URLhaus Database

You are currently viewing the URLhaus database entry for https://raengenharias.com.br/ee/itaicrpspistee which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:2339509
URL: https://raengenharias.com.br/ee/itaicrpspistee
URL Status:Offline
Host: raengenharias.com.br
Date added:2022-09-30 21:52:54 UTC
Last online:2022-11-28 07:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-10-03 01:44:14 UTC to abuse{at}hostgator[dot]com,eig-net-team{at}endurance[dot]com,jayanathan[dot]muhunthan{at}endurance[dot]com)
Takedown time:1 month, 26 days, 5 hours, 43 minutes Bad (down since 2022-11-28 07:27:36 UTC)
Tags:bb Qakbot link qbot link Quakbot link TR U492 zip

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-11-24FDfnJ.zipunknown 6bf6f8e00d554457c8f8609039b1096d262406c9371df33ab8803609bbe26cban/a 
2022-11-17jCxCYRtZcAwIEHvtb.zipunknown 6405a6d01d947d4c0d7c7f213040a9f8887f427db83de1b2df8c51af5acaa2f4n/a 
2022-11-05qEGfWmxl.zipunknown e1f1f7eab9fa3ecde3bdf06f9dcb0981bd575d452b83f46cad4369eb88ca69dan/a 
2022-10-28dpLaSuInNnvtRHD.zipunknown 3119be14c9f5d7e8dcc206b9b84a2858cfbcc700bb8b939f32ec0a1a0a67ce44n/a 
2022-10-22bFCablPuGQgsvU.zipunknown 0a672ad40dd75d8b044d31a34855d49f7347ceeedc636b3dd3e055d012d09b07n/a 
2022-10-15KKDqa.zipunknown c1281ccb63a0982e12c3691fd27db06cf0cc516d6b09e769c658907a35fc5bb8n/a 
2022-10-11N517946097.zipzip 8c6045af68c426db75069432769bce4fc4368410dc20a7c6c92c6053ec510ca9n/a 
2022-10-08C882617987.zipzip a6fb8a93b05c056d866d6215d7ec108e787d62825b18dcd375faeb532c7bf576Virustotal results 47.69% Quakbot
2022-10-03Card1324807104.zipzip 45351909ab9be45a07b919f64565d8328b975cfb2d9bf859d7f05d39a1259fa0Virustotal results 1.61%