URLhaus Database

You are currently viewing the URLhaus database entry for https://prauditores.com/ut/rsnmeuurt which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:2339719
URL: https://prauditores.com/ut/rsnmeuurt
URL Status:Offline
Host: prauditores.com
Date added:2022-09-30 21:53:48 UTC
Last online:2022-11-29 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-10-02 01:50:15 UTC to abuse{at}bluehost[dot]com)
Takedown time:1 month, 28 days, 20 hours, 3 minutes Bad (down since 2022-11-29 21:53:29 UTC)
Tags:bb Qakbot link qbot link Quakbot link TR U492 zip

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-11-19jmkFcmTJVGoWQ.zipunknown e4c8773f20ca4de15addedf989d0740af727a3e44e1739351c3f7f0d0d2cb0cbn/a 
2022-11-02FZgyzQMuCeS.zipunknown 4007d95d33d6f4915a7da774c111171cd3dcc882fea5c515d789898218ec5171n/a 
2022-10-29sCaZIkRenUPU.zipunknown 0d4241bd659670cb07811bf2f3a9eddfcbef7a1bcacc996573f0af92b6bd925cn/a 
2022-10-23lRasSTGsPWQ.zipunknown 2f190d5ba27d891a586233ebfed4feb3e5fb40bb4a7a657352b11d1e94deb34cn/a 
2022-10-18hlVEA.zipunknown 84fdac58a16e0558e2271b67889cf741b213c0914e5f16d0b6f780293923f9dfn/a 
2022-10-11uteruaaQqai86796636.zipzip adf1ae479da65a77ffbac0b2759bea515ae18c45589655a803100e3d7b9f2471n/a 
2022-10-09R262013336.zipzip 45fa93541020b73ac10c1ca5366beaaa32e42c669b9292550bff12179fe233afVirustotal results 36.36% Quakbot
2022-10-06C3340460029.zipzip a65c5326e6e3384291498bc4d9607d79a7abe461b6fb117b248cf416ba903ee7Virustotal results 21.21% Quakbot
2022-10-02CA3900356892.zipzip 8eba966582bdc8196f36ab45a8905fcb1cce2e9715cd94fbcfd2a5626680077aVirustotal results 3.23%