URLhaus Database

You are currently viewing the URLhaus database entry for https://dsquareelectronics.com/TVU.php which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:2552217
URL: https://dsquareelectronics.com/TVU.php
URL Status:Offline
Host: dsquareelectronics.com
Date added:2023-02-27 19:39:44 UTC
Last online:2023-02-28 22:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?):mail Yes (Ticket DCU100073695 created on 2023-02-27 19:42:26 UTC)
Takedown time:1 day, 2 hours, 31 minutes Poor (down since 2023-02-28 22:13:41 UTC)
Tags:BB17 img pw764 Qakbot link qbot link Quakbot link TR zip

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-02-28StyliferousNephrectomised.zipzip be0a1c21eb58ddf81f6959c070d5804404f5e061ae8a42f8c86aa86bb19f1e0bVirustotal results 0.00% 
2023-02-27outstarted.zipzip f50cfa2027c1a0f6b6657957819e57779a29f2907191af653367513354754aceVirustotal results 0.00% 
2023-02-27assurancePapilioninae.zipzip e9b9d9930cc412ad02ef402aa94db6f002d005b21abf009ec25e4d1b69939eaen/a