URLhaus Database

You are currently viewing the URLhaus database entry for https://meditourz.com/ousl/trsaqeocitucune which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:2337432
URL: https://meditourz.com/ousl/trsaqeocitucune
URL Status:Offline
Host: meditourz.com
Date added:2022-09-30 21:30:39 UTC
Last online:2022-11-25 20:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-09-30 21:31:15 UTC to abuse{at}hostgator[dot]com)
Takedown time:1 month, 25 days, 22 hours, 40 minutes Bad (down since 2022-11-25 20:11:25 UTC)
Tags:bb Qakbot link qbot link Quakbot link TR U492 zip

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-10-30AFzXPFmpckOEeV.zipunknown e7974780b5302600c3ed6d09711c117dcd50c77671e5710c47c48b584571ced8n/a 
2022-10-23BOTV.zipunknown d2b2f8d1c71cf29d009603aa23ce36b993d2a9f4e1943c43d0b4b09078db7545n/a 
2022-10-16pvWJdBJXTD.zipunknown e978dee6c814497a7c1dfc834a1b0919da5838359447e57841cfe65a7087cea2n/a 
2022-10-12kKpeOZtYOWUZQ.zipunknown 670500d3ca6be850df19d2e11636d73e0b4e0cde7a7d3a7cb17c2fa89b7e8388n/a 
2022-10-08Co3001812606.zipzip b3a328c6b6f7dc961a757c75eeb7314fdf881e29a34630986bf85394b006b2fcVirustotal results 48.48% Quakbot
2022-10-04Co4258006381.zipzip d0ab9189ed45c2f74e4c48a9e3bc61d9cfafcf5601b6a3a485d0bc45747f148dVirustotal results 3.12% 
2022-10-01G1197867917.zipzip f7c9c6e1166ac7843e7163142847e5ae4563f096c7606e61eec19ca61773b7d3Virustotal results 9.68% 
2022-09-30Card3116185940.zipzip a54dc2c8bc00f845f211ee7586b3fe437cab5f2d7b431b3edab38345e55145c9n/a