URLhaus Database

You are currently viewing the URLhaus database entry for https://meditourz.com/ousl/saeeopctal which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:2337351
URL: https://meditourz.com/ousl/saeeopctal
URL Status:Offline
Host: meditourz.com
Date added:2022-09-30 21:30:17 UTC
Last online:2022-11-17 22:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-10-03 12:15:14 UTC to abuse{at}hostgator[dot]com)
Takedown time:1 month, 15 days, 10 hours, 35 minutes Bad (down since 2022-11-17 22:50:33 UTC)
Tags:bb Qakbot link qbot link Quakbot link TR U492 zip

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-10-31GXJbGIOFFymt.zipunknown d34fdf57ef44d11c3cc6ac532225fbed6233eff4a42aaaaf3a2064877a7c2375n/a 
2022-10-28uTSClnKTuExev.zipunknown 43a6d8b2f918c44b1fbb31d2d82c1f74226b9f96c1750664deb7f0554ffebc71n/a 
2022-10-16HdYKGtpLrOZC.zipunknown 8944499f89b66e715cb9d90241e4cf7237268e0efa006b8f5eae6988eb359554n/a 
2022-10-12O-1797235882.zipzip 7d0651b4929f467a5f67547aa46f205d655911a967c879825f924f9c0019fd58n/a 
2022-10-10N1633889967.zipzip 63b6c49c159671d4d4e9668f4b2ce54fb5f5b5099f9b37be5b547d186ece82b8n/a 
2022-10-06R2612165110.zipzip b3381ed4167309106100edf1f0496935b298ca50dc738ca0c335d213d7c30aa4Virustotal results 26.15% Quakbot
2022-10-05R2992014634.zipzip 84840d52bd7b3e1f88aa4b0684a678d2e10ebe1dfc20bfa966a2005fe8354c50n/a 
2022-10-03stNeeruntciuent2866456316.zipzip 4baf65b15ad7f797bbe6afc380cf1dcab7ad9ee0aa67ab3cd7e4692c1e7ff7e8Virustotal results 3.23%