URLhaus Database

You are currently viewing the URLhaus database entry for https://prauditores.com/vuee/offerReibach which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:2370364
URL: https://prauditores.com/vuee/offerReibach
URL Status:Offline
Host: prauditores.com
Date added:2022-10-13 15:58:12 UTC
Last online:2022-11-26 16:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-10-15 11:13:10 UTC to abuse{at}bluehost[dot]com)
Takedown time:1 month, 12 days, 5 hours, 26 minutes Bad (down since 2022-11-26 16:39:13 UTC)
Tags:BB01 BNO87 iso Qakbot link qbot link Quakbot link TR zip

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-11-18J1.zipzip cb43ca0c7dfe9e1d15c1f674e6c9842a65f4dcee2672639ddf0f38accbeac98en/a 
2022-11-06D5.zipzip 9348e8abeace8e124c575f29071e665ee1c52b005e66632af9539b6655d36622Virustotal results 3.12% 
2022-11-01DV1.zipzip f79c13c36c3c9cce8f9e4e9ec4046928e38634e5b71e9622ce8ef00f65aa7b2cn/a 
2022-10-25Contract695.zipzip 72d64a704a94ec3ee068af9e75f210656e0529aaeb69f232d05033ad4e5d488an/a 
2022-10-15Orig1510221412.zipzip 95a3972d03ff1caf17810ebbe309315e09322ed1dcd600f6d941da6022aa1084n/a