URLhaus Database

You are currently viewing the URLhaus database entry for https://ortopediawong.com/iai/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2645652
URL: https://ortopediawong.com/iai/?1
URL Status:Offline
Host: ortopediawong.com
Date added:2023-05-30 12:09:19 UTC
Last online:2023-05-31 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-30 12:11:18 UTC to abuse{at}hostgator[dot]com)
Takedown time:1 day, 9 hours, 29 minutes Poor (down since 2023-05-31 21:40:55 UTC)
Tags:BB30 geofenced js Qakbot link Quakbot link USA zip

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-31doc_A490_May_31.zipzip f3c88102537a39b097545fbe1d483a99b3afed9e000045b84af1b02d8822811cVirustotal results 17.74% Quakbot
2023-05-31doc_F369_May_31.zipzip efc088e22dc5c5cbc46bc16199c0a96e31d033b2e978a0662b7385f6ff42c2a7n/a Quakbot
2023-05-31doc_A804_May_31.zipzip c908cf76bbcfb57c8cf329473659e248639faf231c1f6da936f18d96a6b8f8a2n/a 
2023-05-31doc_F783_May_31.zipzip b16be3423e2fad35afd209b6c085ce3b8c0e542fc0e6278f29ffe22da2532de3n/a Quakbot
2023-05-31doc_F825_May_31.zipzip 3adfec6c1c674f1f688cf751a1015179e8a30bd1a7883c32c965f232a51eabc4n/a Quakbot
2023-05-31doc_F624_May_30.zipzip cdb124089c19dbd22b9ebe01d1f08f436c147a76f13f652580a7cff35fe5215fVirustotal results 17.74% Quakbot
2023-05-31doc_F270_May_30.zipzip 7f18aaf2b6dfa650047bba74a25fabdef9c2d2f769cad97b275dddf494260a46Virustotal results 19.35% Quakbot
2023-05-31doc_C413_May_30.zipzip 5ca8c9840cf72649809650b6439efaefd839c960ab31ffba92d79a7acef46831Virustotal results 19.35% Quakbot
2023-05-31doc_F062_May_30.zipzip 69fed9d28ae3edd49c6abc5ea553d6f997cdf96a8acdab77bb45390a00291621Virustotal results 17.74% Quakbot
2023-05-31doc_D401_May_30.zipzip 1cfdb0b578578a3ef3ff839a46bee0b8fcf7334c6437fea1c74e7966ac6e2c61Virustotal results 17.74% Quakbot
2023-05-31doc_C430_May_30.zipzip ddf4a945fdca3cbe8022aba958decbcf2c147751a36b32ce0abb8d4b5111b0f9Virustotal results 19.35% Quakbot
2023-05-31doc_F794_May_30.zipzip 6f015409ae881e08814f6aabe17dcf93a37249fd0820fa0e5f932af67848b50fVirustotal results 19.35% Quakbot
2023-05-30doc_B034_May_30.zipzip 88df59bd33d87b6819df11e144c97172de1ea6dd1174b63d512b311d97ebeb03Virustotal results 17.74% Quakbot
2023-05-30doc_B048_May_30.zipzip ac093215c7cae84e5a0e99186a8038f0526839f1fd1a8564d78c00f2182e1796Virustotal results 18.03% Quakbot
2023-05-30doc_C149_May_30.zipzip 02226a8f5fa4c02a85889f513ad21dfeb90f72b6731ca2345192f8e47058129eVirustotal results 17.74% Quakbot
2023-05-30doc_C082_May_30.zipzip 8c9b34d4cb7d40982de49ad0976fc7e4413fdcf231b43c672855d43101bd66den/a Quakbot
2023-05-30doc_B519_May_30.zipzip c9fef9cf478ae9a843018ef1c7fed0b024168b6a83ceb59797d339fc74b9ef44n/a Quakbot
2023-05-30doc_A485_May_30.zipzip 7630eae42413456d1f5e75eea184dd62bd66a464cf05d5ad34d6e1e9527958d8n/a Quakbot
2023-05-30doc_F574_May_30.zipzip 6701cefb9f629ac2e836e40c7f650754e5f3d0ec02365d170e9a941d7039602cn/a Quakbot