URLhaus Database

You are currently viewing the URLhaus database entry for https://wboxkids.com/ola/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2633875
URL: https://wboxkids.com/ola/?1
URL Status:Offline
Host: wboxkids.com
Date added:2023-05-16 13:14:15 UTC
Last online:2023-05-18 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-16 13:15:47 UTC to abuse{at}hostgator[dot]com)
Takedown time:2 days, 8 hours, 26 minutes Poor (down since 2023-05-18 21:42:06 UTC)
Tags:BB28 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-18Oroi.jsjs bbcdb87a842c5157acea98f0cedd358f764e2613b6a635e4f9f5946de8c07780Virustotal results 13.56% 
2023-05-18Rlabi.jsjs d3c6e06204212c1aeeef29809460056535cba3beca8cf163b7c8719671ef0c9fVirustotal results 22.03% 
2023-05-18Uoownbo.jsjs 1cea0c4b1af9170b9ed2927f3b100d202bebd1b8e69ba1527336aaa6b2c0bffcVirustotal results 13.56%
2023-05-18Caidnq.jsjs d76b1300fd995ec8def343df0450c11a58a217803fee3749db4afacebc64182eVirustotal results 22.03% 
2023-05-18Gypkt.jsjs e2819dabf66955428f1a97a8e138b3f805527d29916a21c6820f5e405798e92en/a 
2023-05-18Soipkdcf.jsjs 95f993cc876a8c3aa072647ab634b4ef2df037d739e781cb6f6b4e90ae5d6889Virustotal results 25.86% Quakbot
2023-05-18Yejv.jsjs 5e2610a338e8ef5c3c882966366fdd36d988d79233ad84071b96fe04a7ea18cbVirustotal results 30.51% Quakbot
2023-05-18Fsotz.jsjs 657ba945eb9c34584fcdaaaf316636af2fcddf21425ff248bf2de46d55dc8147n/a Quakbot
2023-05-18Lptekttd.jsjs 7f2be16fe7cc7d8502ae20c7169578e1f795f15ed0f88cbe7c8a98ab4585d012Virustotal results 25.42% Quakbot
2023-05-18Akrqy.jsjs c9405181760bf1482ac0fcca4034002716ef5a48bacdfd80e3cb5353db6fff56Virustotal results 25.86% Quakbot
2023-05-18Pjqsmfdz.jsjs 6a23cf1558f0a3efb0abb0f298f9716be0446165e859f1116485a847cf57442eVirustotal results 32.20% Quakbot
2023-05-18Vqlgmaxn.jsjs f5aa3695ae64a4d74e1b05d3df7788674c2071ec3266a262521991149f02fc95Virustotal results 16.95% Quakbot
2023-05-18Msijoc.jsjs b5e43b4ccd0107bcf4e8ce081135f2adb345ba3df9a4df5637d3cd9e08b43ba8Virustotal results 21.15% Quakbot
2023-05-17Ypsrbnr.jsjs f6d73eed4ee4cb252294f53568ea49c055a4a65267b79e8491ace852655d5575Virustotal results 27.59% Quakbot
2023-05-17Wqpxf.jsjs 5b2d175b18348c26ef8ad20f51fdeb4aa6ab4076aa57cc05caa3cc8772385077Virustotal results 25.86% 
2023-05-17Bukvj.jsjs 32805d4a1cf5298234803410351824aacdf3ae591f390289a3ae325ad6e77e1en/a Quakbot
2023-05-17Fhgkytdv.jsjs 023250d4f9af49d2f7968647280c712aff55b6146a5a06b7b302bab288a405baVirustotal results 29.31% Quakbot
2023-05-17Fstmc.jsjs 8c854caf958691cbcce8d6a84edd87a8ead04c306a6a625c058d479d3b472059n/a Quakbot
2023-05-17Qrrawh.jsjs 759b7245c8f5cd0c5db7853442c740696c4a66caf8aae6a281b32f063f6c660an/a Quakbot
2023-05-17Chehw.jsjs cca9ae0f45d9d362a7e18d9f86ed7a18a1340c3f3d4811c7a2ddc658408bd496n/a 
2023-05-17Veqjysag.jsjs d78928656fe33d6f11bcc8dfbd7d2c0a230c04c48a36920a9b6f0ca11b8887ccn/a 
2023-05-17Kfmbjhfh.jsjs 41154621413214af0b3a58b7ff419018d0b0b6ef4c350efb3c4553f8a77260b7n/a Quakbot
2023-05-17Dmeq.jsjs c19c767d84a3dd9f703e3554b20a0b0852835c3f165f7fc84243be81033a800en/a Quakbot
2023-05-17Pnxlavd.jsjs 3c791415ef63a956dfa88a805e30154d6224080a45c7876f968cdb1dfa7b8f1fn/a Quakbot
2023-05-17Chzoh.jsjs b167686b1457d991487e667af2be4f02b8de313e1a86a2df795e8aa2cb2c0537n/a Quakbot
2023-05-17Vodate.jsjs cf1f8a611772c6a4ee931e2d16d9f211937f1c514252a0c638218340557f701fn/a Quakbot
2023-05-17Bdne.jsjs 4e5840450e9f5d9cebeef156b0f9183d6886563c7200f8ceacba71393603a18bn/a Quakbot
2023-05-16Luripxt.jsjs 38f2736c25e54e3ceeb5e9bfbae42f1ad1aed3352f55fa226d250ae2693aa728n/a Quakbot
2023-05-16Ohafd.jsjs bf3325e45e0156a96ad3622900e25149841a815672fdbd3fc4cbd002d4260578n/a 
2023-05-16Rjkpz.jsjs 03e2bcf2d0a9f8e0386e6ec396789cfc48b72bd012a2024b4ad151c5859c2b81n/a Quakbot
2023-05-16Passjckg.jsjs 264377cf1cbc644760c916d5ffdf240aa8bb544f9e616b674d7d8ce82da6a600n/a Quakbot
2023-05-16Visr.jsjs c26aa79b743772da042a47a813f6fd274af031ffc38ea45efc713287f8259dd6n/a Quakbot
2023-05-16Fmecjjvx.jsjs 5077dc0e6e5a0dfb643ce6f7b9d7886f19b6cc0332470c3083223fc5b89b7c8bn/a Quakbot
2023-05-16Hruombl.jsjs 1f587d2f4ceaf27badf94223d21d945337c4c71af10d182ba6454688614c2b49n/a