URLhaus Database

You are currently viewing the URLhaus database entry for https://gwinatelier.com/sq/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2630080
URL: https://gwinatelier.com/sq/
URL Status:Offline
Host: gwinatelier.com
Date added:2023-05-11 16:31:15 UTC
Last online:2023-05-13 22:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-11 16:32:34 UTC to abuse{at}cloudflare[dot]com)
Takedown time:2 days, 5 hours, 36 minutes Poor (down since 2023-05-13 22:08:49 UTC)
Tags:BB27 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-13Mrhylgm.jsjs b76a71fc44ca56ab5b3c5b96e0c5210a4305fa740072a954e69d5579bd88bdd8n/a 
2023-05-13Ygwdy.jsjs 65d82a4f402d62876e952c2fb26a78e5dfe8c5da18418d9bbcbb539b0ad55ca9n/a Quakbot
2023-05-13Qhio.jsjs cd3e3088584c88bd6465208e50b6e173d6fcb06e37bcfda9c4515a65975b89aen/a Quakbot
2023-05-13Qzak.jsjs a7dac5de2e3bbd978a294c5af7d78447ded3cf503e62fff348b0b867d314b17fn/a Quakbot
2023-05-13Vunaym.jsjs c86498d87030bae456b011ed8582f83b015f3c5ff4df89c25f27922ada2f9106n/a 
2023-05-13Jypyb.jsjs 1af82f4cb1e4ec50d5dc435f4aeeed3446bafb0d9ebfe6b842c7d88d08aeeb77n/a Quakbot
2023-05-13Fhcuhci.jsjs 55f245ed8db5a34d0ad2a619803b44337b14c94f0df9e14405a7e5f0b10347acn/a Quakbot
2023-05-13Tcerwm.jsjs ec4fb66f81fbd954a73b7988a7855ca3aa8bc3c697cb844132ac0f05b0dc55a6n/a 
2023-05-13Jdztiy.jsjs c5dd0fc2041ee8f0cec0472bdad0686cbb0cbfa7ff44eee4186962b3f1366508n/a Quakbot
2023-05-13Nwxfzn.jsjs 3d989c200ad8c77f4f12cfaa532ed55b4f0fe0b1e4d2d331ce71cbc75b030382n/a Quakbot
2023-05-13Tdsmhtb.jsjs 93f15d9db4602336e5bab6e353904401bb22b098fd2b5b1f3a0fe84bee48a16an/a Quakbot
2023-05-13Ngqosw.jsjs 722291ff192517affcfdea0bbc9b205c1cdc295d85b44b1c93108dfcad51a212n/a Quakbot
2023-05-13Wafjvtk.jsjs e699509e6d7dd1ca5ff032871c099a82201b9f61b56e75b37e2087d063789462n/a Quakbot
2023-05-12Lkatoc.jsjs edf6accff5735635f448d81501c3e1128de16a2b9f1ac23554dad33b47f3c06bn/a Quakbot
2023-05-12Nlupmtho.jsjs a925f4afe26fc77bad8bfa1ac9970f507b85a94e41e9815145be2de0d6c76c12n/a Quakbot
2023-05-12Gohtfchx.jsjs 24ea13a88e8a2e6128970d4ed17bb8d562eb565c2431be39cca5f352c6b9aca4n/a Quakbot
2023-05-12Troihzrf.jsjs cc328b06c0905da12bf38fdf28a706dea5192d2a47125b497e5d8276f8d35e17n/a Quakbot
2023-05-12Karl.jsjs 89bbfdee11285ef56855e00d9e11e1b55d77554e57a2f6f6be6032659bd50681n/a Quakbot
2023-05-12Tshcic.jsjs a38bde064d3cd9fcbe1f6db09e4efbe172cd0165b36ea20ee26e6aa2c46bbcf0n/a Quakbot
2023-05-12Wuhh.jsjs 3e369260b7686fa87832fc583f27445de08fa9f04672956592fcb092c0df756bn/a Quakbot
2023-05-12Qlsg.jsjs b79ed246f75a4a70ee2549efb5ad163752b1f0b9e99914214479e0ea81c8befcn/a Quakbot
2023-05-12Glqa.jsjs 2fdb7633f852b407895ef13585358859f9cdf8c6cacfc893ea27b855a51a98e5n/a Quakbot
2023-05-12Accwpoze.jsjs 3b5067f5eaa4df4dc433492437d00ee0e5071da2f1b23845fe41a06dd59ccb9fn/a Quakbot
2023-05-12Bqhmt.jsjs 0eb8ea7d2005b86867a50e047f9da332ffd13a1dc747d9f067d70d26e3bf51f7n/a Quakbot
2023-05-12Ekpado.jsjs 3ebe782ee693b90d03b87acf135429ac3ac59445aaeca5c2227ac061e8630ee1n/a Quakbot
2023-05-12Alfgieb.jsjs 20a2b92e4a58959cea4853c3ffb4cf7b2f72b86b8ed34a72c27de8a200bc35ean/a Quakbot
2023-05-12Qyqqjzgh.jsjs 4f616e8cabc77567a3d6ea6e7937172a0dd983a8a0efd030e5433addd2f9e5ean/a Quakbot
2023-05-11Xizoqeg.jsjs f764283ae08b0ed62c1ee95c375eedb154da84c131137dbf7c6d720f49c237a8n/a Quakbot
2023-05-11Ysalaqr.jsjs ece3b877ddc91439f9a2cc267cbe151f1b7ab3c245f3fff4bc563e6b6ebf40c0n/a Quakbot
2023-05-11Rtlvxt.jsjs 8b2da017f66798cdc8ec30285952905a3d0981541a422c8da738d70bc93f0325n/a Quakbot
2023-05-11Ncgbj.jsjs 86767df3f652ab81d24eb446b1a641c3e6bc9412fe72276312e3d72dde222f74n/a Quakbot
2023-05-11Ocvhbdz.jsjs 138e79681b9a85ca169139c13d41751a3cad72016a33bee6ae753c15f624669en/a Quakbot