URLhaus Database

You are currently viewing the URLhaus database entry for https://advantagemsolutions.com/rte/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2628586
URL: https://advantagemsolutions.com/rte/
URL Status:Offline
Host: advantagemsolutions.com
Date added:2023-05-10 15:08:41 UTC
Last online:2023-05-12 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?):mail Yes (Ticket DCU100113316 created on 2023-05-10 15:09:43 UTC)
Takedown time:2 days, 6 hours, 47 minutes Poor (down since 2023-05-12 21:57:39 UTC)
Tags:BB27 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-12Wykt.jsjs 3f264f0cbf27b84e2ae7a59e6fcfda9d663ab7876fa258d79ba0d36d2a340b87n/a 
2023-05-12Qhrfw.jsjs 490a045c16fe1708f880a3fe84e32c7409ca1f5af4a06d3dfda245742c2aed23n/a Quakbot
2023-05-12Pyuw.jsjs 669fa558416b84f49c0183e553395efa12da38f0ec3332f17105658044ef1408n/a Quakbot
2023-05-12Srwolpro.jsjs 939c52105b2760c2ced59c0a48845d9a8c660af807500a6387fc6e93f09b2e83n/a Quakbot
2023-05-12Lazreye.jsjs 114684786376a2ac6d549bd78736a77b9c7e1b20fd1e3466c4699432bcd9a950n/a Quakbot
2023-05-12Ebmt.jsjs 310543a35b35a3a2076f604c6f38acf90d267b989ea3f1149f97d374eb22b7d1n/a Quakbot
2023-05-12Yykuznev.jsjs e09c5b32715c7b0a0abb1356ece4698cd7ab1a022b280ff3569e521be145e779n/a Quakbot
2023-05-12Mxyc.jsjs 38c84ae1ef76e13b35baa992a0f417af291060dbc2b5a47c0e7b4c22a6ed33ban/a 
2023-05-12Owgfatec.jsjs 5d0b0bff3a5428f68f341546a288e7373ae2f81e8e9b2c6db93f43587f42dd75n/a Quakbot
2023-05-12Xddpockb.jsjs 0dcce7cb67d5574876db709e9850436ab70a0257dae1ac89231834ceb43e3326n/a 
2023-05-12Jqmqxvqb.jsjs e9457d1a1eaf53269ca6c3d846e5629f5df27a62ecedc4b1b6ad18b061c488een/a 
2023-05-12Hojrwp.jsjs adf38062fe768d07178e7c71a4d867ed812464592019303377ffbc6d6b8492fan/a Quakbot
2023-05-11Mmzc.jsjs 45fbd3c36337c387a368c4a710cb945da687e057164435c3035a43e7a6e81797n/a 
2023-05-11Lfprf.jsjs b50b587dc090a10c416077cabd771211dc9afe9165e43f5c70b0d46015ec570fn/a Quakbot
2023-05-11Jtiwg.jsjs de4a0cbc851360764893f0891141396a2373f02be94470ea03fe320d1ebc400cn/a Quakbot
2023-05-11Bfmguhra.jsjs 22ad856417a2d366d23061a10d6c36f31af5b43a0498e83d5a0c1e02d86c1269n/a Quakbot
2023-05-11Nkkqcct.jsjs 8ce57dae3807cc2b4b9a097ea3e2d5fcfe6cd470a99ab08820cf258ac774b018n/a Quakbot
2023-05-11Qadhya.jsjs a2711d4f1e9e5b97b73d5d521ecb7613fbfb777857d72542730cf4bc0bfbd7f9n/a Quakbot
2023-05-11Preqhpp.jsjs aac1f14496cf5e7383ccbf7d232ad4fbaec9b96a72948215774a66f04a10f296n/a Quakbot
2023-05-11Xwskqf.jsjs 96666ff2c849227a7bad5405f03b57c4acdd7089713ef41101c43585e7b25fa3n/a 
2023-05-11Gsalrrrl.jsjs aa2ad80f779ce492f5aff360519035ccebf04a9680c0533b43ab381dabbbb29dn/a Quakbot
2023-05-11Aztfjllc.jsjs 2738cb8e8551af1fa519f0bcdb5672a986189f1b59adcc3725056f0558a0e629n/a Quakbot
2023-05-11Nfxq.jsjs f5e86c8c604551971833312366fe91a6d5be727388a9f296ab9f60633cfcfdbcn/a Quakbot
2023-05-11Evbsl.jsjs ad787c65fdc1450f8f0bc822fc3691552458a54b042f07fb616b57b3bea21328n/a 
2023-05-11Otccazw.jsjs 7829f529fe6428213f7a4e002a558c6f09d17c39b84ad098111529bad76034f4n/a Quakbot
2023-05-11Auohdl.jsjs a61f1a90a2eb646bb20490ecdf1ecccb5d9b59ebd6887479cdcb6e2a2da2ea2en/a Quakbot
2023-05-11Ieua.jsjs 6b94b4588067a5212a01cf95a653a007a0f15ef54033380fcdd4cd6df163fa70n/a 
2023-05-11Tjap.jsjs fefa76ec9fcb3e46c3b6f1fd7e4c7a23e22e5c5cc1867c4e583df3123405799cn/a Quakbot
2023-05-10Kwlia.jsjs 04bbe31732f81e86a0028a58c8021807513650671f0cdc64db5b9f88792f891dn/a 
2023-05-10Uzsrzh.jsjs f998b4c6bd86b73067d8955d563082601c85626f1edf2994006d43e54651533en/a Quakbot
2023-05-10Vfic.jsjs 580352b7a2a21ae78bfde8cec019663c4acf9c77340b727179b742128aa1c77cn/a 
2023-05-10Hlqjh.jsjs d788695c584e7d074cea3e01287947d349b35c6f309ea154698ce512c787fd08n/a 
2023-05-10Poxywrt.jsjs 943651b9d18a72b4344dd748488e60a5fd149c2019c670c11f20359cd1eab020n/a