URLhaus Database

You are currently viewing the URLhaus database entry for https://koionrekber.com/srue/udqsie which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:2336418
URL: https://koionrekber.com/srue/udqsie
URL Status:Offline
Host: koionrekber.com
Date added:2022-09-30 21:22:31 UTC
Last online:2022-11-29 23:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-09-30 21:23:08 UTC to abuse{at}idnic[dot]net)
Takedown time:2 months, 0 days, 2 hours, 30 minutes Bad (down since 2022-11-29 23:53:57 UTC)
Tags:bb Qakbot link qbot link Quakbot link TR U492 zip

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-11-19eKnTiKJdlTHykvAq.zipunknown bd9885562537a7813203a31e812af8188bc6e4eae0873c09841b73c8fd7eb049n/a 
2022-10-31SWalPEDucGH.zipunknown 25e4b4d6392cf322ee84c91fa2ef371b78842cda921c4269bdca37b204e2ff8an/a 
2022-10-29VbKLDdqhrCxerWvVYA.zipunknown 6a06afcdd8b3d3e39adc49518d528ec4ab91e279820fe74fa3a3d0f5c0f289c0n/a 
2022-10-22sXSSSwpiVAdpuTsqxt.zipunknown f421b68b878c98717b07e145f09208e93f35588afe7c917abb818184ab97f47dn/a 
2022-10-16ZbDkugEYledeGL.zipunknown 40121c00efae2e098e8ca0190584f97f0bf48509b1a5014a298a9cb78c8ec38bn/a 
2022-10-12viDqCSFaoW.zipunknown 056c94d1be1db90a551f6474b49f118c6132367bb3b9a46efaa3137f721ee9can/a 
2022-10-08Co3444083006.zipzip 7eab3c9d98eb9345d6278d80fef504ab8475394a27607e5b2d5b8655b435b0c3Virustotal results 43.94% Quakbot
2022-09-30DVerTFVTL.zipunknown d3f456538023a8c236406ddedcabed6a8d4d92eb7b76629d73d2a7a1c24a500en/a