URLhaus Database

You are currently viewing the URLhaus database entry for https://ortopediawong.com/ui/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:2650093
URL: https://ortopediawong.com/ui/
URL Status:Offline
Host: ortopediawong.com
Date added:2023-06-02 11:43:13 UTC
Last online:2023-06-04 23:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-06-02 11:44:58 UTC to abuse{at}hostgator[dot]com)
Takedown time:2 days, 12 hours, 4 minutes Poor (down since 2023-06-04 23:49:41 UTC)
Tags:BB30 geofenced js Qakbot link Quakbot link TR USA zip

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-06-04document_B478_Jun_2.zipzip 8634de7894f9caffbb3a5d96b800e2094b1612a5d65b63805b27f14915b53428Virustotal results 30.65% 
2023-06-03document_A826_Jun_2.zipzip 8fdfe047b59d801abc2bb39dd93deb5c22e0123df9a2ec0075b9cd30cd4066e4Virustotal results 18.03% 
2023-06-03document_F573_Jun_2.zipzip 6073ecd5837bf68325366fdfe258f1338d32f681f97da0398d4e25dd2e6c8948Virustotal results 23.33% 
2023-06-02document_C654_Jun_2.zipzip 77c25610dc4293cc7bbac5e25a8c11eaf17eedee6c4e5122416a68f4f7610378Virustotal results 19.35% 
2023-06-02document_E658_Jun_2.zipzip c3e8be05482deb7a23174b0f04392c255598f696eb500f2f6a403d571d0fc4d3n/a Quakbot
2023-06-02document_D592_Jun_2.zipzip 7788fecadb64184d5225b3bdcf533374f63a90e5f044954e058785dbd73794d4n/a Quakbot