URLhaus Database

You are currently viewing the URLhaus database entry for https://colelagroup.com/ml/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2632983
URL: https://colelagroup.com/ml/?1
URL Status:Offline
Host: colelagroup.com
Date added:2023-05-15 17:22:07 UTC
Last online:2023-05-17 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-15 17:23:12 UTC to abuse{at}namecheaphosting[dot]com)
Takedown time:2 days, 4 hours, 7 minutes Poor (down since 2023-05-17 21:30:28 UTC)
Tags:BB28 geofenced GuLoader link js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-17Lvio.jsjs 7237114103b60a76ef6a67916d0d6fc1e14dc707087bd27684d1093748393f39n/a Quakbot
2023-05-17Eblcrcnk.jsjs dff43d93176f7f0b50d2b960680eb78be307c219d3a2f9b42d969390818a467fn/a GuLoader
2023-05-17Srwpcmuv.jsjs 657ba945eb9c34584fcdaaaf316636af2fcddf21425ff248bf2de46d55dc8147n/a Quakbot
2023-05-17Vpjr.jsjs f11d7ad43d7a6c6cc716d06a9d41c96156d6ce0dc45d6add8d3039cae526e350n/a 
2023-05-17Ypxlqqmg.jsjs 798823d6f774c2380137f2e4d5c8a16ea4cec5e96284dfed0891528bdf512376n/a Quakbot
2023-05-17Ifxmdkzf.jsjs 5c57b539392768e2e9e8490f11f6528d81875b4aae44e11319d0a94af50b1f00n/a Quakbot
2023-05-17Hwmm.jsjs 42815a4d1eea676e511c1ccbf1cc3008b07783aba62bd3507b309deb1626eb1an/a Quakbot
2023-05-17Zccldx.jsjs da46038f2d59be1e821568248f586276e6456e6114e10fac3eeb1ac82289e3d4n/a Quakbot
2023-05-17Nnoexg.jsjs acdee54b037c6b56541ad59d5521362de6c6b036d34c235ca42db0fe4761180bn/a Quakbot
2023-05-17Sjmo.jsjs 74c4309281a0c45206338f211a80fed6767b19f969f692648156d137500b4c56n/a 
2023-05-17Aaqatlor.jsjs 5ff00589825711d98e8f126b4cdb950454b6f1184804334019f37f29e959a7c3n/a Quakbot
2023-05-17Wmky.jsjs b70e5ceafd3b2fe29fca4624f117216ddc2d53beed65f729bfc015bd28081352n/a Quakbot
2023-05-16Udvimc.jsjs 9f97f5f1185fd6900b418442e55990f508d4cfc5da73a2e96eefd0d6bffb4f51n/a Quakbot
2023-05-16Tbwwlhfv.jsjs 16ff8a443b1bce7bd759668e3eb898fe43eab82f691dab93a018a0195d8f832en/a 
2023-05-16Rmmaz.jsjs 5e6f0e37e5a9df1a2e7b5dfa75a1d3bd834dc2d447a76a749dbf2efb0f781464n/a Quakbot
2023-05-16Tbiez.jsjs bd69d41063f37092c388d8e7517fd7d8ddd7faccd93438f17e018f8c6337f0e0n/a 
2023-05-16Ldsyen.jsjs 0b8fb6fe0ce9ce48a8ec9ea2293707a0d6f877d9c809f1d5047568d7435b395fn/a Quakbot
2023-05-16Xhhiqfs.jsjs b5ba6e77ba045d07628702cb8441e8714cb6b85e74e41393555bef23bd40321fn/a Quakbot
2023-05-16Tawzb.jsjs e2cd77d09e7d94012552e9012ae5160e9eaa4bedebb1fdcc4604281a1a74071fn/a Quakbot
2023-05-16Dwhxqp.jsjs b38417ee62aba4985198adf3ec2d4ae1089409c09266a67258bfe35e95bbaf5dn/a Quakbot
2023-05-16Jvac.jsjs ddc711dff247f81c5f56f4eaa5ecc37acddf7548820355d784422d3960449283n/a Quakbot
2023-05-16Vvggdu.jsjs dadd081cc3047f6a52f33397754d2ed03d28c4452272ac21ea3c9c530511f765n/a Quakbot
2023-05-16Jvzmga.jsjs bbad4fd057336325026b2528d980a4e5306a0e53068ee3ff768ca88cef9f6873n/a Quakbot
2023-05-16Lapuooai.jsjs bd6d9316c62b81d7f5082b8484095464896ebb3aa41f14c3e68380e077c562d3n/a Quakbot
2023-05-16Fgocfp.jsjs 765cc22db5ee704fbb3f0ef4e9f56559aa8d79f359efd4cc299e1a3fcbe6e07dn/a 
2023-05-16Giomnexr.jsjs de178fa4e8f9a1eebb9c1909e79278d80a0ab15a0520f4075988385e1a357dban/a Quakbot
2023-05-16Ppymy.jsjs 22602420e07a4dc16c5b36fa54143f7aa2f5f2ee9db1a59877bd755456202dc2n/a Quakbot
2023-05-16Xuklwfn.jsjs 8cada407743581d678ed119cd69401568099db41deddceeffa533916aa520a12n/a Quakbot
2023-05-15Fhxqyo.jsjs e88cb91e32c36cb3732e920f182df03a5039d7948fdfcd2ef85f007e92bc3781n/a Quakbot
2023-05-15Rxfk.jsjs 9a5b7a4a6fc5516b27d28187630d32f91496812e70b5ff62b5d7d240611a9953n/a Quakbot
2023-05-15Xqaif.jsjs 327d297c8a0bf3d7b0baee185f8526ec6290543e0d5ea4e65428d8489a815416n/a Quakbot
2023-05-15Hxzd.jsjs 9d8decb58ee2082b7762791cff3b24dbbeb93237e07437879f62a973694d106dn/a Quakbot