URLhaus Database

You are currently viewing the URLhaus database entry for https://marketingezpro.com/ts/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2632728
URL: https://marketingezpro.com/ts/?1
URL Status:Offline
Host: marketingezpro.com
Date added:2023-05-15 15:15:00 UTC
Last online:2023-05-17 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-15 15:18:30 UTC to abuse{at}hostgator[dot]com)
Takedown time:2 days, 6 hours, 9 minutes Poor (down since 2023-05-17 21:28:11 UTC)
Tags:BB28 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-17Jzskqmwx.jsjs a8a8153cceaada2e2ff92961844812b0aed9cd17ebb6700ebca64bc3627c960bVirustotal results 28.81% Quakbot
2023-05-17Zmwtta.jsjs d1a4226b93ce7e197a1d0a500323d097493998ae6d92816b4793bac2150218f2Virustotal results 27.12% Quakbot
2023-05-17Kjzaj.jsjs 1187259a79f3d0fa43b025751bffb4506d955db2a1072f8e61e3707c5250edadn/a 
2023-05-17Nsmxr.jsjs deeae69c4717d775bf5fa189632028d3bea8fff66b068f15bb1c163430d3fb84Virustotal results 28.81% 
2023-05-17Jdpmcqmc.jsjs 4fd5f473b0f97c7dcf4a244234c780051bb0e3c316acbb18b7f959a6663c9454n/a 
2023-05-17Hgmwtsq.jsjs f37d3c915b896922eed07327ecc8b944fcab1445d20c02c26c5aab8d91473b45n/aQuakbot
2023-05-17Xdwtnx.jsjs 8274abe8ad7882303582507c4929793e85dc487d653604f45d000e587c2daab1n/a Quakbot
2023-05-17Byezs.jsjs 78f9f8fe2ea9d6fde754165bbe3f1a38e45104d6a4a1ef6c764864c531d3cd59n/a 
2023-05-17Tuwiz.jsjs 5b4f9fa1f4a81876b2d37815c3effbabab75cd3e8348e8059b412b28a21f165an/a Quakbot
2023-05-17Oyzzos.jsjs 2cf9addd56c4c6419602850d8869afc9e2e00d56adccbde373ea61a4293da099n/a Quakbot
2023-05-17Cgyqw.jsjs d7265d4bd5f275895501bb03e3398b7b8e93bd382cb1e3695a00090bcd37c683n/a Quakbot
2023-05-16Kkxieg.jsjs cdd50077e32db777e31d63b1a6a355556fb50138e9d379b002f043456344509dn/a 
2023-05-16Cgslwgn.jsjs 510c0e7d33d2361ca60326b119d34a31e8e559d7ba6fcdc52c931e73e1ae88d6n/a Quakbot
2023-05-16Iypndiv.jsjs 94a2918917fd77fdd5e6d08d9af88af14b274749cdc91a8d32f2644dad8df299n/a 
2023-05-16Uzvqrp.jsjs bf5a8082c9b53ac735487878f6f6563ff3ce98c5d079324e17c7e4f962a7bc2cn/a Quakbot
2023-05-16Jwtu.jsjs 894e39643d267b8b33c75ed090150dbadda673d6d2acb087cd0d4b8717459262n/a Quakbot
2023-05-16Zsdw.jsjs 556d1dde24236b5dd67b82ce1c2dd66a99c6f360a4f2ddf1706385514088bf17n/a Quakbot
2023-05-16Rzstmd.jsjs a9598c6b3d6adffbe61177be19df591230e89ec03f9e9047515d73988f80d058n/a Quakbot
2023-05-16Gpgfbm.jsjs 41f0f3382c15c76821d08436bc73adf405a236604630e807d93b8890b32450fbn/a Quakbot
2023-05-16Qqgwenl.jsjs 55866ec54e9b7df4658ed4c9d0367c7e9f5589205eca3f4f3d54b840c4328d48n/a Quakbot
2023-05-16Azgxq.jsjs 777e98ebef11c600b0498442fe5467dca7ed613e1aa67c805261d428c1741d68n/a Quakbot
2023-05-16Bwafst.jsjs a51ef54e92c426e9dc36b3f828f0fad7a563fe1efb61e638fedb60f385e71566n/a Quakbot
2023-05-16Ayuipty.jsjs 1e1042c0ff88336e60f7521c03324badbddde78fd02022a33c8b46cf832c6bf0n/a 
2023-05-16Ystrirnk.jsjs 09ea0d2c19a41f5c97c94d0bfe8973774a8b8f6a6b5a426b7183aeeeece5a91an/a 
2023-05-16Enxrvnqb.jsjs 4d72b04af2fd876c9b860a7bc1d3358f3d3b222066e585de6f93031ab4b93ffcn/a Quakbot
2023-05-15Nvtkily.jsjs 4b5feba892e41cd4fe8e42f16e9318adfc74d07c13be31dbb0a3ccb6810fd118n/a Quakbot
2023-05-15Hhtq.jsjs a327c7cbca604d7c4a01d2e037430ef9201d13dbedbb7d0b4bb6f958a6f036d2n/a Quakbot
2023-05-15Ayjwx.jsjs 43307db03e59fa3cb87a01a85ae899173a94824db48bb5c6d96108c8c4b9f0a4n/a Quakbot
2023-05-15Snaysv.jsjs 1c786952fc1212654c350200b505fa7164b91b426241123af8cfc91dc5d69435n/a Quakbot