URLhaus Database

You are currently viewing the URLhaus database entry for https://raengenharias.com.br/ee/nusaaermudmrse which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:2339930
URL: https://raengenharias.com.br/ee/nusaaermudmrse
URL Status:Offline
Host: raengenharias.com.br
Date added:2022-09-30 21:55:24 UTC
Last online:2022-11-28 13:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-10-03 09:41:11 UTC to abuse{at}hostgator[dot]com,eig-net-team{at}endurance[dot]com,jayanathan[dot]muhunthan{at}endurance[dot]com)
Takedown time:1 month, 26 days, 3 hours, 43 minutes Bad (down since 2022-11-28 13:25:08 UTC)
Tags:bb Qakbot link qbot link Quakbot link TR U492 zip

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-11-19DUyqVnoaBu.zipunknown c250c947a55cae876d5c932e13a4d45ef08d621c95b32b9412e7b4d72830f562n/a 
2022-11-02mZfcGqkRWtZEc.zipunknown e6005c7700e8a5354fdce63b33361f5730f68c13e5e54e2b8962a5d419f82967n/a 
2022-10-29NdKmmkhdeqzykllURg.zipunknown 967ad7325a1d41dc58d5084403e5318b583acffd982dcff7a32d989aa374ece4n/a 
2022-10-22PZnU.zipunknown 29b7e7c4db1bbffb38e7120d4e8c1d7251c7fb944b6d597f01a2fc21528c9b6en/a 
2022-10-18YZNAwhQKtfJQYbAi.zipunknown 72ca772ce094f78e4a182a4410c9bd37f042f7d9f59f57b73b9b34d7618a04cbn/a 
2022-10-12O-369784488.zipzip d71b55eeb895be415680fd4666edf1d7aff5f66b7a244baf49e8aa2a73c509b4n/a 
2022-10-08R957768463.zipzip f045e412b4bbfdd13595eedd2002e50ac71c3f66ecbe0b265723a0ee0dbfda34Virustotal results 49.23% Quakbot
2022-10-03C1720951962.zipzip aa0a4f5056a7007debc8593b3c43cd3bb11a002038d222f1532b2c7558f38e85Virustotal results 1.61%