URLhaus Database

You are currently viewing the URLhaus database entry for https://nomadecartomancia.com/eia/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2632487
URL: https://nomadecartomancia.com/eia/?1
URL Status:Offline
Host: nomadecartomancia.com
Date added:2023-05-15 14:49:06 UTC
Last online:2023-05-17 22:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-15 14:50:24 UTC to abuse{at}hostgator[dot]com,eig-net-team{at}endurance[dot]com,jayanathan[dot]muhunthan{at}endurance[dot]com)
Takedown time:2 days, 7 hours, 34 minutes Poor (down since 2023-05-17 22:24:34 UTC)
Tags:BB28 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-17Jjfycbb.jsjs b3c3f0880fe1ebd5b9f5146a8164da0834ee29a37e5a1cd8e534efe15c786daen/a Quakbot
2023-05-17Smby.jsjs 1d57c903d9a9f7a6aafe34d3d44ced534b1878b64b93029c391c25c05c708094Virustotal results 24.14% Quakbot
2023-05-17Xixszqf.jsjs c56be3ec9c7d01ede485ea9edabc332ef3aa01f6ab679c4eb6231e1db79db675n/a Quakbot
2023-05-17Eywadbf.jsjs ca0444007c6c56cf207e9de8f069644d774953d9bc532784f55d5deebc62acbfVirustotal results 26.67% Quakbot
2023-05-17Nfpgz.jsjs c28a0689fa744ad9aa6b9113d992a9fc9d303cf30f2b622975fb5e9a82ac02e6Virustotal results 25.42% Quakbot
2023-05-17Bieaszyy.jsjs 58f225cf53b42921ea04bc199cc119ed3b367611004cfc2a7820180e835f9f4cn/a Quakbot
2023-05-17Okgkta.jsjs a525237ab3b493da97c369f081d6bef6e375b415ae1daa6a7058bda482d8c31an/a 
2023-05-17Tqmku.jsjs 2fa6ec7e9a19cc1aade6e31e39c596a63e51ab7f0a69e705ab77bb6944dbf61bn/a Quakbot
2023-05-17Prrms.jsjs 2e235878fd32543a5802fb5ce0fc0e3af706dd9f7da2a25a02ce7b8bf77ef55bn/a Quakbot
2023-05-17Svrdwht.jsjs bdd5ff8d7f671a63db40745dd09c8fd784358d446ad945e186a418a4ede37064n/a Quakbot
2023-05-17Cposhr.jsjs 4868f981c5ba6e38a040f2042e03e5c58acadff1e81447490c7f6d7559859315n/a Quakbot
2023-05-17Phlvjp.jsjs 88154b803c725c700f13770e513adaad499f46f016e9a5b9863f1190f4ea87d1n/a 
2023-05-17Xnndwvth.jsjs e99f6c7a32d8cbc37c0d06d97a629f3c1d34987d99aa4b7e02e118531650ae53n/a 
2023-05-16Mydf.jsjs 65e8d64340ba491ab6db73a35d1406132f4e4fa0e6372a839aab655bd4063376n/a 
2023-05-16Uzazvr.jsjs 389476f1122a9575311946e14825ff386f1d68630034fe12884a06aad055f6ebn/a Quakbot
2023-05-16Lzayypkn.jsjs fbc91e68041f87fbf5b3076a051a63a396f976f51a4be1c8419a7296e4bd76c4n/a Quakbot
2023-05-16Ghvartm.jsjs aca706c46372acddbe2dfd983ef9d586ca144567ebd8f07f128789ea990f75d7n/a Quakbot
2023-05-16Zuvbrqo.jsjs 86c96993727f9ef5bd1ed7912ff0b185957291ec382ffe1413a169767b1e663an/a Quakbot
2023-05-16Lakmr.jsjs 6d9e61107164df1d3e326073fc69fb2ae15ad823b38f2a6d53d982da3e1df9f2n/a 
2023-05-16Uasq.jsjs 77594465719fd0875a740ad06212eee437d3fe9e421b6257b116e0e379513a03n/a Quakbot
2023-05-16Qnqd.jsjs e58aca5799ce7bc3e14df9d0ee28591c38244f4b8bb61f603e56836e21d088fcn/a 
2023-05-16Qxozqu.jsjs 9ff8ef56f2345b5cc1a33fc07155f7136441fef9a3e01d99d7105e22bf8338d1n/a 
2023-05-16Xubotp.jsjs 1b975526445434acf90dc40da056a4036dd5e1693189b189b219b1d062157cc7n/a Quakbot
2023-05-16Cldvlh.jsjs dec80a1bd2f4c3f65a5b46b20db0017d61892bec766c970949f28af4fbbb9714n/a Quakbot
2023-05-16Tixsqnwc.jsjs 61a3071c4568b1e22aae9ce3367d33df03d3ecb2e6548bc8a1272544ffd583e6n/a Quakbot
2023-05-16Tcxqu.jsjs 5648d4ae6e036732b5055fca9086cc91814857b41cc89d06727d64abad25eeb1n/a Quakbot
2023-05-16Ceoklcla.jsjs 1d018fec52a623df8ac649e119829f6c13a0d213370cc8f5c92c48db477fbf19n/a Quakbot
2023-05-16Vhkus.jsjs 3516f1c38cc9fb3ec03a373788c573e0103d7573ba61c9bbe525af9ecdc11be4n/a Quakbot
2023-05-15Pkzj.jsjs dd3e262b28ab11ca88429685674f0950e417ec65a429a18150797dba62f8a737n/a Quakbot
2023-05-15Lpkx.jsjs 0590c9c3bafa74f03b18ba6a6eb6919d4e10405f2d8b080cb9a37a7504680d93n/a Quakbot
2023-05-15Yofhuc.jsjs 13851da8e93135276c53851f0371770abd566d45bc5c1012cf897f7d15b1c9c0n/a Quakbot
2023-05-15Nlkgpvqz.jsjs 4bfc458f66a1f14d76ea226fa918a207c1e2548a4ffe872339b3e705ba95dc3bn/a Quakbot
2023-05-15Lvszpaxp.jsjs eb520a2d4ac810c6b4cdef6c182336f42bfc95fd42a928b3bfd31da0109c6ae2n/a Quakbot