URLhaus Database

You are currently viewing the URLhaus database entry for https://soylajefa.cl/erti/uqultossaa which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:2321636
URL: https://soylajefa.cl/erti/uqultossaa
URL Status:Offline
Host: soylajefa.cl
Date added:2022-09-28 18:15:13 UTC
Last online:2022-11-25 16:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Status unknown
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-09-28 18:16:10 UTC to abuse{at}hostgator[dot]com)
Takedown time:1 month, 27 days, 22 hours, 36 minutes Bad (down since 2022-11-25 16:52:35 UTC)
Tags:bb H322 H436 Qakbot link qbot link Quakbot link TR U425 zip

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-10-29mSJWeKJJl.zipunknown f282f85ba388e6d09e2f216f9adb4792007d766692e2e0d17d301d10ebc2c42bn/a 
2022-10-16BZjDYaiaVMhMYohWskO.zipunknown ce1e2dddefdaa8e78d83c7c0cd4f46d395d26fd7517a0266c6bdbb264885aa0bn/a 
2022-10-12oxDKI.zipunknown 3ccdcf4222ef4e6134b29bed66d6ceef0287b530dee3fbff28080f672280e094n/a 
2022-10-10CA1364788403.zipzip ee27b12a82d912889bae04c3322960134ea3c7c9b90f645a95a897e57b4efd42n/a 
2022-10-06Co2480161258.zipzip f65983258b3238d7224fb40a2df5e0a0605c879e768be9349f9bf0cb27301b08n/a Quakbot
2022-10-01CA2854322880.zipzip 796e43680b6bc3485bfc1e54ade34315c501f2f79f70b88e31b03015976d011an/a 
2022-09-30P473542604.zipzip b9a1328f3107582e58d4fef064f2d3998b658ccc513f9e98a513f5606400d9ben/aQuakbot
2022-09-29Gall894878097.zipzip 1ba94de0e7376915c03afaf146f891c8c73cf1faab911346a83f888aa5880a56n/a 
2022-09-29wrmCzkAhDLGOIHbb.zipunknown 7306b32b29f08905adef9da04ff7c7e871de10e64ff428f284e0a86c9ada3a8cn/a 
2022-09-28JOqc.zipunknown 0408eec1b757747ab5ce74172677ca9f5b2c1606982362032b0caf0a3b8a3a48n/a