URLhaus Database

You are currently viewing the URLhaus database entry for https://prauditores.com/ut/llsoabluuoridn which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:2339506
URL: https://prauditores.com/ut/llsoabluuoridn
URL Status:Offline
Host: prauditores.com
Date added:2022-09-30 21:52:54 UTC
Last online:2022-11-28 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-10-03 10:08:11 UTC to abuse{at}bluehost[dot]com)
Takedown time:1 month, 26 days, 11 hours, 48 minutes Bad (down since 2022-11-28 21:56:55 UTC)
Tags:bb Qakbot link qbot link Quakbot link TR U492 zip

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-11-23xMGeWlvnvutn.zipunknown 977f91e67efc4b4fa8613bc59dd66398e0ffe20b9b791a24b284bbde90eff61bn/a 
2022-11-02qzeSDgMnai.zipunknown c493d46419562fb0a06ebf426b090ed4f10d45b0d72c3a6d3e37ca73dd566214n/a 
2022-10-25raTeumu.zipunknown 43e8e8f15c1ea464e7e45a1aa51bdf9aac71847c0f4b1f48c0b0a75754f88838n/a 
2022-10-23Ldwosjqg.zipunknown 1ccf981380cc704ed66a7ff0273e7bc936b029a871af03cd758f6448cafe054an/a 
2022-10-19owSUU.zipunknown 0e8ca55839e977b9a41f78db920dfa78a88008bee998c8fde2bd20a5f5ff2d29n/a 
2022-10-14qPHfjKhbvjrPPHIGV.zipunknown 3fc4aa29d6e8b4ba9db9dc41d53656eb1ebe42d5f2594fbe0b95af2835930153n/a 
2022-10-08amutuC3250160930.zipzip aafa7b2666538e25cf45f431517f7f60fd51a4e9593627d92b98c5cd4fe045c9Virustotal results 53.03% Quakbot
2022-10-06C3569185003.zipzip f3cb8ef35a194913e498e5f09274ef27542a6d719b8ea468ddda1c71f0b2b891Virustotal results 21.21% Quakbot
2022-10-03Card2567581717.zipzip 9d8e0ebc45c9b1bfdd80fef8c60eede4efa12ff392c757d3b9a517c1c9f7bc6cVirustotal results 14.52%