URLhaus Database

You are currently viewing the URLhaus database entry for https://ubeil.mx/or/nmniimai which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:2322170
URL: https://ubeil.mx/or/nmniimai
URL Status:Offline
Host: ubeil.mx
Date added:2022-09-28 18:19:16 UTC
Last online:2022-10-26 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-09-28 22:31:15 UTC to abuse{at}hostgator[dot]com)
Takedown time:27 days, 22 hours, 30 minutes Bad (down since 2022-10-26 21:01:50 UTC)
Tags:bb H322 H436 Qakbot link qbot link Quakbot link TR U425 zip

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-10-17FwYocDZfgXsoEeaIm.zipunknown 49f2660d56a67bf69ea84e162391ef925a28b9241f3816e022f5f78b20f2c1ebn/a 
2022-10-13ueNjLsWT.zipunknown 9b6d6414f89d5f02f76fb64d0a3f39f2e389d9ebec3abd7e1673b561fc286dedn/a 
2022-10-08R744742602.zipzip f8706d9ab6ddadc635ad6f87d98fdae6afabf64b96f409a400c8c8a8b849b01dVirustotal results 46.97% Quakbot
2022-10-06R922751381.zipzip dd3ad6929c66132ffe150cbeb4d38ec2178236e6650b47bf1266a4e9c5ee50f9Virustotal results 17.24% Quakbot
2022-10-05Co3717366693.zipzip f4877f6b9059f151e22a0f95ad072002e595d9829fdb8194b0fb1ee64d2fbaf7n/a Quakbot
2022-10-01Card1266650931.zipzip f6eb71c1a5c5faa03f0dda518d75dd1ba521fae1de99af3576c7ae9d4903659fVirustotal results 16.39% 
2022-09-29Gall2413231562.zipzip ca462bc9370acec301ece182c5b2f42927aaf781572920f5a7be004fc21be845Virustotal results 1.61% 
2022-09-29peuTrtmeo2265393731.zipzip a4d4eec03b3663b2eef8734825a09ed1854125434b54b8e7afb191aeabb88837Virustotal results 3.17% 
2022-09-28Autemvoluptas766808451.zipzip 9249a9533cd3fe595b8e3e140a69bcad84064aeadea49feec6b9ee3336d12611n/a