URLhaus Database

You are currently viewing the URLhaus database entry for https://vidapediatriapreventiva.com/sam/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2633983
URL: https://vidapediatriapreventiva.com/sam/?1
URL Status:Offline
Host: vidapediatriapreventiva.com
Date added:2023-05-16 13:14:47 UTC
Last online:2023-05-18 22:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-16 13:17:34 UTC to abuse{at}bluehost[dot]com)
Takedown time:2 days, 9 hours, 17 minutes Poor (down since 2023-05-18 22:35:20 UTC)
Tags:BB28 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-18Prjnp.jsjs 1cea0c4b1af9170b9ed2927f3b100d202bebd1b8e69ba1527336aaa6b2c0bffcVirustotal results 13.33%
2023-05-18Wufqflyp.jsjs 6016f12710a18923ed029eb1dc62882b5f1a032a7424e0169dd8c2228598f59dVirustotal results 28.81% 
2023-05-18Cvlek.jsjs d76b1300fd995ec8def343df0450c11a58a217803fee3749db4afacebc64182eVirustotal results 22.03% 
2023-05-18Fjxfaz.jsjs 850ef85aa98191dd9497dbf807883ee52c1fd64a8863a7284e8f781786e469c8n/a 
2023-05-18Lcpxe.jsjs b1580417444140f2311d1f0098c4af6163f27ee7fc99281c6c6904870fdd88e3Virustotal results 27.12% Quakbot
2023-05-18Sble.jsjs a9c6050bc229b2d8d2b411d575194857f0f0b908185bcc15cd09d5c25f330867n/a Quakbot
2023-05-18Lfdbk.jsjs ef1c6b9ad4a7758ef25a4557fa7bf0a20ab6dd57c36474a91ef75620edd0974dVirustotal results 25.42% Quakbot
2023-05-18Xjmfgww.jsjs 2e6fa76c0870d4318d71a8defd95759f831cb88397931327f00478d853bc9525n/a Quakbot
2023-05-18Ukqhvqv.jsjs 4ade6f7d7cfcd03dbffdfe401ed93fa601500252c858fa6010e54b0587fa0249Virustotal results 27.12% Quakbot
2023-05-18Mnkw.jsjs 0b5625e5e6c8ca17119f220fef0e5b08313f77e79294375e8b2c57d9bdc47ca9Virustotal results 25.00% 
2023-05-18Ybvysqv.jsjs 2d4fa148f948ad83cb6ea9d45930d0384b699b8dad0de5e48214d4fcd895cad5Virustotal results 28.81% Quakbot
2023-05-18Vklcxroo.jsjs 81f0fe1ef9b350d79e5c368c2f73deec42c5a379bfbbe52f88c1c79ee481b5e9Virustotal results 11.86% 
2023-05-17Mhkqmrh.jsjs 38158794f34f920ddf3cc1bd5048a2d8be22b550ea27c09a0c746d59e22b3fc6Virustotal results 32.20% Quakbot
2023-05-17Yabvuwc.jsjs 71122ff461bd77e00f131eb7f52d813ed7a1fdb3262bba2adb83ee04085152f9Virustotal results 34.48% 
2023-05-17Gywd.jsjs 21fe5b84a05703a96f7e89bc1831bd5ef93ce9c6e1afe08259006454a502ba59Virustotal results 30.51% Quakbot
2023-05-17Kopt.jsjs 7f1024ee7a57ad586eb6a36dbb25ba4f7e78cbd55b3c87d5209716b7628bc53cVirustotal results 28.81% Quakbot
2023-05-17Iapkb.jsjs e2334bf18981148d6120cbe4ab94a09cd0bb833ae95e71955079aadd6cfc720dn/a Quakbot
2023-05-17Radtrtmi.jsjs 2ef6e700c619c1ace05075497393d8ac827d836ec052de9b6a71a0cdcd343141Virustotal results 24.14% Quakbot
2023-05-17Zgxyork.jsjs b9db0988cfc1418354e6e55c54e7346c335a55a40661a6907d35143a9f8f8f8cn/a Quakbot
2023-05-17Avax.jsjs fe6c3afc81fba017285089bb2240464e993b83edbf51755fe47e70d5ce454558n/a Quakbot
2023-05-17Owzm.jsjs 1f26839da60e55672a1ff564cacf4050f50673ab46f7c13ece884b64e8db290en/a Quakbot
2023-05-17Arxtqem.jsjs fdaee84ec031a1455323e70d5d554dd9f7e4126c62f0a64f0de6a4db1a7398cdn/a Quakbot
2023-05-17Ncscso.jsjs 62c38a7036981e8218f19d1b601a08aee85d7d23b81317ddeb448a8a635aac89n/a Quakbot
2023-05-17Rdrw.jsjs ff4f05eafc356ca3197cdc12381f0f43ea5f0725077cbebcabf5f88dea078de9n/a Quakbot
2023-05-17Qtiblw.jsjs aeafdb45a8dbd914af7184ecf04682f376f592f275f8ce73ba5e9abac1836289n/a Quakbot
2023-05-17Xlhadeg.jsjs 4c4125afc18a7b50cc65f7784e097cbf15267484ffaeb588a44242357d0466e2n/a Quakbot
2023-05-17Zfqh.jsjs 561f1cf8cc934077c6f217c3b53aea752a19e96467dced66a4bfe02a4847d074n/a 
2023-05-16Gihxh.jsjs d8b8d028429cf52afbbf75740274bdb29b74993aee8ba3b88a6d1a067d42d6e8n/a Quakbot
2023-05-16Wqrpp.jsjs b6d4a45ae00f3238bd87bd93e434785c1ae63931e44e8fa43212c12b6c620bc7n/a Quakbot
2023-05-16Yuuxc.jsjs 6310233bd1c7220606ec77928142ce83a48cd6f9d3429813eb90b69078339273n/a 
2023-05-16Lhjp.jsjs 2dfc23960217f7506d0020f246f6bf681c15bf2e4bddf227c0c1b78a93a241afn/a Quakbot
2023-05-16Uplkprjw.jsjs 5b32d4614eb0a2a2c13c3dcdf81ab1237d79eb5c2b3f75f1c35e8f38fb7c85e7n/a Quakbot
2023-05-16Epuwvxd.jsjs 8a680efcc0616ef0384da5ba06dc170d9aed43f42b93d99b3687297d12533fb7n/a 
2023-05-16Ltltc.jsjs 959d8aad4b7c7af40b85d653deeccab9743db8de9e489f1c81952fe2e145c039n/a Quakbot