URLhaus Database

You are currently viewing the URLhaus database entry for https://mubarikimpex.com.pk/tedo/gtmanesi which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:2346373
URL: https://mubarikimpex.com.pk/tedo/gtmanesi
URL Status:Offline
Host: mubarikimpex.com.pk
Date added:2022-10-03 14:57:39 UTC
Last online:2022-12-01 05:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-10-03 14:58:14 UTC to abuse{at}hostgator[dot]com)
Takedown time:1 month, 28 days, 14 hours, 51 minutes Bad (down since 2022-12-01 05:49:55 UTC)
Tags:bb Qakbot link qbot link Quakbot link R871 TR zip

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-11-27dxsuISVcxP.zipunknown 55e8df55c0ffcaab8d88b9a56d117a38b1ff25e43bfb6fe2d72780515c93b399n/a 
2022-11-20upEUgb.zipunknown 6f5562353d839dbfbba6a695502ae38ccab1f4d1ad595956b1627ac73278977fn/a 
2022-11-16BGFcYFXWmOuYSHA.zipunknown 63d22ad4f40c037ac600d013147287677c3d280440d3da00bb81c0278e389217n/a 
2022-11-03CBUMi.zipunknown fdf1ccdf4b6db4e015f151acfc0e6e119a7248f494346b1168cace5e042731afn/a 
2022-10-27FtdFDOBl.zipunknown 51e2228c44444efb2ef50a333a8e3d3e1ebade01c95b579e523243452b6d7a7dn/a 
2022-10-17HbTKKXZgxAKd.zipunknown 280f00127da403e985432073b863c8b790fe071c8b61884ff2aaf9580da7a56dn/a 
2022-10-12Of2689802915.zipzip 2e9e27ca5033cc41bd97270b2ae5ab9b6f5837ec7f11e8dfbf81db88498f8ebaVirustotal results 1.56% 
2022-10-09Co385069479.zipzip c35e08c456bd4a234cdd2ae4c413c35359e42358fd7dedc98a00adf267e8bfcbVirustotal results 46.97% Quakbot
2022-10-09R1161848990.zipzip 46bcd1597937b3aa700f27816a607c9454cf143e7813542cbf9f5804ed6b7ea6Virustotal results 42.42% Quakbot
2022-10-06R2581080914.zipzip 41eca56cb5104fa1a89c2143ff08355e5c67b58b8ee6556a0d051bb45c94bf68Virustotal results 21.21% Quakbot
2022-10-03Co1733488847.zipzip 53da055e68bbe7ea7ef96296702d1a677d87d0818b0c2ed79209c784cd2f45dfn/a