URLhaus Database

You are currently viewing the URLhaus database entry for http://wqok85qtq.net/nz/debug which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3892531
URL: http://wqok85qtq.net/nz/debug
URL Status:flame Online (spreading malware for 21 days, 0 hours, 30 minutes)
Host: wqok85qtq.net
Date added:2026-07-27 11:03:17 UTC
Threat:Malware download Malware download
URLhaus blocklist:Blocked
Spamhaus DBL :Abused domain (botnet C&C)
SURBL :Blocked
Quad9 :Blocked
AdGuard :Blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Blocked
OpenBLD :Blocked
DNS4EU :Not blocked
Reporter: burger
Abuse complaint sent (?): Yes (2026-07-27 11:04:19 UTC to abuse{at}swissnetwork[dot]io)
Tags:botnetdomain mirai link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2026-08-04n/aelf c27cc06efd48dc2d6bcbe8153f5ee23574a85f0a87878f579929c50dcbd32f2an/aMirai
2026-08-03n/aelf c3c4f28ac31b86c7b7212831712cbd11bdd58155e57e4e21200754c691992150n/aMirai
2026-08-01n/aelf 40acd47d0acd2b1ef4d0ff434160c7da6232009deece35ea4b5bded0dd58aecen/aMirai
2026-08-01n/aelf d3e23fc669e19733d228929d75aa4a4b1751f51ff1c37ab1a232830c46468e42n/aMirai
2026-07-31n/aelf 4d06ee35585d5afede175f776e6041804d7cbf95ba8146d5d2404a8b39af8c3bn/aMirai
2026-07-31n/aelf 5fc0a59adeec5452af90ecd17f5d909309e86c6ae632fde01748a1e7814d823dn/aMirai
2026-07-27n/aelf 47260b2c5e4d49f0c738bb26b86582effd1ec9faf57de44ae6feab291071d55cn/aMirai