URLhaus Database

You are currently viewing the URLhaus database entry for https://wbudma.co.in/oms/titvisae which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:2322374
URL: https://wbudma.co.in/oms/titvisae
URL Status:Offline
Host: wbudma.co.in
Date added:2022-09-28 18:20:17 UTC
Last online:2022-11-28 14:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-09-28 18:21:11 UTC to abuse{at}publicdomainregistry[dot]com)
Takedown time:2 months, 0 days, 20 hours, 3 minutes Bad (down since 2022-11-28 14:24:38 UTC)
Tags:bb H322 H436 Qakbot link qbot link Quakbot link TR U425 zip

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-11-26YBhGxlEqsUcWwwI.zipunknown d47b56a3a7fb5e971bbee6872ce956075ac619e842d530c448915af37b10e38bn/a 
2022-11-18Pxeio.zipunknown 7922197c32fbff4a28049fd672f339042239e3dee3b337a28bfff99380af6477n/a 
2022-10-29TjtUFYFDRnl.zipunknown c58baa6f3a992e7d2b10c2152612d269ad1170f6a259343e655d62b31c052274n/a 
2022-10-21vleDXaOO.zipunknown 194667ff5c02f5296fab3d1dacfcefc4172afb61a81e2ae53f6bb181da3ed69fn/a 
2022-10-18kBXHpYgbGKZpMBiC.zipunknown e5a531701526b3bd84c6a5795d9f5713203bcfbd9d61a6746035fefeb968cc33n/a 
2022-10-14KMzwAZTCVkCvrXEJ.zipunknown 96f7421b5e1405a226b76f8ae8b5a9b4d6b30db416bb0c9c20f1f7fc1a42f4dbn/a 
2022-10-09Co1014871242.zipzip 8358cc75e6187342cc11d362b2bc64aafba2a1b755c90b2b176d9944bd722349Virustotal results 45.16% Quakbot
2022-10-03R19536856.zipzip 1c749d74ff556774ee58a6ff62b1b342f835d0df91450fb773860672b9ea9ec0n/a 
2022-09-30Post2993391356.zipzip b9a1328f3107582e58d4fef064f2d3998b658ccc513f9e98a513f5606400d9ben/aQuakbot
2022-09-29G1863390708.zipzip fcb739005ce96a63270d182448d87007b6bee13224b72ef33b2d4a3838b17f3aVirustotal results 3.17% 
2022-09-29FMnymhJcHYRoooS.zipunknown aced6f56a8f764fa226d3f1340fd24389eb26a58674345d78f9d4a37b011f326n/a 
2022-09-28sQtvkz.zipunknown 3620a78dd3ee2e197d453fcc7718685e68f82687c053f478ef9e163fe3ec9271n/a