URLhaus Database

You are currently viewing the URLhaus database entry for https://autoimporte.com.br/upe/ubisqoin which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:2328501
URL: https://autoimporte.com.br/upe/ubisqoin
URL Status:Offline
Host: autoimporte.com.br
Date added:2022-09-30 20:20:12 UTC
Last online:2022-10-29 02:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Status unknown
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-10-02 11:27:10 UTC to abuse{at}hostgator[dot]com,eig-net-team{at}endurance[dot]com,jayanathan[dot]muhunthan{at}endurance[dot]com)
Takedown time:26 days, 15 hours, 24 minutes Bad (down since 2022-10-29 02:51:35 UTC)
Tags:bb Qakbot link qbot link Quakbot link TR U492 zip

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-10-24DluZyW.zipunknown 2394060c1352ec066d4e231e06ae514895147ec1321fd916e60bf1bdb4367a60n/a 
2022-10-20fhsYaAcbIbnBXP.zipunknown 728c2494349f613fe0d82211dc136421cc03ad0b9e9a43ec135eec66a67ccb17n/a 
2022-10-11Co982644158.zipzip c1725d4e600687fd7ceb60ae7fe4e0d2f7928ff26ce3d038c04875573d48e197n/a 
2022-10-02Gall1356918125.zipzip 4d59b66b11b1664b90c3e87f1d31a7b4d3de5ca281851111b80aedaf16990e2aVirustotal results 3.23%