URLhaus Database

You are currently viewing the URLhaus database entry for https://redepintadas.org.br/uoqo/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2646268
URL: https://redepintadas.org.br/uoqo/?1
URL Status:Offline
Host: redepintadas.org.br
Date added:2023-05-30 16:50:38 UTC
Last online:2023-05-31 22:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-30 16:55:52 UTC to abuse{at}hostgator[dot]com,eig-net-team{at}endurance[dot]com,jayanathan[dot]muhunthan{at}endurance[dot]com)
Takedown time:1 day, 5 hours, 48 minutes Poor (down since 2023-05-31 22:44:45 UTC)
Tags:BB30 geofenced js Qakbot link Quakbot link USA zip

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-31doc_E298_May_31.zipzip dac97641a1da8a60264194a455c1b9014ad25d2bfae709c6fcdffd85b7a52446Virustotal results 20.97% Quakbot
2023-05-31doc_A658_May_31.zipzip 3b2bdd074dd68d297514d28bd84d74dd84d50906d381b6a6c5f9d8c460dbbb1dVirustotal results 22.64% Quakbot
2023-05-31doc_B738_May_31.zipzip a8c93c9f3ae74697faa06d676e8320e61dbc2d008ec38b979e53c23d08ced715n/a Quakbot
2023-05-31doc_C742_May_31.zipzip 9c724c953bcdfdbac1ae515cd816d084eb11f6b215422c06afc521ae16e899fdVirustotal results 22.95% Quakbot
2023-05-31doc_E124_May_31.zipzip 64b34d36257981c1f268c0da8b0a630ebd75adad978c777527ddba5a66a0855cn/a Quakbot
2023-05-31doc_B021_May_31.zipzip 31cfad9e10eb3ddd44a33c48a0467aafa8bf7b9246022afdde473cd9159ebc02n/a Quakbot
2023-05-31doc_C031_May_30.zipzip 78f6d4a7a4f14920ebbe18d4003e85d6a0c77d4dfb0181a61f898f906ce19d37Virustotal results 19.35% Quakbot
2023-05-31doc_B917_May_30.zipzip 3db115df6b5751ae2102e1c87c2dd9a3a9677e7493b2e51fe20ae6414a066ba9Virustotal results 20.00% Quakbot
2023-05-31doc_E792_May_30.zipzip be53fbb6f3076252331d8dbe38c4bcae82d0e820ff52c0d7c8ce0948f0020df3Virustotal results 17.74% Quakbot
2023-05-31doc_E657_May_30.zipzip 8df2ffe7b18e0ba364650e8fdc5197ffb992b5d49ec1a23c96646a856e5615a2Virustotal results 17.74% Quakbot
2023-05-31doc_B907_May_30.zipzip 561dcf584b0f1395357af7aad34952da510a2a7bbb21277514923c9f976e4bddVirustotal results 19.35% Quakbot
2023-05-31doc_F738_May_30.zipzip e2cdb8ff7f94e41a93f4fd86dc9c6b130521476bfd6b7a7a703e37db6d20933cVirustotal results 19.35% Quakbot
2023-05-30doc_A241_May_30.zipzip 391008e530673ff31b2b6d0dba31275d70b84d63b7cd0d8fd33ce1734ef93b6cVirustotal results 18.03% Quakbot
2023-05-30doc_D268_May_30.zipzip f823b0eb7c1876de0284f06d854436d8b4f350fc86688142083ca1f42d3c93d9Virustotal results 20.97% Quakbot
2023-05-30doc_A729_May_30.zipzip e7d312a504cc31c9fad418b18d0f486d51903f63d43232a13d05e83f6a728deaVirustotal results 19.35% Quakbot
2023-05-30doc_D408_May_30.zipzip 2968e72d7f447ca023875b73bd0fc95a006ea350244bcf4d8231504682a795e0Virustotal results 19.35% Quakbot