URLhaus Database

You are currently viewing the URLhaus database entry for https://idrogeolab.it/oaem/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2640716
URL: https://idrogeolab.it/oaem/
URL Status:Offline
Host: idrogeolab.it
Date added:2023-05-25 12:00:16 UTC
Last online:2023-05-27 22:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-25 12:01:48 UTC to abuse{at}register[dot]it)
Takedown time:2 days, 10 hours, 22 minutes Poor (down since 2023-05-27 22:24:38 UTC)
Tags:BB29 geofenced js Pikabot Qakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-27671.zipzip 554f63cf90efd48c4f9f12f45009fd6b4b8cdf30e448cd87535db81125dca4f5Virustotal results 20.97% 
2023-05-27921.zipzip 7a7a06cfcaaac758feb46130f040151cd34231c780450565ff5a27ac4a3deab7Virustotal results 27.42% 
2023-05-27354.zipzip 5c95d74a8f4b5b38aa9e4bc0feaeeb63278de2e3ed6b6269f21e82596382dc15Virustotal results 19.35% 
2023-05-27233.zipzip 74dc850934bde1dbf5296898cfc577bf128d7fbc56545c7929c50aef7c725ec0Virustotal results 21.31% 
2023-05-27197.zipzip e36ed36f59d9f591f6cdd2bd38a28cd405a7270c3d17c7e7ee8f0eeed51b58a4Virustotal results 19.35% 
2023-05-27475.zipzip d61e8aefe1de0fa7df53a790207c9b646e7740015514568d6c8f984f9a03f213Virustotal results 17.74% 
2023-05-27188.zipzip 0c4bcb4e446eeb924946b82b4b5044b7f40f1ba0137166871487bce23207020fVirustotal results 24.19% 
2023-05-27881.zipzip c40adcfb00e3a2342bcdc0cfddac2992584a7b09623a86589cdad5cc88baf3a3n/a 
2023-05-27657.zipzip 8e2608a33af421b00c3c5ac059965bfd07807a88e8dc835af31a3a35039b36c8Virustotal results 20.97% 
2023-05-26164.zipzip c8c0e42335d2cdfea7f50e3366110b20ae3a1ec09eae3ab14c102ce450a8c445Virustotal results 25.00% 
2023-05-26799.zipzip 35ccc3ead43c81f9ec75bcea373dcb0617854daba6e773ed31aa9cbd8be19ac9Virustotal results 24.19% 
2023-05-26176.zipzip b1646fa3136c4fa3646607578fcd786b51d264ed2f6113c1445d3920f8cc2c82Virustotal results 19.35% 
2023-05-26203.zipzip 22c6aeec61abc8544e82a1654cb1f1b1ca67402e7c57a992b760299c0a0c8032Virustotal results 17.74% 
2023-05-2662.zipzip 3ed2185fbd1c6200de3b6c7377fa8b50dc7bc7781a3dbf30df6b56b8ddc4a056Virustotal results 24.59% 
2023-05-26697.zipzip c1a5657dcd2a12dbb7b1dca5847963e72661f8aa2059ccb16233f656101f9c9fVirustotal results 22.58% 
2023-05-26611.zipzip 4bd30ab0cb4ccf1001cd067868407244ca9335d893108c9afe7859b7bbd90c67Virustotal results 14.89% 
2023-05-26521.zipzip 4fe32958940ced183573e6d8ad9006b33bc4214dd172c2444987b8616c487514Virustotal results 24.19% 
2023-05-26502.zipzip 6655567cd9c19359a968fe4f4cd3f383a5476572fa207b3f1872ac1e0e28fd2bVirustotal results 20.37% 
2023-05-26411.zipzip f3920a7006602ca491ae98ebdbbb0e959684bf7a591c35547c9564b01be31d95Virustotal results 16.36% 
2023-05-26845.zipzip 93d4354431b3e348d540575eb7ca40710ec6421ca3507a753a23027dfc6fd7e7Virustotal results 23.33% 
2023-05-26951.zipzip 9dc5367565f24c2cfaa99d38a11602cbc648c42415f40c1294182a9debe1e7d5n/a 
2023-05-2640.zipzip f3660b535d433a943447087142d7d7926a1a1121f704a75367865abe01180b0eVirustotal results 19.35% 
2023-05-25264.zipzip b7b72574296dcca82af706abb0972d151cdc86a171e2a08398fb0c35d64d39ceVirustotal results 18.03% 
2023-05-25589.zipzip c451ff54f253df1412fec3913fc1b216484f6a9bc69d95443fd40ceee9056bc6Virustotal results 27.42% 
2023-05-25696.zipzip c8d9d7b0f3b124f9b4c34c014f6e3d0f4f7206064db553358e60c1ab03f817e2Virustotal results 17.74% 
2023-05-25190.zipzip df08c1da8851745c641eaf64d4b930804f8b1e200ff4da8fcbb3f0b483057b6bn/a 
2023-05-25450.zipzip 01f1b2ff4e523ea5ae56c8439962a030f05c1ee4096be5d93231a2830d22378bn/a 
2023-05-25741.zipzip 3257e69fb1e0c27d7cac1ce85f2c4156797be1979e33744e991a1e1998a3b281n/aPikabot