URLhaus Database

You are currently viewing the URLhaus database entry for https://cbcmodesto.org/oa/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2633559
URL: https://cbcmodesto.org/oa/?1
URL Status:Offline
Host: cbcmodesto.org
Date added:2023-05-16 11:25:17 UTC
Last online:2023-05-18 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-16 11:26:34 UTC to abuse{at}hostgator[dot]com)
Takedown time:2 days, 10 hours, 7 minutes Poor (down since 2023-05-18 21:33:51 UTC)
Tags:BB28 geofenced GuLoader link js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-18Lvpieyi.jsjs 6016f12710a18923ed029eb1dc62882b5f1a032a7424e0169dd8c2228598f59dVirustotal results 27.12% 
2023-05-18Hexepunt.jsjs 1cea0c4b1af9170b9ed2927f3b100d202bebd1b8e69ba1527336aaa6b2c0bffcVirustotal results 13.33%
2023-05-18Ytmdoa.jsjs d3c6e06204212c1aeeef29809460056535cba3beca8cf163b7c8719671ef0c9fVirustotal results 22.03% 
2023-05-18Hwjsdrh.jsjs de987c3b63b114c9d3064936466cbd569dd6a3e8fc4fd355fa4d64af668470fan/a 
2023-05-18Kjle.jsjs c321a1664d74da4f73b983c793c4059b38202d4116be2e9f53f9aa1d4320d830Virustotal results 24.14% Quakbot
2023-05-18Vjqtqyp.jsjs 9ac768cf3025869132bdb78aad3f4505cd8dd7e5ddc218e64d6645ba8db5e4f4n/a GuLoader
2023-05-18Cytpcewp.jsjs 3c55d89d269d20d6852bd0da433091d1fb247c736acddefdf23c414213857e73Virustotal results 31.03% Quakbot
2023-05-18Niufi.jsjs a533ca0315675319b925cc18170b52d2ed95f2af8281c9c6a6d9e9aa204fdc09n/a Quakbot
2023-05-18Nulwm.jsjs ea84f700c5132b793e8bbc20dd9383bd71e86ffe8be7ec16ec7fd5ada9cfb33en/a 
2023-05-18Czfaiw.jsjs f744aaa7347e22e22b0047605341e57c431a9dbcdd028ca5713a221c51107aa1n/a Quakbot
2023-05-18Ukctlie.jsjs f1cd10870a25ff5450774a8498966cb5bddf350a269b79fee66a198f6cf3b7a6n/a Quakbot
2023-05-18Rlskt.jsjs f3cf1988e5b288b64fc34cf15045d67a4fcd2c9c61549510e3df907ea1f61cf8Virustotal results 27.12% Quakbot
2023-05-17Jfdhuzl.jsjs 0c002b88627f5df1e7415950b066ddc51bf3e0f4f3ef5a2b01a266b2c4282ee1n/a 
2023-05-17Guuf.jsjs 076515d52f5219c37701ac4b38e72e4f6a809dffce463343615c3fb079c9ec89Virustotal results 26.67% Quakbot
2023-05-17Payrpw.jsjs 8b2b3c3498bea970b5883a908b36e4437b9809a010cf2df44004264d33d66dbdVirustotal results 11.86% Quakbot
2023-05-17Izzrd.jsjs 3fddbe5cee0b2b8ebbfc9637b8f112873fa786d04365ec85c4ff1f3ef1962ce2Virustotal results 23.73% Quakbot
2023-05-17Ptxmduog.jsjs 8b5a063138d39c424fbf7ce7022dc972afa3c2df792b3a030272c1c77490dc96n/a Quakbot
2023-05-17Xsszkbly.jsjs e78861a712a577b61558f7ea9878b91e974692081e5daa5f02dcb5ff1cdc359aVirustotal results 32.20% Quakbot
2023-05-17Zlymcz.jsjs 8deae0dc00f63d06da4b8491f06c909682b192af1c7ae4467703241c34a509ebn/a Quakbot
2023-05-17Avzoy.jsjs 7a515185d1c204dc897de0e485dd2dd335341156b5b7764220fb6df27fdbeb16n/a Quakbot
2023-05-17Bhvdlv.jsjs 848f05bf45b85a565c795b4f1eb2b7b8ad9fc57686b1f087fae1cace09f00d1dn/a Quakbot
2023-05-17Eusuio.jsjs 3b925813d284eb52106d6b57df3f6270ffe248a99f741352e2eb6bb397e1f065n/a Quakbot
2023-05-17Mojtumjr.jsjs 4e87a13ddb0139973434eddfe695a8b1de12a847534b0919fae2da4a5b3401b3n/a Quakbot
2023-05-17Pzzev.jsjs 06fdb71b32090c294208ca6b6ca4fe982d208846eae7b7db5bcfacbc63a7f550n/a Quakbot
2023-05-17Lqpoth.jsjs 16236edd4913f56c4d6edb3e581f98bae4840b2afae3dac1bd532950e4c96068n/a 
2023-05-17Eudrizn.jsjs 0f1788333f5050e80e9aed3dc42a47e6348ae6f5f5bdc413e24dbf27c24b52een/a Quakbot
2023-05-16Sgukulri.jsjs 75f6e0084c924b12e61a25ba2ac8e159c1f9eb77e9d227013a43af864c4e61c5n/a Quakbot
2023-05-16Dzrdj.jsjs 6bca7115423eb5f5c94a6e8f5d2dbd4f09b09b84ad37a6217a71d5936206c44an/a Quakbot
2023-05-16Lpmn.jsjs 701b76447bed4097c8ee73244ca5c3f9647563dc03a09f6439abd0cd0a26dab3n/a Quakbot
2023-05-16Fmcj.jsjs 12efb2ffc374a196df069f7d798f158cf755efd566636d04f6537694338368f6n/a 
2023-05-16Gznpscua.jsjs faa32870cb40271810edbd4a046696bad1025a0fb2390e28b7428786344192efn/a 
2023-05-16Ukvx.jsjs e17d805fe81f94a113f37aaf387b5fcff72e8809af4882722673513009146283n/a Quakbot
2023-05-16Djvl.jsjs b88b761750b2be737e784f8b65fead29fd943d42f828899bed80209521e01ce8n/a Quakbot
2023-05-16Svkf.jsjs 52b8b560dcae96c3461d0fe5e269d600b9787f03be45930322d259840231bf37n/a Quakbot
2023-05-16Fugso.jsjs 74a2e79f666c24fcdec62bb6ac593f95ff47f2642cba9cd024d2aeebe0ffadd1n/a