URLhaus Database

You are currently viewing the URLhaus database entry for https://raengenharias.com.br/ee/etmdxmioia which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:2339805
URL: https://raengenharias.com.br/ee/etmdxmioia
URL Status:Offline
Host: raengenharias.com.br
Date added:2022-09-30 21:54:11 UTC
Last online:2022-11-29 11:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-10-02 17:48:12 UTC to abuse{at}hostgator[dot]com,eig-net-team{at}endurance[dot]com,jayanathan[dot]muhunthan{at}endurance[dot]com)
Takedown time:1 month, 27 days, 18 hours, 8 minutes Bad (down since 2022-11-29 11:56:26 UTC)
Tags:bb Qakbot link qbot link Quakbot link TR U492 zip

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-11-21HvVGL.zipunknown 75c8b01ee5461094767594e05707d80858fde386fd4bec5a3e33165ce8a2bf7en/a 
2022-11-18MlvtoLggsfF.zipunknown 5f923b27c0a7772fdde2f2ecc988a76fe3e734c80b5443854626cb57e405ffd0n/a 
2022-11-01dnRHklB.zipunknown 18b4f925aa4f9b2150d1961afbd4c203a5b755a49581fb08543470e8a81302b2n/a 
2022-10-29zyyvdgZYRppszIkYHqN.zipunknown 9119595e6d42e4e002806dad09fc653665a5913d102576f1b02bf669ee693689n/a 
2022-10-22buZlYTqHWfiNGIyED.zipunknown b24d24b67da0eac817d4c2632916ac6322b360094714c93bfe196412258352b3n/a 
2022-10-17GJipshkFFU.zipunknown 6702e22cc30eee04bb692408cbe84ff1814fdb9eac328b7da9df79c4067858ccn/a 
2022-10-12Of896665177.zipzip f4355dd4cae63c0365bcb9e150795088097fdf75395f7cf30d8d2394270d2a61Virustotal results 3.12% 
2022-10-05Co2176226509.zipzip 24925c876fc420837fa382c4ac274a25b593aa8a07ee7c8015208eec25e38f4en/a Quakbot
2022-10-02CA2484721695.zipzip 4271c462c97ebf6b7320a3af6cf6617cb1c439730f0879f7e29927f2acb333f3n/a