URLhaus Database

You are currently viewing the URLhaus database entry for https://sushibistrot.com/at/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2633957
URL: https://sushibistrot.com/at/?1
URL Status:Offline
Host: sushibistrot.com
Date added:2023-05-16 13:14:39 UTC
Last online:2023-05-18 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-16 13:17:04 UTC to abuse{at}hivelocity[dot]net)
Takedown time:2 days, 8 hours, 14 minutes Poor (down since 2023-05-18 21:31:57 UTC)
Tags:BB28 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-18Ursfezfn.jsjs 1cea0c4b1af9170b9ed2927f3b100d202bebd1b8e69ba1527336aaa6b2c0bffcVirustotal results 13.33%
2023-05-18Dydxfqu.jsjs 1a2e818afb29521c8658d2a0643158af97370d69c32c0bd85cb900bd3e85b0eeVirustotal results 22.03% 
2023-05-18Ihvbv.jsjs 8377c00b535fc6357e40a5fabfa43854d24cfbb8ed519dac87558ba403df81adn/a 
2023-05-18Xnmy.jsjs 266bfb248bbfb5fafc879d0a26c731499ccb3de4c57b64ce4b3a3fc6f836b93bVirustotal results 25.42% Quakbot
2023-05-18Gpqpbz.jsjs 0b8b2630460c4baa473d458c5dfe165acc6e1cd41d684697d22599bce6fcf623n/a Quakbot
2023-05-18Vcat.jsjs 91bf97c2e5d25bf79ff22ef99cccd3bdb7aab412d34521e172610b16562203d8n/a Quakbot
2023-05-18Gdlx.jsjs 621b5cf40077c9b8235e3525da2dea7b28a80029ac3f7ee7477d78c780f4b8c7n/a Quakbot
2023-05-18Aoev.jsjs fb639f61394301ec51c3c82b270fa10118b12150f177db33a72560d80ad79f25n/a 
2023-05-18Xqktffx.jsjs 20336fdfef9d5684dd6055ff838104e334316b82122b0a12b809b529b1a66cefn/a Quakbot
2023-05-18Bhuqnoo.jsjs 47b6986c5352ef5a3ecf9cbe02d34caf8e096cb6635c958ce8dedb89540da3d8Virustotal results 26.79% Quakbot
2023-05-18Syzyvx.jsjs 9d55c860ce682edea5933b6e9e441703b00b9880087fafd62ecedabf0665836dVirustotal results 32.20% Quakbot
2023-05-18Tqqddiq.jsjs ccdc371fa95a2dc8192ecf73826f489942857addced0e8ce4b9aa969aa98381en/a Quakbot
2023-05-17Witxxwr.jsjs ce5efda576bdfd577cb85bba27c1785787f37d30869878530f7249504d45cf69n/a Quakbot
2023-05-17Jdub.jsjs 2e6fa76c0870d4318d71a8defd95759f831cb88397931327f00478d853bc9525n/a Quakbot
2023-05-17Yldtqz.jsjs a1f08963f5715bb8830f2ea036c6be1f8a5f34bc8a6bc799c36611f79e54b14dn/a Quakbot
2023-05-17Smkpjt.jsjs 5fe1ce92222b0ef2d0fe599c26907689fbeb05acb3c14dcc9cd468d2db479a26n/a Quakbot
2023-05-17Kdwkw.jsjs 5b081d8987954ca182f1f9c83eb5c24851ef6647e29f84c5fde150d826531e53n/a 
2023-05-17Uismobx.jsjs 029b6f2d9cfb0a2a335c9b9377c1dac9e71206e55f6f82c7d3c0e2edceb9b734n/a 
2023-05-17Ryjmkfbg.jsjs 5b2d175b18348c26ef8ad20f51fdeb4aa6ab4076aa57cc05caa3cc8772385077n/a 
2023-05-17Dybj.jsjs f72583943898e1e7e0b31bf5cd4168b8474e80a321869cc1a4f254b99b330e52n/a Quakbot
2023-05-17Rsku.jsjs b2e3e577f3f7a19f996576185fdf874c39054444327c33d02a3655111a373d6an/a Quakbot
2023-05-17Qlpnmgr.jsjs 598f8a658000521cbfdd8618721fa94a9a0952a545ace0bd552ef156c48cca29n/a Quakbot
2023-05-17Xvpkuvz.jsjs 8115e95109a718c29f6c0bb9f268773b50c959048ed76e1912add845eca82c6dn/a 
2023-05-17Tqmlwpq.jsjs 6507180ddc108f511349a986be3cc3c764583c4af349b6195578cb7a48e01e10n/a Quakbot
2023-05-17Wnjyr.jsjs b507b9dba3c57325f7e13aaaa715121d948935155b92671646fcd1b85ae59363n/a Quakbot
2023-05-16Cheugvi.jsjs afdc967d8d0ef20a10fd0d4484197a21ffaf95f54e3c856f94f47db479c4c6b2n/a Quakbot
2023-05-16Sppi.jsjs b8188797ca3402e7bb596c885b1545be56958ecf042fdfee98dbf090ba1c2117n/a Quakbot
2023-05-16Gllb.jsjs 9d7b86e2ae9c79e83438cbe82c17fa431a916b39a4d6220e16af8543c84e621cn/a 
2023-05-16Mmlag.jsjs cf9ad30b026f39221afd40202f0a3e0fb091a001c3f1f145eab8cec75cf8c056n/a Quakbot
2023-05-16Ozvaxeoi.jsjs 2cd2a13217bc94882e8973a6ceafd74ab0f75c72f2cab089ddfb885e032f0b13n/a Quakbot
2023-05-16Opdtpm.jsjs 3feb17d2dad41b9e49644d3f93fafc46d408385c752c104d5068002c58a8cb20n/a Quakbot
2023-05-16Umftkzz.jsjs b77bdeae4f846d19d5e37650a24bdc93329353ec332a02e6fe30607414a6ba96n/a Quakbot
2023-05-16Wafbabt.jsjs d4b0d026ea372e66dc004b18020b285b276843831888e1131e26430eccc8fe2en/a Quakbot