URLhaus Database

You are currently viewing the URLhaus database entry for https://autoimporte.com.br/upe/rdemhipenerutree which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:2328597
URL: https://autoimporte.com.br/upe/rdemhipenerutree
URL Status:Offline
Host: autoimporte.com.br
Date added:2022-09-30 20:20:28 UTC
Last online:2022-10-27 11:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Status unknown
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-09-30 20:21:09 UTC to abuse{at}hostgator[dot]com,eig-net-team{at}endurance[dot]com,jayanathan[dot]muhunthan{at}endurance[dot]com)
Takedown time:26 days, 15 hours, 37 minutes Bad (down since 2022-10-27 11:58:15 UTC)
Tags:bb Qakbot link qbot link Quakbot link TR U492 zip

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-10-18eLKvByLlmtWc.zipunknown 581cdc4648a4dfcb5a21c49b7b056c7255bf057136c7807af00b434ed00d0eb6n/a 
2022-10-13txVEtcVRF.zipunknown e18bd4805a16f8764a42604b738b218353e120b5ddce57d0fa9ab53ce0a66a98n/a 
2022-10-10R2968997381.zipzip ec8d524589727760712056d25527812ef235527bb2b45b766b8cfb126ecf0462Virustotal results 48.48% Quakbot
2022-10-07ArtItem2148188687.zipzip efbf43ad9cf1389a07803cb05792af3f4fbd933f53d0ea411052385034cefc34Virustotal results 48.48% Quakbot
2022-10-05pzSTyBY.zipunknown 42de53d137ec2c1c65c5cf900ff8b2f80027b6c248e06b459281c9b899887512n/a 
2022-10-02CA1310396701.zipzip 30591f44e5f942962366921afa7197e7c710ce4f2f6dae9981861eaa8245879fVirustotal results 14.52% 
2022-09-30bYIIIcFkeBNcNflUG.zipunknown 8dc26147448dc196b1833404bde76900d6e6b7f5ce9447b26b04cf38ba68a20cn/a