URLhaus Database

You are currently viewing the URLhaus database entry for https://platformintl.com/ei/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2633901
URL: https://platformintl.com/ei/?1
URL Status:Offline
Host: platformintl.com
Date added:2023-05-16 13:14:24 UTC
Last online:2023-05-18 22:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-16 13:16:09 UTC to abuse{at}contabo[dot]de)
Takedown time:2 days, 9 hours, 34 minutes Poor (down since 2023-05-18 22:50:39 UTC)
Tags:BB28 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-18Kqghp.jsjs 51ffefa8a10b6da720a80cec4735fe173669e7c974946e46c8dda908e824d8a4Virustotal results 22.03%
2023-05-18Acrd.jsjs 1a2e818afb29521c8658d2a0643158af97370d69c32c0bd85cb900bd3e85b0eeVirustotal results 22.03% 
2023-05-18Deqojhq.jsjs dcbee2b3ade54f562557820fe430ade983f493b01c0b343698b07eb65e445d3dn/a 
2023-05-18Lblk.jsjs 2ae86821ba6902bdc957f61f92f752f51c37b2620aa00688fc6affc9b9b6c9c3n/a Quakbot
2023-05-18Lczviyj.jsjs fa6d3526e896cb3ecf22f942020f813ff05b231a0755ca03e5588b547131c9a7Virustotal results 25.42% Quakbot
2023-05-18Lkvb.jsjs ad9d5d545cd208607067a384f752e68873813a4863a25840901805e6778a5f43n/a 
2023-05-18Odmg.jsjs 34e3acc0e6ab649f51c734598559914d2597cbd6d5a224f09da4ccb7ccbd769dVirustotal results 35.59% Quakbot
2023-05-18Ojzr.jsjs b76a46e9b0db483e342c390f25663222fee2e67cb7670205636c7ee748850b86n/a Quakbot
2023-05-18Paay.jsjs 683503e1ee6accf36b4e270156fa48982aeb9619157f07c35c1dbbfeb8a43e7dVirustotal results 29.31% Quakbot
2023-05-18Rzdq.jsjs d5310c601c98c90eb1149ea53a24b05711bab888bf14ec14f88d5c7bb5dd59ban/a 
2023-05-18Gcjegy.jsjs b207edc0255d1a287ff3c8f2e769e9540966bfb78068188cac44e1c350f704a4n/a 
2023-05-17Wbbbwsa.jsjs d112f357338680817dc9cfe7ce64d7ab03de74008f16c43f1ef94b38bd159af8n/a Quakbot
2023-05-17Vgwptld.jsjs 94482ada3a27f9e8cf8f7b554597969eef03e0593d496ba95205fdf735ed010an/a Quakbot
2023-05-17Znvx.jsjs 02caaf8685c239c1d2e1a5e8440a7c9b39c4b12921ba12cfce6caf0214ea2df6Virustotal results 15.25% Quakbot
2023-05-17Urmube.jsjs 2a893ca454c8da14c3b8682420a27dee70132a6fc3dc8975c4ff49a12a7c64d6Virustotal results 27.12% 
2023-05-17Loqcix.jsjs ed3b42a466d5debc63224e8439d69996fd4f174cfcae800ac31dd8dcb69c921dVirustotal results 31.58% Quakbot
2023-05-17Znphob.jsjs 783e0a457afb1237e0956e6ff847bfcdb49ee23036f51b4621b534f54d67112cn/a Quakbot
2023-05-17Pvgl.jsjs 58b0e516ec4c36b4a0582314a01bc968a5e3a7acce646abe2179ef5adde91a24n/a Quakbot
2023-05-17Icychco.jsjs 1daf295e083f68a10f9527a63f47ad20185bc445825bbe8e6b92086996eeac2en/a Quakbot
2023-05-17Jgiln.jsjs 6c7eea786f11e1fe90e3be020f5ef57b473342311e0bc41211293af498b87fecn/a 
2023-05-17Jjqi.jsjs b53b6a71316b4dd81e1366ee605b555ad398439c47190641b265a9e83d3d5267n/a Quakbot
2023-05-17Fopfb.jsjs ea9a3b8cec66450cdb46d852c4e352856adb4078ce2498e7423fb19cb00fa7f2n/a Quakbot
2023-05-17Pyhy.jsjs 7f4a5be0a774f78c1f7bdec208bfb12928bb0f06429dd3f19dd246fcb75e18fan/a 
2023-05-17Lmxhjsz.jsjs f0013f13a2d8894cfb3e7cc61dd1259b00bb74b5156483409abf5f2436ab7b0an/a Quakbot
2023-05-17Xxojf.jsjs d2530b171c88b16f9fdc6b95d42706dc06e44a4375675b2aa8eadc617b882e29n/a Quakbot
2023-05-16Igecgco.jsjs da79b76d918e4507fc56acc6ea741715e1dc8b54b8f8ee247b37c5b9ba0be0b7n/a Quakbot
2023-05-16Fxxbipej.jsjs 286b0d7025971e49a15d9599486ccf6d2956bc7175f6f17695ad4db00f98d80an/a Quakbot
2023-05-16Oejy.jsjs 82efa08dc4aa7bb9b654054dae09a2d87bd916c9ba5d81930436769822583868n/a Quakbot
2023-05-16Egdw.jsjs 4cdfe1d433e68427f37ef037e42e377dca7ceafacb07424c4035dbb6ef728fd5n/a Quakbot
2023-05-16Ejizjpd.jsjs 048bcf6f5e3a3f78f705af5e8f108e38a064d40f30b8d27ad5e13293a93a1217n/a Quakbot
2023-05-16Ohcn.jsjs 8280626f651c4cdb96ae731ce64692ba5acaab8ebceca9ad597c750eb6381103n/a Quakbot
2023-05-16Xvkreay.jsjs 4c2e90db5403ab90afedf481dd110c744a310e0db8385573743c6cb46cb41a0cn/a Quakbot
2023-05-16Orcrawef.jsjs 03cc1d7a650693b3ab7db1164958d5a7cd9089e3fcca0e73826cfaa8eafd999en/a Quakbot