URLhaus Database

You are currently viewing the URLhaus database entry for https://jsaimoveis.net/eptn/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2633900
URL: https://jsaimoveis.net/eptn/?1
URL Status:Offline
Host: jsaimoveis.net
Date added:2023-05-16 13:14:24 UTC
Last online:2023-05-18 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-16 13:16:08 UTC to abuse{at}hostgator[dot]com)
Takedown time:2 days, 8 hours, 5 minutes Poor (down since 2023-05-18 21:21:42 UTC)
Tags:BB28 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-18Vsugs.jsjs 51ffefa8a10b6da720a80cec4735fe173669e7c974946e46c8dda908e824d8a4Virustotal results 22.03%
2023-05-18Klmzu.jsjs 1cea0c4b1af9170b9ed2927f3b100d202bebd1b8e69ba1527336aaa6b2c0bffcVirustotal results 13.33%
2023-05-18Vmfzzxz.jsjs d76b1300fd995ec8def343df0450c11a58a217803fee3749db4afacebc64182eVirustotal results 22.03% 
2023-05-18Roax.jsjs c775f043c952ec0b547bd7c4eb8fb0269664da4d668703e9e1fe483f321913f6n/a 
2023-05-18Hcsbww.jsjs 70cbe6d0639705257a62be9eb8da5151af27830bf379d05aaffea8a6d1f49b39n/a Quakbot
2023-05-18Jbkl.jsjs cee11dd3e06833ff80c75ab19feaefb05e62b347d9ed97e9ecb8f4ac5a889f95n/a Quakbot
2023-05-18Bonnih.jsjs 561eeabd5f230ff8d733b3aa53f761558b65f54ba6d32241bf0350b4e136b808n/a 
2023-05-18Sogechv.jsjs 4740733be7e52c249ac1279362bec08d1af06172836e48e8e4d016c679ba2c01Virustotal results 16.95% Quakbot
2023-05-18Ddmjgtd.jsjs 7f5092d0b223ae713b6ead45d62c1c63d910a500fc960aeae16e1a1073355c86Virustotal results 25.42% 
2023-05-18Lpfbgj.jsjs 00101ce136b60da252cd994cf9a49191259f677d6b7f56801b5d6084e3b5a1a5n/a 
2023-05-18Rgrndwop.jsjs f33a199b902aff95c3dede5cbfe632298042593120c23bc925987f2dcdcfce53n/a Quakbot
2023-05-18Tturbnr.jsjs 397ed6d5f113de3b5a638878e1ab22bb58f5fb493aaef92441db571bcb4c81b5n/a 
2023-05-18Petnt.jsjs 7e14e82b93e7a51daf3ab028772a41e20e60a31cc1a90985cf3598206b08805cVirustotal results 25.45% 
2023-05-17Dmemald.jsjs 49255538015c01aa00ddf4828db000a7ef75677681ed98234a94a9ab84e159cbVirustotal results 35.59% Quakbot
2023-05-17Bqsheou.jsjs a84a8c5338c73e889cff9d58c510657f8624b8deedf847eef71befacab5ed60eVirustotal results 20.00% Quakbot
2023-05-17Wcuthxy.jsjs 882f433be14420954cf276d10abb6b832e89ab1dc301d2d047538fab217afdabn/a Quakbot
2023-05-17Ekpdxd.jsjs 34bf72fbc4370971ff89c72391aca2a8a5b37aac3f1cbb8f2ab5480a3df6ae0fn/a Quakbot
2023-05-17Bniewkx.jsjs 19c40585627ffe423ed5f0a6da7706a51a4e068323d3f9cd2f54a01d45c02af1n/a Quakbot
2023-05-17Nkqnvaa.jsjs c56be3ec9c7d01ede485ea9edabc332ef3aa01f6ab679c4eb6231e1db79db675n/a Quakbot
2023-05-17Uzci.jsjs 6ab25fc23b57730afcd54b9394441fd16eb45533d0d275902b755c30e8807fb5n/a Quakbot
2023-05-17Cisp.jsjs b4417b589f6acdaad16c17b9b19ee53eae9bb5fb77d9dfaf597944bef1f7756en/a Quakbot
2023-05-17Fqcrrj.jsjs 7742ed9cb5d027d64fbb5125339e014bfe9dc302e235de8270dab4b95d9001e3n/a Quakbot
2023-05-17Zqxqnpgd.jsjs ab03a19679def1a3719b5823fdef2957ff77af88f8b64473fae017fa9ec1b13bn/a Quakbot
2023-05-17Tisdae.jsjs 4bff4413ef5f52bf96fa4e002021cd7412f3879c9b262dec5285cb550d8b7717n/a Quakbot
2023-05-17Nvdu.jsjs a72f7bb62f82ff28f6b91fcdc0803d3a6bfcb3889116fc1fd54e6ca9ec814eadn/a Quakbot
2023-05-17Mrkvzwj.jsjs 7903b5a61f3ad422b2560b947de4f3b3e9d2ec2b921f5e4d239c8fd06dd7e00cn/a 
2023-05-17Gjhyw.jsjs d8e082d93b1ebd4cd257032fa4e37ce5c05907437371bcc32c9adc445495814en/a 
2023-05-16Spct.jsjs a6fecbe81daf678b2201012c2fef83956039181bc87a2151f390018fcd1b70e4n/a Quakbot
2023-05-16Jgpvf.jsjs 1a2d6965ef9988acfee3026988f0ca26bbdaaea9b84b940ced57b5deec889b37n/a Quakbot
2023-05-16Wlbtdjnc.jsjs efbf723b2ee08980d23e884d8d0d88dea57f7bb3afe5eed7846678a16a29a652n/a Quakbot
2023-05-16Eypow.jsjs dc495ea0c85ea3c9fe545d986507fbdd6f67e155c6d54ce2c8f95d9086c44120n/a Quakbot
2023-05-16Wlcusey.jsjs 3105b91e8a32367c2eb14a5212ae1bb9bce62caca35671503e740867b3ce0589n/a 
2023-05-16Plzqfdla.jsjs a0fc76c36a758d46bb2870a137fed88e5bb17dc412c96f170fc1f06cfe4b5ac9n/a Quakbot
2023-05-16Urtqpedj.jsjs 29f2bd9c3e769bd1bd123c472e4015626304361eeb740c1041ea16efaa98277bn/a