URLhaus Database

You are currently viewing the URLhaus database entry for https://prauditores.com/ut/tuni which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:2339777
URL: https://prauditores.com/ut/tuni
URL Status:Offline
Host: prauditores.com
Date added:2022-09-30 21:54:03 UTC
Last online:2022-11-29 03:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-10-01 10:13:12 UTC to abuse{at}bluehost[dot]com)
Takedown time:1 month, 28 days, 17 hours, 24 minutes Bad (down since 2022-11-29 03:38:03 UTC)
Tags:bb Qakbot link qbot link Quakbot link TR U492 zip

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-11-20mOTdggOlbhGJf.zipunknown ee4bc98fe90845b4eb86e021b6c43eff07f26582e5a9c726e3110d73e88315f0n/a 
2022-11-17KzKwWSCkVaAApX.zipunknown f2a1a7a132112bf15d61f516f7938eaec6f179c58d1ab0738a49bf0d50c5f4bfn/a 
2022-11-02jEuhdiaOWZyRND.zipunknown 21304d36b4c4b0e84ebab451424d2aacc137dfc9b989afe6bcd93fd87e3b3f1dn/a 
2022-10-30mGiwSnYAiiWyxsOapxi.zipunknown 40e27f21c5e8764fb7ed2f3259213d07f7f35cafc26df6f9dfe2de8402b97624n/a 
2022-10-20Gmxk.zipunknown 25164098df615899fd758f8b36bdf1d8f03b50b1029cc5f40bd0f129b8e0371en/a 
2022-10-12Of2559022284.zipzip fce777ec95fa3493ca3512e127cf8e6a3d3e6b89c6d25dde456852cd6eef6361n/a 
2022-10-10NE2036436666.zipzip e0c6332cdf328f224b325e5204bf427b624497cd570982ed7e6c2009df599237n/a 
2022-10-07C2365489982.zipzip e21de4cc5b7901cfad44688c271b14c0221b8d5caba05510800424becb860b7bVirustotal results 47.69% Quakbot
2022-10-04R111509759.zipzip 1010d0ae02cfdd303fece734e0cf0f13037b8c189670884c9a485819a65a22b7Virustotal results 5.08% 
2022-10-01C1113677742.zipzip d16fc3d190a0ae7cc1cd8988f30d4f5910cfc2ad7b9c012bb7cc3904f2d5f166Virustotal results 3.17%