URLhaus Database

You are currently viewing the URLhaus database entry for https://bajarly.com/mes/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2630333
URL: https://bajarly.com/mes/
URL Status:Offline
Host: bajarly.com
Date added:2023-05-12 02:27:12 UTC
Last online:2023-05-13 22:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Myrtus0x0
Abuse complaint sent (?): Yes (2023-05-12 02:28:09 UTC to abuse{at}cloudflare[dot]com)
Takedown time:1 day, 19 hours, 40 minutes Poor (down since 2023-05-13 22:08:16 UTC)
Tags:Qbot BB27 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-13Kzklmdpb.jsjs 96e1d13c690f5b3eb3a263622462760b26eec58a1efa5cc56267a3152ac95f21n/a Quakbot
2023-05-13Tjgfz.jsjs aec282364abd2cdaa77521700a459c5f900143d3d701410cd94977800f06a291n/a Quakbot
2023-05-13Isgy.jsjs 8d5024aabcfe76a229dd1d711815e4d1ccc8364858080a60600f88d93f084027n/a Quakbot
2023-05-13Qyen.jsjs 990d5d957f6bfb56e57b85d575a3c35d6f81c4acfb8b20907b1c452d7cdf2c34n/a Quakbot
2023-05-13Kggacrjj.jsjs 24ccbafa27dbbdfd6fd89ca954cee2f2d3c00a2d5267e00f9684bfa07e566ea3n/a Quakbot
2023-05-13Vxgsoqn.jsjs ffd7067d376e88bd89882e8fd979e52f7d27c0c9f0430002c13221b8f903c307n/a Quakbot
2023-05-13Viibyn.jsjs 62b8f5d5c0bd1d35b8365e4d8bbd54c766256f8ccefb46e095c4d0d510d97697n/a Quakbot
2023-05-13Pdvgqa.jsjs 94036f95ccfed2ef91ff6695fa8ae7230f4b239dbe0ad188881d4836b500b726n/a Quakbot
2023-05-13Ibjoi.jsjs 417f121d92991e8335282e1844dd42d0bc34a633bb4688a9fdf108072270c9a0n/a Quakbot
2023-05-13Fnauny.jsjs d25ae0be0b1919f171b5caf756067ef404f9a2bd1b5b30198a0b64aa6f83b7bcn/a Quakbot
2023-05-13Lwwngwwz.jsjs 1ef1492baa8f52a819a4add6f33f9ce935e185b7c4d69939292e62fe069c5ea2n/a Quakbot
2023-05-13Izdvfd.jsjs 7a4aa22169be500ef61189a6cccedf6b65a844d587d82ae3c1e544e3633f8f9dn/a Quakbot
2023-05-13Isye.jsjs becc4e0342d305cd4c4e96f6b171514a400a7643a18abf2a7602d2ed08a7855cn/a Quakbot
2023-05-12Ducq.jsjs d1557c0f6b93bb46c97cb9dd6190d655a3a928d58944b74a3703689f963c1f37n/a Quakbot
2023-05-12Psepd.jsjs 505e5e6a60be555bb0632a8b5d36721a2ddb11ebab92d2f7941b1b6943ddeac8n/a 
2023-05-12Qngjwp.jsjs cf2b36e1fbcbd09659e5d0c34bd68d570be9f9223e7575e38e4218d5370d78d8n/a Quakbot
2023-05-12Ksoyyx.jsjs 2567fec83982bedbcdf7cf57d27205abed8a3b9e6589ba5cb5984863168c6fabn/a Quakbot
2023-05-12Hupygsbe.jsjs 347836d112fa58633504e249e94e0c750ef9c02218c9739de2b88e8792bb0407n/a Quakbot
2023-05-12Wwfxp.jsjs 91702e27badf3d802163332e78c0b231df82cdfc741c825c11d08807696342adn/a Quakbot
2023-05-12Ensdnh.jsjs 50538e46705b4ac7e0d5acbe7d4e1cdb43711e1eff208a0d492c83ec115ede09n/a Quakbot
2023-05-12Mgicgs.jsjs ed27ca8725829a8e66f38484408c4869df57264b81ce76a6b38219d8ef1e1a22n/a Quakbot
2023-05-12Zdwn.jsjs 4c361d45a225d0d31303a463d5e5f60721b7b3a416e54d82a849f7fb720075d6n/a 
2023-05-12Fhbhw.jsjs 278a553fc83deeebe5ded6b151d5bb2361743c3f535113f86273179f30b57f51n/a Quakbot
2023-05-12Zmme.jsjs 6995e34294930904f7797acccb816f15c0ab675a867af73c488a6c2613232a0cn/a Quakbot
2023-05-12Ajqivx.jsjs 645142f02c104d70c83048f15ba86fbfec4a5dbea452b1096d1072483e88bc6dn/a 
2023-05-12Ulhk.jsjs ee4ef6187f164701a266ec2105d22b3a361abc96d047cd3b56f3987355491026n/a Quakbot