URLhaus Database

You are currently viewing the URLhaus database entry for https://sdsolutionseg.com/cusc/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2646185
URL: https://sdsolutionseg.com/cusc/?1
URL Status:Offline
Host: sdsolutionseg.com
Date added:2023-05-30 16:50:29 UTC
Last online:2023-05-31 22:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?):mail Yes (Ticket DCU100124436 created on 2023-05-30 16:51:37 UTC)
Takedown time:1 day, 5 hours, 20 minutes Poor (down since 2023-05-31 22:12:23 UTC)
Tags:BB30 geofenced js Qakbot link Quakbot link USA zip

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-31doc_D245_May_31.zipzip 785938214cda39fdcd91e32d825187b4a6e51599822c286cba40ab023a512674Virustotal results 20.00% Quakbot
2023-05-31doc_C398_May_31.zipzip da6dca2235d2ed0c003abffc53e2de5176acfddb7cf4bbbc5ba6ddeab3a8c136Virustotal results 16.39% Quakbot
2023-05-31doc_E107_May_31.zipzip bf4f1bd33a669655e7078f837738d36371d83c9f42caefb2bcf4699c4557b4e7n/a Quakbot
2023-05-31doc_E638_May_31.zipzip d93b2a88b77e6a72f889f131161e78e6005eb74731b89729fca4a328342bb5b0n/a Quakbot
2023-05-31doc_D041_May_31.zipzip 5f1778a79df0fdf4984029079c01d08f1fe181bb4406b3343a84d83acb13112en/a Quakbot
2023-05-31doc_E256_May_30.zipzip 1048d5b1c9b87644f82cfe1f010587549edffa4b4e1364242859748d00fb741aVirustotal results 20.97% Quakbot
2023-05-31doc_A186_May_30.zipzip 8ac8b397427c81ffb2d0904f645d2b64ce90540220b0f4dc89601279dbb4af3bVirustotal results 19.35% 
2023-05-31doc_B587_May_30.zipzip 0886b4ea3521e11c7e319cae968d8a79723a30b08fb5623cda5900e6263d5602Virustotal results 17.74% Quakbot
2023-05-31doc_F629_May_30.zipzip 31ff640fdc16693f7093862da8818b1882d6eb20ca8a9dfefed9392b13c3c707Virustotal results 19.35% Quakbot
2023-05-31doc_A206_May_30.zipzip 4473e41b2a3e8c7a2b9e298b08a4a7fb13d6a16ff51ae1770483973757d04b0dVirustotal results 20.00% 
2023-05-31doc_A463_May_30.zipzip ca2fabf9e00e2607f4a51645f71378f36f90e978120dadc736766892f7201b76Virustotal results 19.35% Quakbot
2023-05-31doc_C286_May_30.zipzip 79ecf6bd78b2fd5c48a1285d6362b1b40ea7127339b10631b94c2bd20d73cd52Virustotal results 18.64% Quakbot
2023-05-31doc_A093_May_30.zipzip 6d7e305dbbb7981a0179aaadbb6377a11509cc7e78d0d15f432d293855c74749Virustotal results 19.35% Quakbot
2023-05-30doc_A615_May_30.zipzip cf4b07d31f0a05d76600aae08637c1942052dc84af85d28b1d6bf44ed8b1d523Virustotal results 19.35% Quakbot
2023-05-30doc_C794_May_30.zipzip ba46beb5134a9f42b2f4dabb401b983fb282252db85b706683779ce9ebc88e12Virustotal results 16.39% Quakbot