URLhaus Database

You are currently viewing the URLhaus database entry for https://origoapp.com/teu/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2629790
URL: https://origoapp.com/teu/
URL Status:Offline
Host: origoapp.com
Date added:2023-05-11 11:58:32 UTC
Last online:2023-05-13 22:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-11 12:01:04 UTC to abuse{at}hetzner[dot]com)
Takedown time:2 days, 10 hours, 6 minutes Poor (down since 2023-05-13 22:07:18 UTC)
Tags:BB27 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-13Byped.jsjs 7977692519cee994455807aebdd5e36e76dbae83b0e73d2c2427dbbd5ae5958cn/a Quakbot
2023-05-13Eteiy.jsjs 1787f03cf0745938353e92a26a80e7f061aae4fa405cbcef309646e0f963c3c7n/a Quakbot
2023-05-13Jatlvmi.jsjs d9e876bbb8c05269467d61b8924b4110871dcbf23bc3528b4bda0d506a2e4088n/a 
2023-05-13Lebkam.jsjs ffd31f3166159499f6f1b994305fca521a799dba53b1e444c5efca6847146f91n/a Quakbot
2023-05-13Kzumjgb.jsjs fac18f7711c61f48131d8b2005455bf844aae6f993d9629e532449ed7187925bn/a Quakbot
2023-05-13Njbqdqb.jsjs c5ab7cd4ba8421d70c8f020f0ac056791d90112eb3f6bceab63bfc55a60ea85an/a Quakbot
2023-05-13Wyqlr.jsjs 71c45a0fe8f164e1bf4d69c6e2ee7cea804e146497213893b75e4636f7210db9n/a Quakbot
2023-05-13Zlqqho.jsjs b9d5289427ef7d6def02fb5fe30996b0c589e753a78804ea2c8a461f3ec9093bn/a Quakbot
2023-05-13Oviohv.jsjs 1c0c0dcea0bccab54b91d38febf9b8c7513056338ef25f07c64f4e7a68665b26n/a Quakbot
2023-05-13Fdhh.jsjs f96bf422919600063c8341dff99b074709fc1cea07efe838b6ff82c26db060acn/a Quakbot
2023-05-13Powabwt.jsjs 5f9479d46edf5a56a55ba3ff14fe727849ddbeebbb52a7685954c0a48fe33b7cn/a 
2023-05-13Qzzlj.jsjs 90ba0d6e010b81b4fba3bca7add6922ec10e6d3d11c691cf6884ed6ad3c32f62n/a Quakbot
2023-05-12Nsrntky.jsjs c2c36cb8d1ac65781ccbcff0c384f43204123d89d145d759fcebdeff56f2e005n/a Quakbot
2023-05-12Hplbonpt.jsjs 537af1d5569c6be6e89cef7bcedc3890f902eab2203e3d0b26cff79e8e4e2329n/a Quakbot
2023-05-12Biyud.jsjs cdf06bfd6a189e3a91b8bc85559c2c13bec240006212076288f01ce7bf452bb2n/a Quakbot
2023-05-12Ujeispby.jsjs 5b0c3d8fad279dc85f278f91c8e30b3281149c477c9a732a82405dc637757997n/a Quakbot
2023-05-12Mucdbx.jsjs 6723c734274a891b755210b3224edcff2d733203f5389e7fe6667693d0b3231dn/a Quakbot
2023-05-12Gfeogi.jsjs dbf680e39cedb2d14d3f663db0a82a51b9bda663480cdc7979c5d6777d593f2cn/a Quakbot
2023-05-12Ffkj.jsjs 9a2f01f0b63134bd5a623e40b3e18e9ff300066b7e2faa024b97a067b535d949n/a Quakbot
2023-05-12Jfcmvwte.jsjs ab8d1089ae7d7dfcb11e1ff75f0de9c8b82e0fb2881adb47b1ff550a71c7b958n/a Quakbot
2023-05-12Yktgnbz.jsjs 7a2528cbdd60b44dc3b0d6111e558f3e802746ccee84eb293c74de2e33cfc93dn/a Quakbot
2023-05-12Gqis.jsjs 2357ff0e0995f7ee3d355c67efd213aa831fc44a55ce4a667d58993038f21b6fn/a Quakbot
2023-05-12Japfwgh.jsjs 24927bd97051be40cc07b9b9e159abe4fa1b8e55a4672e6f9e326069bbced29cn/a Quakbot
2023-05-12Ibxwxo.jsjs 16f1df13b75588229d199550aed725c5e8e4fbac2f19b09f77f0b2da973afb1fn/a 
2023-05-12Eepdwasb.jsjs 43813c5d7b5a083470c52db5641ec945ea1adfed32baf1d5f3f7202fb3ce33e8n/a Quakbot
2023-05-12Rczsfxq.jsjs acf4fd4d1b39c485eb4aef5d8e2c67c31853431ecd34d3c3d71be146f7b82ff6n/a Quakbot
2023-05-12Twftpr.jsjs 1664ca380dc92e22421fdcd60a2987e50913d7ac1676f1f78920db0e0f009725n/a 
2023-05-11Dnqqf.jsjs 02177cbe1d91eb35162204b1d18570a4041d083ac1f3ee3e36a68703a358b4ben/a Quakbot
2023-05-11Dvesfm.jsjs 952dffaf42ab068e1a1c7acdc5fa61e502f73202820e3203d046a816a2b86d91n/a Quakbot
2023-05-11Deooe.jsjs e4168f28359160ffc4a01b1917ef59f1f3fd82ed71ed5540505a77ecd5fd7419n/a Quakbot
2023-05-11Ovexlby.jsjs 6bd377e84497f085e69530d403f6d497084c52ef753eb70f6e99894077aae147n/a Quakbot
2023-05-11Ysqj.jsjs 850f3299ee9d0fc16c072ec125bc758a36f67573fd765c15d4917dfb3f7dacb5n/a Quakbot
2023-05-11Ebuyb.jsjs 212426b1c260dfe146827785bfaa76c060a5fa1288378c93f4d73cba3dc1a601n/a 
2023-05-11Olsnwom.jsjs 043c5fcd2c95d3bcf16b674c0946e34985f412384e1f4eb606ab1548dcc56995n/a Quakbot