URLhaus Database

You are currently viewing the URLhaus database entry for https://advantagemsolutions.com/aa/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2632556
URL: https://advantagemsolutions.com/aa/?1
URL Status:Offline
Host: advantagemsolutions.com
Date added:2023-05-15 15:14:13 UTC
Last online:2023-05-17 22:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?):mail Yes (Ticket DCU100115892 created on 2023-05-15 15:15:05 UTC)
Takedown time:2 days, 7 hours, 18 minutes Poor (down since 2023-05-17 22:33:47 UTC)
Tags:BB28 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-17Rnquyldh.jsjs 75aba79d300dca2a11da16879bf5c0fd15d388a5926381550db24144937b72fan/a Quakbot
2023-05-17Jgyvglq.jsjs b11fc0e56235f908dd870eceed98215c815c131e83913eff33f70f528e369dd4Virustotal results 30.36% Quakbot
2023-05-17Hpnvfrao.jsjs a0220d487566d1243b11c30ea5d37349418d84e8f6eb6013e0792aa4b11236c6n/a Quakbot
2023-05-17Qdvpgqc.jsjs ec6f55b9c56d3dead8b8490dfbbcccadcdfef62b7d67c671b8d0ee9620f4b74fn/a 
2023-05-17Lredgh.jsjs 86f81887bb6051cb0f8b8b3d948a6e4bbff1538e986a71386da56590e614f26an/a Quakbot
2023-05-17Loargj.jsjs 93492712919e0adee85ebe16363f99eb8fdbfe7f055f8645bf21322ce803cc13n/a Quakbot
2023-05-17Aifcf.jsjs 94e0ae91d8809f4b506a29adde4689ffe45ff69f0d8a4ae024737f5b58a8c65fn/a Quakbot
2023-05-17Seiwnmbr.jsjs 59d439536304203d36585df1fb1ef44f25bd35acb92d3a85fc07b83a6ef2c668n/a Quakbot
2023-05-17Dpnlhzp.jsjs 1c649641650214e1313ba8113121804acb12a4c5da6319df74a83879f3276cfbn/a Quakbot
2023-05-17Sglqpods.jsjs 9c8fb6df2667da85e0e0ae59d68b8b2454945c92815b956e3ecec9f42e60a2d3n/a Quakbot
2023-05-17Jiry.jsjs 61868c40f582eac6d35ed2a08c0afaa68fcd97a6bf0e2f8c870a4d26b6323b2fn/a Quakbot
2023-05-17Fyou.jsjs 539ad3f1c45b55ed51fceededa4530da716a2a547b6dc7fa4aa63c8d035d2d73n/a Quakbot
2023-05-16Vwfsg.jsjs a52fdccefe414efff4ccc10b290a5df5b1973b695937ef2f0fa5213effe15d16n/a Quakbot
2023-05-16Lwxvwrx.jsjs 008d2578a17c4bdafeaea748c7567e980f204c91bb51909f9a63aaae003a3eefn/a 
2023-05-16Zkxevdx.jsjs 6baad1a3a703b9dd4950290b2e2d2b58f3e9b2a8a5779aa3002df4919057c560n/a Quakbot
2023-05-16Qgwoect.jsjs 6f67cb3a8d90406eebc94af0c0b5552f2db3955e89ac8e316271545c630aab79n/a Quakbot
2023-05-16Zwqvkvi.jsjs 374efff19b20ca98d3f2dea04a729702bd5ef8d57c78e4853b9d95574767fdabn/a Quakbot
2023-05-16Vgwpod.jsjs ee5895d53ff0930ba8b1720cafe8e7f1f8b1ffc4fa98db6d0b5fa6cae223cd47n/a Quakbot
2023-05-16Fitgcu.jsjs 85748f0d86110873221d809b1b1df42dd60f4d2706bd8a49bca288c1deadf939n/a 
2023-05-16Ijdzxnri.jsjs 4ce7d8a0190c4c6cb9e5255e4726ca0dd00dc43a1f10e86267351c7df61e963fn/a 
2023-05-16Xxck.jsjs 95986167565e624760f16be8234863fdbbd05aef5f17f2a68c6400402918de2bn/a Quakbot
2023-05-16Kwfgnku.jsjs 8c8649457a399d5f0a8c059d202b1513bd488647c263e1266d28e2f3f61d2c1cn/a Quakbot
2023-05-16Pbjbbtu.jsjs 20d16a7368b7daafea3620574662afdc4f90dbee56effe5d125b976231259755n/a Quakbot
2023-05-16Kddemp.jsjs ee2b0f220d2b07a0cb4f2c9706977321cab9f9225eeab58ddeda394a15242a7fn/a Quakbot
2023-05-16Iumvvtjz.jsjs 4ee0aca9ecf3bf964e456d6a152be0628fdc179bfbb1631d30d83283650758edn/a Quakbot
2023-05-16Bhpwo.jsjs 7f8fd856672bec2a58d14c4e327822f3d95cd17363d4a1e7ded58ebc5bdbbfa9n/a Quakbot
2023-05-15Btxxmoh.jsjs b1e2e7007257ca8a988f159bb2376cbbdfba0d46c1585ca2bb2a25cf755d818fn/a 
2023-05-15Ksgdnnh.jsjs c9d8bb464449b5516724f90d870bcda0b73eadfe6c54418c07bd531fc4324ba7n/a Quakbot
2023-05-15Xbxsre.jsjs 1b07bfe1e12f378bf3c37615e3b31560df5fbac81db7b1a0e1c1fafa23aa9ab2n/a Quakbot
2023-05-15Nwqfd.jsjs 56baf7e6de5f6731f83aa959753e4fc443aceb0d7fa4508e9163a097d80ab055n/a Quakbot
2023-05-15Fvyapdl.jsjs 4447510bed2c7aa5990565521e927d58687573c7f05182589ccbb04ef23fd9bbn/a 
2023-05-15Omrazs.jsjs 2831de5edc8ff030b4b80de9d777e16894e2ba7669a8fd40d22b27be23ecfe62n/a Quakbot