URLhaus Database

You are currently viewing the URLhaus database entry for https://unimerfertilizzanti.it/svuo/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2632748
URL: https://unimerfertilizzanti.it/svuo/?1
URL Status:Offline
Host: unimerfertilizzanti.it
Date added:2023-05-15 15:15:08 UTC
Last online:2023-05-17 22:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-15 15:18:41 UTC to abuse{at}serverplan[dot]com)
Takedown time:2 days, 7 hours, 3 minutes Poor (down since 2023-05-17 22:21:59 UTC)
Tags:BB28 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-17Cqcu.jsjs fcddde4aefcc392bf143eaab986f85fa9fea69d7d232194ecf6c3080b8b60a1fn/a Quakbot
2023-05-17Oaqiizez.jsjs 91a5198c948c77a1f4e846013f6bb7d2ff376ca399e58f825e90cfbaf5c3c773Virustotal results 25.42% Quakbot
2023-05-17Hxbs.jsjs de40c651da56945e6aa4f1adecf9ca842f4b2c630f3e1ad45c2c02952d4578c7n/a Quakbot
2023-05-17Tfddqime.jsjs 6a2662394ca0402750ab97d8fe3a3010858b9dd07c373ce3b2579f8f0b13364eVirustotal results 27.59% Quakbot
2023-05-17Ploxlrm.jsjs ca42f27ebd7d4d5472c9652e26b5cd7d9f089e838ea85a8ac5f1c51b37e83e30n/a Quakbot
2023-05-17Evgww.jsjs 24cf08aad92d93dfabb65546276958ba1bad72825e0af1a4fe5d2a2f0d2a451fn/a Quakbot
2023-05-17Hxitqgt.jsjs a98c6ddf7487f0f51195d5cf8f6c002d996fe552e55a354b6fecc6b9d2587a90n/a Quakbot
2023-05-17Vqzojm.jsjs 0478fb8304b7a4ad80f55804350810e99aa3ebd50dfb895eea094451c1e5b9ebn/a Quakbot
2023-05-17Yamqnm.jsjs a350cbcaa1f86ca2aacd7a7addfc87c100169d56d7fa21487473378941f471a9n/a Quakbot
2023-05-17Qxckm.jsjs 4dd2f74808a33ae322649bcac732594d44df5df42013ab19070cba678e965294n/a Quakbot
2023-05-17Uuqw.jsjs 13bee14a9f4615466e6c210c72dd81b11b978c17ae9b9a664c559a679e7f751fn/a Quakbot
2023-05-16Pwsxc.jsjs a7a8a04ecb77aafad854717d69e44cf5a9faa31990bc83fbd105b3c78624d0afn/a 
2023-05-16Toqs.jsjs 7d8b7d6db2cc0becbfaaf1d1aa9ed4951abcc57d8cd1f70d03101334777c7486n/a Quakbot
2023-05-16Qlkp.jsjs 3762e3376731d65af96df8286965c970c25acaf567451f68b2879de86e32a087n/a Quakbot
2023-05-16Qnvg.jsjs 59bda9a9ca51a1c00b3b7f860a97ebf2c7864b39340501be88caf279fecd1814n/a Quakbot
2023-05-16Gdwdio.jsjs 9aec029ca9fb968c9fcd88f105bd95faa71a337a60a17374d85dfe2cbd17bbcfn/a 
2023-05-16Xtllyrkg.jsjs 2e30f859aae32eba3e458af4eb5ccd6eb589c0901be216201706763b602b4350n/a Quakbot
2023-05-16Fbstb.jsjs e39bff54f5f7c9f5ca7a0ac1c1c30993a9168bbabbfb66c9c74d00bb89706158n/a Quakbot
2023-05-16Napzh.jsjs 3bc9f7a934a00815874c10b2d62d01233d70bbffd479c498806cf2487586bc36n/a Quakbot
2023-05-16Uiyeiqd.jsjs 3b7115d0572a4cd0445121dc64b0653d6c248036724c8719953898fbc03c8f1an/a Quakbot
2023-05-16Zgcdrbal.jsjs abd9aa7c08f1058552327d9f712bf0add8f3e82679efacfec91f7e8132ee2f7dn/a Quakbot
2023-05-16Sprvppo.jsjs 00e2b8a9cb23a21e0e6c8757f2b65ae6349635414dbce0b285f032ac0ebce95en/a Quakbot
2023-05-16Tcazrug.jsjs 30b35c8b2afd61ba90fe02586267400db92f788066a4fcd9f7ad9980f8a9f110n/a Quakbot
2023-05-16Eqidfqhl.jsjs ed025261efc785f899eb7f57f3373120a78b9874285ca90b1f3c53eeb23a4e2an/a Quakbot
2023-05-16Tqolix.jsjs a145cdb24b0d70f0bfb58bd3da2fe5b806ab70b67eb3e7d7a15fab49aef63b6en/a Quakbot
2023-05-16Bgpaop.jsjs 2261c3f72b7ef3877de8231acee76b7fa5b9ec68549be4d9735299cb1b6fdd91n/a Quakbot
2023-05-15Whska.jsjs 72bcdeca3a87b291a76fa49541aa7d82375efad47a970454e1a4468fc11da47en/a Quakbot
2023-05-15Jamdbxj.jsjs 3674c99b5cb8067cf089f95c95686ae3eb3f2f2fe6f16b8e624d7c864519e312n/a Quakbot
2023-05-15Fiht.jsjs 491c2c4f3d7541df576c1e1e574b71833c9adec8ce3624a2b6adde07cf0d8aadn/a Quakbot
2023-05-15Wwrrws.jsjs 40ef4eca4e1632186171f89acf0e8899a2ed1467589889765c11d900cf9aa686n/a 
2023-05-15Sakywgfw.jsjs 06837054c746ca2c6afe9de16f50cae8956c674a941bfd550bb0d4560b58b01an/a 
2023-05-15Aoeqmoj.jsjs f78823ac175f9ae59572fcd5bbe10cab2d7497fe7d44400fb354c8e22b518cc7n/a Quakbot