URLhaus Database

You are currently viewing the URLhaus database entry for https://prauditores.com/ut/rqathueaum which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:2339535
URL: https://prauditores.com/ut/rqathueaum
URL Status:Offline
Host: prauditores.com
Date added:2022-09-30 21:53:02 UTC
Last online:2022-12-02 02:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-10-02 17:20:12 UTC to abuse{at}bluehost[dot]com)
Takedown time:2 months, 0 days, 9 hours, 2 minutes Bad (down since 2022-12-02 02:22:15 UTC)
Tags:bb Qakbot link qbot link Quakbot link TR U492 zip

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-11-27dkyppWqwI.zipunknown cacdbba39c41ceb9a714ac9e2d33add8c083dda55486a8d86cf26f338208ea1cn/a 
2022-11-25RrewB.zipunknown d56890582fb622eab582a89afea6c6a738cb846f7b84edb8967eff2085dd1695n/a 
2022-11-05EQsHoGN.zipunknown 4418cf0656f568784b89e43fdd351c2ac233048f39371a63a9b5145bbf911d6an/a 
2022-10-24VEOeTIzgIZOzUZDslyl.zipunknown bea443e3bd0f17bdc5f301d1856553bb684229f564ec86cbfce492fb6491ad07n/a 
2022-10-21zkzArCMGmBlmUyizd.zipunknown f3f2c1469e48a00f290a83b511d4852a30d3568dd9355307d88ffa4ca8088717n/a 
2022-10-18YzPXrkGWR.zipunknown 7820c3d7fb133f671d3f58610d306f9fe18f5c9c5f4e99ad282506fd920ac49cn/a 
2022-10-11Of265326508.zipzip fad7710d7df491a719e28653bcb12c23adc495f584783d3be403fdfc31c7afb6n/a 
2022-10-08Co2352367232.zipzip fb6e1945e49c7284a52d5d8116318db9fb655a7898e5c76bdf796cf252a5416eVirustotal results 20.00% Quakbot
2022-10-05G3509290216.zipzip 8e9b09223a6b2bbe4163e7c98b9669fac1db5922d5d1847468eec9a05695e53aVirustotal results 20.31% Quakbot
2022-10-02C3409814885.zipzip d3fea6e0072690984b9009964a24aa626e0b44cde1a920ee4d23cecedb714517Virustotal results 3.23%