URLhaus Database

You are currently viewing the URLhaus database entry for http://colegiovirtualonline.com/dir/nzofig/9163/NBAR_9163_29052020.zip which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:373394
URL: http://colegiovirtualonline.com/dir/nzofig/9163/NBAR_9163_29052020.zip
URL Status:Offline
Host: colegiovirtualonline.com
Date added:2020-06-01 14:01:15 UTC
Last online:2020-06-20 02:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: spamhaus
Abuse complaint sent (?): Yes (2020-06-01 14:02:09 UTC to eig-abuse{at}endurance[dot]com)
Takedown time:18 days, 12 hours, 14 minutes Bad (down since 2020-06-20 02:16:23 UTC)
Tags:Qakbot link Quakbot link zip

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-06-01NBAR_9163_29052020.zipzip 9495f1fc664ba4e9c8cc1b6e22f17c8c6e98bbd9616eb92f7ebeb60bc3b2347fn/a 
2020-06-01NBAR_9163_29052020.zipzip 9ba7169a173a56cf57e6b3ff98f3af633d37234d4dc5756bbe55b56feae9f369n/a 
2020-06-01NBAR_9163_29052020.zipzip 8fbf922f5deb11a03c027e878d5d96d0cc72f81f70c59ffae8e966fffb1d40fbn/a 
2020-06-01NBAR_9163_29052020.zipzip d2ad75d80e257b803d4b2390bb6e12eb2c71bb07150f91388a78258b0bdd4276n/a