URLhaus Database

You are currently viewing the URLhaus database entry for https://grupo-cala.com/pre/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2633737
URL: https://grupo-cala.com/pre/?1
URL Status:Offline
Host: grupo-cala.com
Date added:2023-05-16 11:26:08 UTC
Last online:2023-05-18 22:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-16 11:29:14 UTC to abuse{at}godaddy[dot]com)
Takedown time:2 days, 11 hours, 5 minutes Poor (down since 2023-05-18 22:34:19 UTC)
Tags:BB28 geofenced GuLoader link js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-18Romtl.jsjs 6016f12710a18923ed029eb1dc62882b5f1a032a7424e0169dd8c2228598f59dVirustotal results 27.12% 
2023-05-18Ktczmug.jsjs d3c6e06204212c1aeeef29809460056535cba3beca8cf163b7c8719671ef0c9fVirustotal results 22.03% 
2023-05-18Jilwxh.jsjs 1cea0c4b1af9170b9ed2927f3b100d202bebd1b8e69ba1527336aaa6b2c0bffcVirustotal results 13.56%
2023-05-18Amai.jsjs b13f86bb788dec18e6f532239714a411e15102e16a4405aa83267a7bde91bc20n/a 
2023-05-18Nghdk.jsjs 32710b418e9ddc449d0548590b62ac23975ad6efba53cc55cb1551326e182cb9Virustotal results 33.90% Quakbot
2023-05-18Fxpwbmi.jsjs 1f26839da60e55672a1ff564cacf4050f50673ab46f7c13ece884b64e8db290en/a Quakbot
2023-05-18Zumywsal.jsjs a1f08963f5715bb8830f2ea036c6be1f8a5f34bc8a6bc799c36611f79e54b14dn/a Quakbot
2023-05-18Qchmegiy.jsjs 447b96999dd079d4e5bbdefc464fbae41be6c1d6f55fa0d6dc0cf9db6f3490b2Virustotal results 23.73% Quakbot
2023-05-18Npkny.jsjs bc85062a6ed96ba55f83637c5941ebb10dd8734a7486eb2e716a41e21578b347n/a Quakbot
2023-05-18Phob.jsjs 66718c6f0ac9419d7f5bb30cef5272328e503b226e7ee6157072e26782f6421fVirustotal results 16.95% Quakbot
2023-05-18Cxfkyj.jsjs 66a44d6ecc0bff8550c4f8fd93b40851e019bac6297339dd180d268ed9bba451n/a 
2023-05-18Wdnn.jsjs 79126f299d6fa3d58aff457d118ab11356537345d798c52cf1849567bbd9156dVirustotal results 19.23% Quakbot
2023-05-18Pywjpul.jsjs 5f98b59055620e884f40e504321e65af6a6ff2e7eff1035ff136dc57e98e0cb1Virustotal results 25.86% Quakbot
2023-05-17Juwbikt.jsjs dff43d93176f7f0b50d2b960680eb78be307c219d3a2f9b42d969390818a467fn/a GuLoader
2023-05-17Viqjsyc.jsjs 759b7245c8f5cd0c5db7853442c740696c4a66caf8aae6a281b32f063f6c660an/a Quakbot
2023-05-17Bzaoud.jsjs a6974773e37cbd56791b75effa167213997aeaaa65d704bd1de8aac6d9dd42ceVirustotal results 30.51% Quakbot
2023-05-17Esye.jsjs 13429cf0cc28ad9378b2b6c46f7c85f5356150262bfc598353fc15c0530e893aVirustotal results 22.81% Quakbot
2023-05-17Gumduf.jsjs c7f9d6c56a28ecc44744a1c617778af39179d5869bca0ccd518016eae401078en/a Quakbot
2023-05-17Nzwcgtx.jsjs 1518f10a4a3e1bb0772544083dd21336675b9248d73c59f8dd75068406de1474n/a Quakbot
2023-05-17Frklgqxs.jsjs 8bc562ee444b99fb6c9b20d610b461afbd67cfa69a9a316260733c6f0cf96ea0n/a Quakbot
2023-05-17Fjbmvb.jsjs edca27a6e78efb03bc535caa373dbedbcc5a34005caa6ecd8dd6a6477bbcfd9fn/a Quakbot
2023-05-17Ehyhuzon.jsjs bfb35cb9ab72e3774e1ec6ffe34896468e03e04ee9932624f492ee3ebf82bd8an/a Quakbot
2023-05-17Dgrzi.jsjs c63fed2a89c3318a2b018202223e6e83815c02774b1b93b1bf1a28735f2c4cd2n/a Quakbot
2023-05-17Slom.jsjs 9e99d277a8e0cdc8f858f94ad5a7c4c24ea1fe30c4fa18e6013d68cd224d992fn/a Quakbot
2023-05-17Bqcjyn.jsjs be8ddcde7120ea8646d577ca43260b6fb7d47e94c196016a7c76572d24e7451fn/a 
2023-05-16Gwewk.jsjs 0e7c8dbdf2ca931d354548449f7ac8775925829dfeb965df29e83c1360686895n/a Quakbot
2023-05-16Bbpf.jsjs 82d25b7adb177955db3f092b3832952ca2af2d282d8d8d59b6f623d2b4931bf2n/a Quakbot
2023-05-16Hxty.jsjs dffbaa3301d1d170b62a05dc906ac134f51e7475a8d41d331fe0213c779d168dn/a Quakbot
2023-05-16Wptt.jsjs b3b18433d836c7a8a6af59a86e28bc4beecc7be61d00bf9ffaee53ddf7885678n/a Quakbot
2023-05-16Sfumhw.jsjs 6090afdc2c9aad15d853f0e7072eec2b0f2b85bfac6a013ab38680afe7878b2bn/a 
2023-05-16Lreoqwvr.jsjs e312c16f819a227c9c90396087a976998882a97470b205c39738829157c433e1n/a Quakbot
2023-05-16Hnhwarj.jsjs d18111be93ee91f7fae9818cf42e614447932c85854115304dcf53f5085ff97dn/a 
2023-05-16Drvj.jsjs 19df38373ee578ce99a0dc75838d76187a85686033982de9758488c832b4aa31n/a 
2023-05-16Yjgbmiq.jsjs 4a4f981c62b46ce69775028f3cd906b9ad40dd063691d70da2e02610a39209b7n/a Quakbot