URLhaus Database

You are currently viewing the URLhaus database entry for https://dnaultrawash.com/ta/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2633910
URL: https://dnaultrawash.com/ta/?1
URL Status:Offline
Host: dnaultrawash.com
Date added:2023-05-16 13:14:25 UTC
Last online:2023-05-18 18:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-16 13:16:18 UTC to abuse{at}bluehost[dot]com)
Takedown time:2 days, 5 hours, 18 minutes Poor (down since 2023-05-18 18:34:43 UTC)
Tags:BB28 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-18Wpfnuwwx.jsjs d3c6e06204212c1aeeef29809460056535cba3beca8cf163b7c8719671ef0c9fVirustotal results 22.03% 
2023-05-18Azdnzx.jsjs 6016f12710a18923ed029eb1dc62882b5f1a032a7424e0169dd8c2228598f59dn/a 
2023-05-18Lyjab.jsjs 24c2f222f6f2809f7c5dda15d789a41d9424dfce3714fe71bed9fbb0e077503en/a Quakbot
2023-05-18Tjjmtu.jsjs e6823880248255f28dad73af6553cfbae133b6df9f78eff124a379d793265ac2Virustotal results 27.12% Quakbot
2023-05-18Irqqptkh.jsjs deeae69c4717d775bf5fa189632028d3bea8fff66b068f15bb1c163430d3fb84Virustotal results 28.81% 
2023-05-18Bzrydyzw.jsjs 657ba945eb9c34584fcdaaaf316636af2fcddf21425ff248bf2de46d55dc8147n/a Quakbot
2023-05-18Wdxieguj.jsjs fd6447c1e9b59d7114534e32bd988bd00fb674bcecc4c3d958b096bfc06b4acaVirustotal results 29.31% Quakbot
2023-05-18Fwiovtse.jsjs 611f39b0fe3d00c6bc886929f93aab5028192d0d7398bd8621b700c05e99dcc9Virustotal results 25.86% 
2023-05-18Phrni.jsjs 2878ea27fb0bf41510c5a442c350ea2d31a71ee4c1532dcabf74f79b9aa1b3f4Virustotal results 28.81% Quakbot
2023-05-18Gmqfxuf.jsjs 15284b1502dbf4c84ff0c772b1ae8788a56987a2e9cda8ba27208e57da59e8a0n/a Quakbot
2023-05-18Dkjotad.jsjs 559259d8417125f8b762aadbb8a48b34058c7ee430dbe672ad8c7bc3fb919103Virustotal results 25.42% Quakbot
2023-05-17Mzbl.jsjs 3ac894a6a388d20bc81ae5f8474ee788079f5036842b1542150a55c8fed2059en/a 
2023-05-17Dokpxlz.jsjs 0651c77d8fadac8f6e3798ca1534ef6af11482867d22cfb20df41d868c3cc727n/a 
2023-05-17Eltmi.jsjs 7ace3a86b7ee25c1f0e953e1c7228cc835205c53e5ed210b4f3b7fc4291a75ebVirustotal results 31.67% Quakbot
2023-05-17Qvxbuc.jsjs 56e7ef28abd5d99579c0cda0cafc94f64335c3b99a2c4a88b27c75bc943583d6n/a 
2023-05-17Rbxnhvid.jsjs 971bd37b998eb4ec97738fb7c5f921bcf1fe5ca6625167693aff2cb06a748e7bn/a Quakbot
2023-05-17Ycmtj.jsjs d7ee80c4c9f9a041e63b9e4a454dfa6c60dcb7fdd18ca658f2f92fc97f61d766Virustotal results 22.81% Quakbot
2023-05-17Ejqzm.jsjs 9898858b1809b1511e09fbef76498bfa2d39365eb70958ac81ba4a0263c6e209n/a Quakbot
2023-05-17Pmsz.jsjs a88ec2835f57179a1078c16eae2fe8e492f709f88f3886124d1214a05474f84bn/a Quakbot
2023-05-17Zgbir.jsjs 8c5e4b3c94e157ed1c29eb2912aeba6359c05d1ceb5736256738c25960f00184n/a Quakbot
2023-05-17Omrdh.jsjs 0910179ceb3f52f0fa3edd4b47e39c9687a7f65bf8adbd20884ae7a11ca7bc18n/a Quakbot
2023-05-17Avua.jsjs 07e7a4ece206f3ac8be1193781abd569526e112d5cd7940604e0a37c8a665a9en/a 
2023-05-17Uhlw.jsjs 5d013f446ebe04673bb83dd78ff1f26d14cf4776563b9db00808ec5a02a17b33n/a Quakbot
2023-05-17Xtvstgg.jsjs 6e6bf69439a6a331881220f61b3801f006e893078e8c98b23572acf14fc9fcban/a Quakbot
2023-05-17Uzslusan.jsjs b952f7167cfa4ae396fa5a97059d877a04400826ad7a41c1a661398c0117a47en/a Quakbot
2023-05-17Gawhpqa.jsjs 7dcc29250b3c70f287f8a00f38fe357341b9872239e2bcda904b6627980a1ffan/a Quakbot
2023-05-16Ijblpko.jsjs 28976d04a6272cb5347fc3c9e71f0e7c3ef547f65e0a52f492cb7352637b0b26n/a Quakbot
2023-05-16Himmqzz.jsjs 7601d7105b4e3a9f020a801a85114e72e0971a96d3817301b32e2a007336d389n/a Quakbot
2023-05-16Kadmboq.jsjs e2d03109e8bc2ca7e965d6b08d078bac48a5573da5eefb7aa1a9332d533d5511n/a Quakbot
2023-05-16Wwyc.jsjs 5e0c4e331b087bedc389b4b58d217376f86326587521d3a027c31af4752df69dn/a Quakbot
2023-05-16Mdnf.jsjs a3f17e2c68dc4cb865c37afce30dfd0cf270b7a9f272a8d978a85638d4af0774n/a Quakbot
2023-05-16Spxx.jsjs c4846bee6462f3d96fde525424e98d3c5b2e6a13be74c16987f8aad1674d2766n/a