aca38792n/a 
2022-10-29CIUFJUpW.zipunknown 7b15996a100c246d464ac7dd4416b570f0ce36a5531a9dbcde6ef77a92e29107n/a 
2022-10-18WOnisAVypOiG.zipunknown caaf5d556f023e6becfcbb5ce684c5f70b6d462a47a7c369107f03b5d6e67e37n/a 
2022-10-11NE553793117.zipzip 0acf4794f44bb287c627c6d42e9bfd928f0b5e071e167a73a31129501c50701eVirustotal results 3.12% 
2022-10-08R2070967831.zipzip 24b1b6ef4a7dcd0c0a1371b47e5144bfa263a6db25800d7bf98ee643af94a7c0Virustotal results 36.36% Quakbot
2022-09-30Post2049506644.zipzip b9a1328f3107582e58d4fef064f2d3998b658ccc513f9e98a513f5606400d9ben/aQuakbot
2022-09-29wSVHaGtA.zipunknown 3af92c1bdddd5f60b0e10a917390ff34843fd99d83dd5f538325f54b6b8d50d3n/a 
2022-09-29SDFhomMI.zipunknown b04179b215258427e8811306329ea478da80dd48dda4482e5af7955174cd23b6n/a 
2022-09-28WYnUUlWFcSnXkDNdzd.zipunknown cfdff785a7393a5301d069af1a9629d589a6b5b11245624478db708a9e66fc85n/a 
2022-09-28KAnW.zipunknown d21ca2b6569cfb4697a968ab8c4e35847350dc6af663f16a60e4e28fa12414d5n/a