URLhaus Database

You are currently viewing the URLhaus database entry for https://oculoplasticsacademy.com/qo/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2633546
URL: https://oculoplasticsacademy.com/qo/?1
URL Status:Offline
Host: oculoplasticsacademy.com
Date added:2023-05-16 11:25:14 UTC
Last online:2023-05-18 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-16 11:26:21 UTC to abuse{at}bluehost[dot]com)
Takedown time:2 days, 9 hours, 55 minutes Poor (down since 2023-05-18 21:21:38 UTC)
Tags:BB28 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-18Epjteqw.jsjs 1cea0c4b1af9170b9ed2927f3b100d202bebd1b8e69ba1527336aaa6b2c0bffcVirustotal results 13.33%
2023-05-18Bdwvgvl.jsjs c74cf0cb7927a8438a84c9cedbdbab3e4815550813336043f39674a67b6a021aVirustotal results 28.07% 
2023-05-18Qewb.jsjs 28f9e391bd5330165f3c0bd6e349fb541edab989bec8904a485513e3b91b7f63n/a 
2023-05-18Kuucatlz.jsjs b1c5cdb6f87ad0c3aacbf479218ede289571b85d30eb47defef749332b52c806n/a 
2023-05-18Tbjkdmt.jsjs e7b23f3002dffd67a5026b9ae031fe92c033bd7c37c6bb15323d3bb075275d89Virustotal results 33.33% 
2023-05-18Skdunyt.jsjs e5c5a60b175cb60af996c9c06d7956eb02b365460e950ac7662bb4ea5c87d9c0n/a Quakbot
2023-05-18Bnargi.jsjs 7c13bc2d2d42fdea47cb32e74e359fa9939073a81098e801e04a6daaee5e9ff3n/a Quakbot
2023-05-18Yijeriyr.jsjs bcf9e05bff1a4453dbe187a142eddb6857e41bbaf3869f7ddc598b6ddca0d276Virustotal results 26.32% 
2023-05-18Aufoi.jsjs 3b367e99561731587beb5622ae151a88c15c2153723768a743a9b7f635cf1303Virustotal results 30.51% Quakbot
2023-05-18Oknmod.jsjs 743cf712f367f3c69cc6bfc3a3734a66d19bef6e76aabcc6a8b97c534a3b5557Virustotal results 30.51% Quakbot
2023-05-18Iajwkmm.jsjs 3ac894a6a388d20bc81ae5f8474ee788079f5036842b1542150a55c8fed2059en/a 
2023-05-18Vyxw.jsjs ac2f114a6bac8df9444849169360217c9656b866153cfc42dc444cbc6b7b6e35Virustotal results 15.25% Quakbot
2023-05-17Rckdpsew.jsjs 3833419abb83fe2369255a23b3fa983e65047ca005c0dee0d772efbdbf8ee75fn/a Quakbot
2023-05-17Uxcjur.jsjs a5ad0d19dd6ae50f16dc5be1921c43a887aba5ab8dae04acbea417a5cd62d61cVirustotal results 26.32% Quakbot
2023-05-17Bsbsxmvx.jsjs 2c6c3f6ffb898b9a29cc0a5ec84ccecf30800496946b378d5558f81798278c3aVirustotal results 32.20% Quakbot
2023-05-17Jiphlfu.jsjs 24c2f222f6f2809f7c5dda15d789a41d9424dfce3714fe71bed9fbb0e077503en/a Quakbot
2023-05-17Rfuucjt.jsjs 3302a636901e95a2eb9b66a8fdda7e3cf8997cec8749d879da126651b259557cVirustotal results 26.00% Quakbot
2023-05-17Zszubhhi.jsjs 784d0c23a7299fe8f5a79ce4f83765cd48535cf1afc25d542a0f854f8049d149Virustotal results 27.12% 
2023-05-17Fjuqn.jsjs 321c1a3f14a23d2a9aa660e3c3d41d7c92fbba4788fc20057ac697e402248405n/a Quakbot
2023-05-17Fmpk.jsjs c6e6dc29cf0455c540b7f7c5f7909b49f0bd6ef541448138670518be2f15edban/a Quakbot
2023-05-17Xhrk.jsjs 08af2b9deb1604a682f9f4e80b26a88cd9be23dcd5a279625c7df86b4a32904an/a Quakbot
2023-05-17Vjwrfgqt.jsjs 63da518b3f315f343911a8e4926425eaae87a5984a66377eefc2c03ec7118fcfn/a Quakbot
2023-05-17Kkkksmlo.jsjs 369bc159547a9516774f39a99ce7833531372aaf6c61940e73e8fdf7168c703an/a Quakbot
2023-05-17Aerxzs.jsjs 7fdf6a7557907a32b44469bdac97a34cb67cab933e28329a7155190ae7a0a20en/a Quakbot
2023-05-17Irjf.jsjs 4b18b80089f28691ee3b9eb9205ee25244cb78179a063e9ab44baf300e317e53n/a Quakbot
2023-05-16Odzgpips.jsjs bdd20e54375c55167389e23ebb229e6458527bd1a7f7605ae17c94fc96742958n/a Quakbot
2023-05-16Lthf.jsjs fd67483fd562ca1c97110354a1601f93c672b9786e8a5387a29a9ffb7dd541f4n/a 
2023-05-16Cepdb.jsjs 5f19e6fd74c3ca37883b37d01a3dccb1d9f3aac32f96310cfd6dbbce423f8b09n/a Quakbot
2023-05-16Jiajrg.jsjs da1f4123410e2723f47244acfa82b107b9c40526f47f15925c1bf9496b731339n/a Quakbot
2023-05-16Eyzlwncr.jsjs 8f4066e34cb27541ba98e393a1acdf9be7e1a626dde43af30374eb941aa603e4n/a Quakbot
2023-05-16Ugoo.jsjs 41ef3884b1e08795d4c18ef55382bdbc2520d4c01c1b4d6e0620f984fbe051fbn/a Quakbot
2023-05-16Xjavgsz.jsjs 04610d261ddc5f8be1b7a221f18c13c2f7abe094bf322b24a07c985696b8aa7fn/a Quakbot
2023-05-16Tdqh.jsjs f3a74cb9783dc7f54b426bec55504f2d206b025da82348338051cbdcaad9f145n/a Quakbot
2023-05-16Anpshf.jsjs b9ee512f6ddf8f341986cebb7a1f43ecf5727fe2556445cf16ede3df96bea2f5n/a Quakbot