URLhaus Database

You are currently viewing the URLhaus database entry for https://lotusmont.com/er/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2628513
URL: https://lotusmont.com/er/
URL Status:Offline
Host: lotusmont.com
Date added:2023-05-10 15:08:28 UTC
Last online:2023-05-12 23:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-10 15:11:07 UTC to abuse{at}namecheaphosting[dot]com)
Takedown time:2 days, 8 hours, 32 minutes Poor (down since 2023-05-12 23:43:07 UTC)
Tags:BB27 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-12Yugzyvo.jsjs d3e6e4b29f9c82be3eb9d1c7be6f8878de6b987203b5b2c7f72108ed3cee1f84n/a 
2023-05-12Hzgvwngm.jsjs 9b3c87bcd366007119c8f263570c5e0fb120fece908a37a4a22ac87e4a3d3818n/a Quakbot
2023-05-12Nzjjlb.jsjs be0528c61512e97c310482b0115d03b4c8fddc0989c6ccbdbce6bb3b871ef49en/a 
2023-05-12Ldukwz.jsjs 76e1fc196996d23687b0c80d4e161a6f94788d027a8acb3f417b3a275ce0b99an/a Quakbot
2023-05-12Auegffv.jsjs 5971cc204c01f48cc52f2a5cc58bf4f9fac38592671438731af09d44f6a9b01cn/a Quakbot
2023-05-12Msvc.jsjs 4d72ce6514cca3f15b9009691d59e3eaf7c8b8315f6ccb1336e8b00e05d1b96cn/a Quakbot
2023-05-12Glcr.jsjs a49a0b40a88d06a23590ea5c67ec668d76cf44f8072b603581ecf6ad4718a258n/a Quakbot
2023-05-12Xxbnfvdz.jsjs 9ebbe859799c71b05bf31ff1f9f588a27ce7ead33a0e0d0c8232104de102e968n/a 
2023-05-12Cdwuvo.jsjs 61b18487f941c8bfdfc97cbc74e23223dfbe3253acca3472de5b1a2f9b1cb0adn/a Quakbot
2023-05-12Otaquq.jsjs a4920e1d4aa709906dffb4f06778b9d57ad2c0f6c53f2dead6558f214e12c0e5n/a Quakbot
2023-05-12Lfdc.jsjs 26e13f7e733ab586b289a0aa427e2eec94066df1c924c6bfd38b827e30734a03n/a 
2023-05-12Jmbtuw.jsjs ed36f38a4df3915d88c9045d061bb5177589d341d33cc34328beedc5f6b44bc3n/a Quakbot
2023-05-12Gfoxwea.jsjs 1034bb5a274e03a79f953365b45e942a31540c40224fc882fbdcec1493aecd19n/a Quakbot
2023-05-12Znra.jsjs 7c42634f904208272d3ccb91f3a4e98fe9c420fa2ca78ab8ba1f5be1e92eecc5n/a Quakbot
2023-05-12Shwek.jsjs 08b2bd0fb8061b8761ca58e1a218eaf2b6fc685edfcbb92f49e2febdc8457ddan/a Quakbot
2023-05-11Jqogtcax.jsjs ea4d029e3240848adb6a06ff75dfac7332fa643e569e56aad993ade5182bfde7n/a Quakbot
2023-05-11Binckks.jsjs 32056415181566f8b0a1ba65be98a76172cde596626833876a7241e71256e793n/a 
2023-05-11Zgki.jsjs 71ac401d3e7e9e146cff43d60a8d6e904c5db923ab6613fe865c656164c07be7n/a Quakbot
2023-05-11Ohttees.jsjs 5e16c7f7433ea13b14b2e98e4a4cd2e64ff69bd4a7f672a7d6cc847f26f970bbn/a 
2023-05-11Gclsuqct.jsjs 57bc252dbfee071c222283e2aec936869363f75f4733cc3c23f9c968610b9e18n/a Quakbot
2023-05-11Domotxde.jsjs 66c6042bcda841628f0d5ace46f62b4ddb3c23e9f451803617f988b452e52744n/a Quakbot
2023-05-11Alxrk.jsjs 3fd660f5f8be6c26a7f89efa5421261d2de2f61bc98e03ef100f90c3c2a716a6n/a Quakbot
2023-05-11Eoqx.jsjs 6148911457ac78663fae0640f3afc8e855f652a7a2c607ec6be544727c37fc38n/a Quakbot
2023-05-11Mgso.jsjs 72890429e9749c6e8d1eda928fdd133a0ad434b437d467696bcc9c10a005a5dan/a Quakbot
2023-05-11Dmryjdj.jsjs fd72440daa0a63948a6c7bbfc1832df92857161b38e53c97c382a3ad73aab89bn/a Quakbot
2023-05-11Fmrgsgk.jsjs 4a2465835e1ff008fdeaabd7cacbcab3f189742d918dec64cb818b6d38d431b0n/a Quakbot
2023-05-11Zgfdq.jsjs 437f691a2bae158024dacce712e6c65f293fc0065132bba6d3bf77b7f2d97ab8n/a 
2023-05-11Ppchwog.jsjs 11d7edfeffb433edf83a1572ccf9a314606b16126c476ddca17eb57603eb66e7n/a Quakbot
2023-05-11Aiwauiq.jsjs bbbc9e20807bc985c9384d7e8230cd4495fc86a2d4b662f7631c4cdda3e40723n/a Quakbot
2023-05-10Pvflefeq.jsjs 247374a96e28aed12bc595ee17c31dc23744b9dc6588b5c89b4c887a5826e138n/a Quakbot
2023-05-10Eugasrdn.jsjs 2912d83ad440ba093b21b925ee8991b93da96ba3a8e376a51511ed0f5be47e7fn/a Quakbot
2023-05-10Yddo.jsjs a06db9bbe99208d078a8f9e4206dcc75c18829cea8af9765f967eec244f369fcn/a 
2023-05-10Weco.jsjs 6cdbedadd95df4aaecb064bf1e77948b72ae07068c90c43faf68b3de2e48be90n/a Quakbot
2023-05-10Tdpwrgp.jsjs c458afef72a2df22675b2659f8b50653c6b46302943b42a4bc62438bff94675an/a Quakbot