URLhaus Database

You are currently viewing the URLhaus database entry for https://prauditores.com/ut/qtecsluneroauv which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:2339549
URL: https://prauditores.com/ut/qtecsluneroauv
URL Status:Offline
Host: prauditores.com
Date added:2022-09-30 21:53:04 UTC
Last online:2022-12-01 00:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-10-02 03:47:10 UTC to abuse{at}bluehost[dot]com)
Takedown time:1 month, 29 days, 20 hours, 13 minutes Bad (down since 2022-12-01 00:00:22 UTC)
Tags:bb Qakbot link qbot link Quakbot link TR U492 zip

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-11-27BLAhsJEpAGrvRywCfpP.zipunknown 50379542f2110a0f65c6ec165a92e273800518723d3199c254188ffa26a66cc6n/a 
2022-11-25EuqZvJXWrDaec.zipunknown 688270bd055b517bb9e9f86833d22a7fc34e85afbfafbac4751ecc65f4a91fe3n/a 
2022-11-16meznEZtwGmRiIPzr.zipunknown dde58dd8ac3590e61a80af26efe6b620fec1a4044c20709f00743c8369351f1an/a 
2022-11-04kZmQCDfipSSeZJNgawx.zipunknown 546e1603e1a00e2c0cd3649e5d5d54e233cfae03f37734c447968e17f98cd128n/a 
2022-10-27PPZXS.zipunknown 2a1f23feb1400ddc9584364089cb3ac9c5048bd27f2ad608a6d2184ee4d04c90n/a 
2022-10-19hOhlSiMIl.zipunknown 5156080307cbf114b2a5655d514d47b661fdfa697a4f3eef85e4fb73a4d2686bn/a 
2022-10-14CjdYMqVqsrOdSAlj.zipunknown cc0aec7e7c00d202c46a221eee08d32f4b106f550503fcbb01cc310bb5dd11e0n/a 
2022-10-10G1960045750.zipzip c5b7559f92229d20155ffe70fe47d4889751cc2dd6718d6c23874802373c08cbVirustotal results 48.48% Quakbot
2022-10-05Co4156968109.zipzip 63cacf3e3b9e49271a11397c0916b1e1608ae295919493d7c57e91af1c42d2c3Virustotal results 4.92% 
2022-10-02Card906912735.zipzip bf7a7a734978a7abacfae428513f094347445f4c2efc01abe58a32d13fb6ede2Virustotal results 16.13%