URLhaus Database

You are currently viewing the URLhaus database entry for https://tipsfreehealth.com/tal/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2646487
URL: https://tipsfreehealth.com/tal/?1
URL Status:Offline
Host: tipsfreehealth.com
Date added:2023-05-30 16:51:01 UTC
Last online:2023-05-31 18:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-30 16:58:54 UTC to abuse{at}namecheaphosting[dot]com)
Takedown time:1 day, 1 hours, 45 minutes Poor (down since 2023-05-31 18:44:52 UTC)
Tags:BB30 geofenced js Qakbot link Quakbot link USA zip

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-31doc_A503_May_31.zipzip ae3bc4935765bd3502f19fca799402385d0ec5ec41cc762a81b855e12211e826n/a 
2023-05-31doc_A328_May_31.zipzip b5a8d787fd5d4801425f3b5dd00897e45b75b5de281001bf95c3fbfb64aae99aVirustotal results 20.97% Quakbot
2023-05-31doc_A216_May_31.zipzip 251b4c8bd1ae28fd511b80baf07e1a5ebcd83ac046e1adb55c2db2a1fcbbd3e2Virustotal results 22.58% Quakbot
2023-05-31doc_F350_May_31.zipzip 09c000ba9a9cd7961050a60747eb95b3d1fda55a50b0441836753ac02191b591n/a Quakbot
2023-05-31doc_E789_May_30.zipzip 85d6d6213cef8fca68bb5f73abc6f6b63d6cf0a5168a1809f1a33d8de67f3390Virustotal results 20.97% Quakbot
2023-05-31doc_F096_May_30.zipzip 3eedc5fd3a1156c0c25cc0657a5055cf4359cba1f2b52af2d9a90244c2dcaf9fVirustotal results 21.31% Quakbot
2023-05-31doc_B137_May_30.zipzip 5dbef5e1986481f3fadfe4c17b399c7c19d164b3afa00fd75492478352e74a28Virustotal results 20.97% Quakbot
2023-05-31doc_F541_May_30.zipzip 7236a03b284a361fea8ac5d7adbad270d78b45c25227a0f0c7f20d613c158739Virustotal results 19.35% Quakbot
2023-05-31doc_F416_May_30.zipzip ce0db110db0203cc22857de4bf75ecbbca69ee0c50158973815dca70d5398c43Virustotal results 19.35% Quakbot
2023-05-31doc_D495_May_30.zipzip fcef2fd6f53b550ab30522eb66ab717c9105280c44c15ff5acdad1ab940ee6baVirustotal results 19.35% Quakbot
2023-05-31doc_F647_May_30.zipzip 1da1360c51b2af0fad2c06f1bd1363b35b212873c7464f36eb1d897a1a9adb99Virustotal results 19.35% 
2023-05-30doc_D514_May_30.zipzip 7ce297fea9af3559664e9e71503e4471f3f96ec036e063a1d390ac126c520fb9Virustotal results 17.74% Quakbot
2023-05-30doc_B954_May_30.zipzip 51c27f13ca8033dd16010bd53be33c2593eee0e6bbd10575ba734f83ab3f2774n/a Quakbot
2023-05-30doc_D609_May_30.zipzip 59727a9db9d0b8c752fed96dc416d4978999e22555fca42003b2f6b39497576eVirustotal results 19.35% 
2023-05-30doc_A328_May_30.zipzip 5a7fcfe8cbf7672f59d50f7ee2d2f9f688c3c63e1152647d597fc5453dad62c2n/a Quakbot