URLhaus Database

You are currently viewing the URLhaus database entry for https://mentorialegado.com.br/mnm/qruemdoamol which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:2320488
URL: https://mentorialegado.com.br/mnm/qruemdoamol
URL Status:Offline
Host: mentorialegado.com.br
Date added:2022-09-28 18:05:40 UTC
Last online:2022-11-28 11:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Status unknown
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-09-28 18:06:23 UTC to abuse{at}bluehost[dot]com)
Takedown time:2 months, 0 days, 17 hours, 48 minutes Bad (down since 2022-11-28 11:54:34 UTC)
Tags:bb H322 H436 Qakbot link qbot link Quakbot link TR U425 zip

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-11-25hCTSCMPXGlIdjFpS.zipunknown aad7da067a5c945d1956370e01680ce7879e87609bc608c7a7d737504a6e444bn/a 
2022-11-15eImREfDteNeZcL.zipunknown ec79602f11cc0a7aca6fd2d35e3cdbdd960f331cc16f4f3419d643e0711854a7n/a 
2022-10-26aysPHxLTSVef.zipunknown 4ea7a7c4985d00c3d62fa8c9651934d0ffb7e3cbce42cf8a4b0dd23934bb6cfan/a 
2022-10-22FWUExPaTKpZgrvKt.zipunknown 2b06e3d91d622137cb8781722e327809837178b22a8f0531fff16a3bbd662e95n/a 
2022-10-20nlVOgkHs.zipunknown 20d06260cf1dad435db8ae15c05e8907b8bd089e31d24c951b4b0d4bb4e2710dn/a 
2022-09-30C2570741358.zipzip 5cab4af5e499655887ac1d7a594136c4d0516ca0f50431e1d8ab76228a81766cn/a 
2022-09-30G132116155.zipzip dbe92c7b38eaeb52360a6fb61b0bee95d8d0e9a094d03c40d5457080a14b6109Virustotal results 1.59% 
2022-09-29nAqGpeDurPZHpNyCm.zipunknown 746f5e87bb9d2fd3898a4afd664a30e5d38fdfe9b20d7cde3683aae630dd8c4cn/a 
2022-09-29qYWRRIB.zipunknown c88a9924f0406766749229b31bbad677241679573fd9feae804272700b031161n/a 
2022-09-28JZtrMzAgOhs.zipunknown 82601c1f8189ff90bd564eeb8faac47e0d852aa79ced859b11277fcd51890cf4n/a