URLhaus Database

You are currently viewing the URLhaus database entry for https://breakthroughamaze.com/qui/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2633616
URL: https://breakthroughamaze.com/qui/?1
URL Status:Offline
Host: breakthroughamaze.com
Date added:2023-05-16 11:25:36 UTC
Last online:2023-05-18 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-16 11:27:32 UTC to abuse{at}hostgator[dot]com,eig-net-team{at}endurance[dot]com,jayanathan[dot]muhunthan{at}endurance[dot]com)
Takedown time:2 days, 9 hours, 54 minutes Poor (down since 2023-05-18 21:22:29 UTC)
Tags:BB28 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-18Sgexxe.jsjs 76443e093ed6d6e3961cb5f9bbd546bab2d05f6bc2536c5744dc86f7a769bea8Virustotal results 30.51% 
2023-05-18Uggkh.jsjs 51ffefa8a10b6da720a80cec4735fe173669e7c974946e46c8dda908e824d8a4Virustotal results 22.03%
2023-05-18Aajoz.jsjs 1cea0c4b1af9170b9ed2927f3b100d202bebd1b8e69ba1527336aaa6b2c0bffcn/a
2023-05-18Zhsurf.jsjs a99deed91507b2e0aa98b17753892aa733b12eed707f493c38359420a3a4f109Virustotal results 25.42% Quakbot
2023-05-18Uiddbb.jsjs 66a44d6ecc0bff8550c4f8fd93b40851e019bac6297339dd180d268ed9bba451n/a 
2023-05-18Nstlk.jsjs 26bcf4ed38ca973b884b3322675bbd0b590533240961f9fd6272fa3e3aeba113Virustotal results 31.03% Quakbot
2023-05-18Aksqwx.jsjs 80ab380263a5873a2a0e5bf0f6970a2c5a2f1bb6ced244bb881a685269c5d92cVirustotal results 15.25% Quakbot
2023-05-18Ziebdz.jsjs 1daf295e083f68a10f9527a63f47ad20185bc445825bbe8e6b92086996eeac2eVirustotal results 29.31% Quakbot
2023-05-18Yicri.jsjs a23cf11c2f986f5d2412a9c98d50dad0b0a02cd2dbbd6fdb1eb47c20cb7dd2bbn/a Quakbot
2023-05-18Hvip.jsjs cadf3b701a796ab414a9adb1d3c761ea95dd6b2b518dd9d9f1034a9982d8fc30n/a Quakbot
2023-05-18Wdhcsryj.jsjs e097747aa43ca0c5787d98ebdab3ab67fda12444d287a4a0702a670f0b2494d3Virustotal results 11.86% Quakbot
2023-05-17Crxokw.jsjs 9a649ac76d537c5f4ceb023745e2fcb3a6ed8443c46ac1f2dbd7da98f0487deen/a 
2023-05-17Ephetcpc.jsjs 1d57c903d9a9f7a6aafe34d3d44ced534b1878b64b93029c391c25c05c708094Virustotal results 24.14% Quakbot
2023-05-17Wphp.jsjs 71122ff461bd77e00f131eb7f52d813ed7a1fdb3262bba2adb83ee04085152f9Virustotal results 34.48% 
2023-05-17Gejbrllt.jsjs bf6a2013ee6092e2d291a06d2f69e617b318a1e842a0d559b91fa1b8f8ea1a1dVirustotal results 25.42% Quakbot
2023-05-17Pkxkwx.jsjs 5c53fc6d6d29d37ae644bf3845ff851d6b03cd26eb5e411f93c26dcf018a4c35Virustotal results 25.86% Quakbot
2023-05-17Jdicg.jsjs ba4eb74cda0088a1269ede2dd12d974109f7b392ff522322070233d302cb3d01n/a Quakbot
2023-05-17Fzmvpll.jsjs f6367e6003455bd5ec09ff23726731029805bd0357bc8cd5184dfe270962601cn/a Quakbot
2023-05-17Hgaipsj.jsjs 625bf1aa8b138e0a42ad06384524f0c28fde26860026b230b86258f7fa4251edn/a Quakbot
2023-05-17Ofzluou.jsjs e62018fa4d4d9284f7739a1830f34abaf18c55f81ed694055a5fe93aef96c4a5n/a Quakbot
2023-05-17Mjihxz.jsjs b90c8a70e817479c8528076667de138d0fa1fb81956151e23752a7688b914396n/a Quakbot
2023-05-17Rghneesy.jsjs 3de1cd1bfe44a0cb085651ab9e8430385a1a97db325c2555a300070f3bae1551n/a Quakbot
2023-05-17Fnjcbqf.jsjs c5db2919e748f05e7e21338ae16c881ea37b6a359bc10a02cab13972a3c3638bn/a Quakbot
2023-05-16Bftllsa.jsjs 7e5ca5f3ff97e04b868db4b813db4fd5e4d850956094567de90eba4758619073n/a 
2023-05-16Skeduqp.jsjs 72125dc2539c684a36f77af0cdd94d1da79ffd3b3068a2a415e664f6f5129428n/a Quakbot
2023-05-16Ugubm.jsjs a93ffe1c0e98e057b88029def9bd1c377888275231d544f202e18e548021b69en/a Quakbot
2023-05-16Dgobz.jsjs e2c842689ca1bc7c855385cdf0e5162d0c326f809a9abd8527320e574e0666e4n/a 
2023-05-16Liyn.jsjs 3fb1ef0fbd7e58299eabfa3dd778fd6284f9d4e37ee944dbb8ff793a00f4d29en/a Quakbot
2023-05-16Hbjdmbgo.jsjs 51853418ae1c4e5fef653a31b55143b6fc1d8cbfde8caa172a2ea35fe26a1d3an/a Quakbot
2023-05-16Lqjmcoep.jsjs d4a3acf9e2210b7d9a09690737488011d2c410cc5d23dc103bfa73086fa6cecdn/a Quakbot