URLhaus Database

You are currently viewing the URLhaus database entry for https://cellularport.com/uioa/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2633907
URL: https://cellularport.com/uioa/?1
URL Status:Offline
Host: cellularport.com
Date added:2023-05-16 13:14:25 UTC
Last online:2023-05-18 22:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-16 13:16:16 UTC to abuse{at}hostgator[dot]com)
Takedown time:2 days, 9 hours, 27 minutes Poor (down since 2023-05-18 22:43:26 UTC)
Tags:BB28 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-18Qzrebscb.jsjs d7522ab4f64ae0950e24bb00df9157136bbcb900ace0c77bd1a46f06149bf37aVirustotal results 23.73% 
2023-05-18Nuszcy.jsjs 1a2e818afb29521c8658d2a0643158af97370d69c32c0bd85cb900bd3e85b0eeVirustotal results 22.03% 
2023-05-18Pigqs.jsjs 76443e093ed6d6e3961cb5f9bbd546bab2d05f6bc2536c5744dc86f7a769bea8Virustotal results 30.51% 
2023-05-18Txtaohr.jsjs 28f2279e60f1cb609f01fc524f775057e600772e19727287a6f425f3da6a0a14n/a 
2023-05-18Awiyoyt.jsjs 75aba79d300dca2a11da16879bf5c0fd15d388a5926381550db24144937b72fan/a Quakbot
2023-05-18Zmphsk.jsjs a533ca0315675319b925cc18170b52d2ed95f2af8281c9c6a6d9e9aa204fdc09n/a Quakbot
2023-05-18Kmdg.jsjs 6d790992a3828c5f421e6c85ac319d61de4eb5320ff67d91b8e5d4577865de5cn/a 
2023-05-18Hilg.jsjs c408bd9762412a5776d177862b5ac082170428db1332d9ba6c28929b506a4858Virustotal results 33.90% 
2023-05-18Gbkwawr.jsjs a22b66a10925ee0bc864c2b920e30792c9c23d171ffe1d926a43d0403fa0f1c5n/a Quakbot
2023-05-18Ezvn.jsjs 39ac88782d43b40c56cd7245203211f747e986908f13072c8d6d6caede0ef79eVirustotal results 30.51% 
2023-05-18Bssspsm.jsjs ca3503a47ca92c4d7ffd385bf6501e373e48cae6b42c99b3a1d08f7478278c12n/a Quakbot
2023-05-18Jrrgbb.jsjs 170ceff8d051e5addeb6beb1128383fe814b7b40738b54c0f99409de5ccba2c6Virustotal results 25.42% 
2023-05-18Wyxnnmpm.jsjs e4e514b57ab086485b47e1413c71a7e9bebc8c84c6615f90bf252d04c98fb5ebn/a Quakbot
2023-05-17Lytxptee.jsjs 73abfbef5c169e5239c78d4c04f3d18f7f72490c2ca0cbbb33d92cac9675dd16Virustotal results 27.12%Quakbot
2023-05-17Vtnfgu.jsjs b11fc0e56235f908dd870eceed98215c815c131e83913eff33f70f528e369dd4Virustotal results 30.36% Quakbot
2023-05-17Mfmhu.jsjs 5b903308829f5c7410c0e53ec748a05a9e2205f4400bf2941199cf2223c0e1f7n/a Quakbot
2023-05-17Yoiwzo.jsjs 2643a0ad4d4922d9f4428188cfe85112015c48ec78826051b8fc118affc60fa4n/a 
2023-05-17Svvxwf.jsjs abab065bf35d31ff71f44feed5659074ee381a93862817826b7b884996333700Virustotal results 25.42% Quakbot
2023-05-17Sqdauaiv.jsjs 32191ec86c3fda99957a4e78362b4bad01545ffe830b5b5c5c32ed9c92fc58ebn/a Quakbot
2023-05-17Ydwo.jsjs c6712a15900f7986ac9ad350dec34f50284b50e708bdeb42e320d99659f8d46fn/a Quakbot
2023-05-17Bjfsvpra.jsjs 83c2dccfa56e2a5c3b8b95d8d6600f55eb23a8cfc0fc01dec577d4f40827a2abn/a Quakbot
2023-05-17Duoroit.jsjs 268495b500614cf566f883b633c47511a56235b7b280e4d06427dce2e6af403bn/a Quakbot
2023-05-17Xvixj.jsjs 56dff97fd6a93dd44ea9ec082e39a18a1261b06b1690790a72197e5fb333d70an/a Quakbot
2023-05-17Jamg.jsjs e2701bf65cc5bd75b17be09b4181684ad3532467166289041e769c48e923191en/a Quakbot
2023-05-17Zxrba.jsjs e74e5be7e8862e3fa358954b7f72c0e3cc57670df67d119ef3190242ef2e9254n/a Quakbot
2023-05-17Zgfxhi.jsjs da70acb4f1b6b3ac89d6da653e8275fb2af8b70e3d1d6adc06962cc89e11d20an/a Quakbot
2023-05-17Bbyzvxqg.jsjs 825f1febec142fdc0d77ec7b014160222bae1447313763da83006147b5c06e36n/a Quakbot
2023-05-16Yujxfjvr.jsjs 13db041b7a3a966efdd6c1642ba88ff2b240b5aab62b8cca5595be1209c0a868n/a Quakbot
2023-05-16Dtowwxii.jsjs 9c150a03d541002fcf6033dccad364ccc29d39cb771d68101c143df6b05f6549n/a Quakbot
2023-05-16Evko.jsjs ac86a773058180e7e294d6ce92768216a55c4df25bd64244237d038d308e412en/a Quakbot
2023-05-16Ocwjvat.jsjs fc1466cc6bdabc20c2e1ac58fe1caedb91f347c5beb26a2ce9eb0336d6792688n/a Quakbot
2023-05-16Iesycicf.jsjs 66c07eb083603164780f4c5ac0d6aed30ff2012f500195f1c9ef33dc07d034f5n/a Quakbot
2023-05-16Rtpfqxcc.jsjs 5078728edf9c69e9cf2baf1327fa81c198f95725b0c7ebd62f11f7520a925ed0n/a 
2023-05-16Jicps.jsjs 1b56d5700f66997f62506814ccb4c0b31c17269372d1dc9534da4aef9d4a0783n/a Quakbot