URLhaus Database

You are currently viewing the URLhaus database entry for https://logisticallcare.com/uri/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2634193
URL: https://logisticallcare.com/uri/?1
URL Status:Offline
Host: logisticallcare.com
Date added:2023-05-16 13:42:17 UTC
Last online:2023-05-18 22:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-16 13:44:30 UTC to abuse{at}namecheaphosting[dot]com)
Takedown time:2 days, 9 hours, 2 minutes Poor (down since 2023-05-18 22:46:31 UTC)
Tags:BB28 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-18Rmrhw.jsjs 1cea0c4b1af9170b9ed2927f3b100d202bebd1b8e69ba1527336aaa6b2c0bffcVirustotal results 13.33%
2023-05-18Hftxz.jsjs d7522ab4f64ae0950e24bb00df9157136bbcb900ace0c77bd1a46f06149bf37aVirustotal results 24.56% 
2023-05-18Tdoac.jsjs d3c6e06204212c1aeeef29809460056535cba3beca8cf163b7c8719671ef0c9fVirustotal results 22.03% 
2023-05-18Fhfjfm.jsjs 0013b6eb65005d875790752758d524a6ea87f5b3c18dc8e1714c0c917e870ab4n/a 
2023-05-18Trwafokt.jsjs 112fb3f4fda57d58405f842081f111d4f583c40ece7f17fd6805832360da7072Virustotal results 28.07% Quakbot
2023-05-18Yetkgz.jsjs b45fa98328f6170801cd88be88f4ac670f2266e2ed383e78f37fdd5d860dc695Virustotal results 30.51% Quakbot
2023-05-18Ctqu.jsjs 89ddd75a9d671f30070d8ed74468e507a72e5ca5699855296beb959dae2b71b3Virustotal results 11.86% Quakbot
2023-05-18Osyati.jsjs b5e43b4ccd0107bcf4e8ce081135f2adb345ba3df9a4df5637d3cd9e08b43ba8Virustotal results 21.15% Quakbot
2023-05-18Vqjhwbj.jsjs a84a8c5338c73e889cff9d58c510657f8624b8deedf847eef71befacab5ed60eVirustotal results 20.00% Quakbot
2023-05-18Mywau.jsjs 2683122550edbc50a5df311f2d51a511e7f980332b26d307f6ed2babdab38325Virustotal results 21.82% 
2023-05-18Zafoxtve.jsjs 77a97bbae92dc7a7845ded72bd28a849a3c41c2912628816d93ff4b9a27ed45fVirustotal results 32.20% Quakbot
2023-05-18Rrwgend.jsjs b7aee295279db7ddc9a5aaf2c89b1395f0a2c3ad92cabddcb41b024dbeff9c64Virustotal results 18.64% Quakbot
2023-05-17Klbbhbd.jsjs d8ee25b9b238ffa9197d9bb3defe47e9a2720909109c315f32b38191a4c534afVirustotal results 25.42% 
2023-05-17Jjec.jsjs 7723afb8d2a1417a6f0c808e628394b609e66227688064323ce47b25cb0505bcn/a Quakbot
2023-05-17Mccivkx.jsjs 1a3fc3e2d336f6c024b0a452cf6eab7b5521bd6591f7ff15ac80caf4af268c3aVirustotal results 32.20% Quakbot
2023-05-17Jcyzqxu.jsjs 7f2be16fe7cc7d8502ae20c7169578e1f795f15ed0f88cbe7c8a98ab4585d012Virustotal results 25.42% Quakbot
2023-05-17Vjkjtvt.jsjs 0c72f8db70d3f144ec7cb21515e337377b9aa689dad88dfbf1720634c8b70453Virustotal results 30.51% Quakbot
2023-05-17Mlfqti.jsjs 9f9b7a0d9944437dbf0052fad1d08898979bd6c9a9d937a98cea3c757a5f15d0Virustotal results 27.59% 
2023-05-17Aigpie.jsjs 0473836cfc335949eae38f3049dd3932d818dc6cbbe8c178f72c74370912d088Virustotal results 28.81% Quakbot
2023-05-17Mgdddjyb.jsjs 69d10bf1c18cc7df540de106a1056c5af79f8b60f1ffae762d06532cc84375d8n/a Quakbot
2023-05-17Fzni.jsjs 83781d8d75a3e0ac370b6fe744ba7a3b3be29112a098982732fdf2266ea9faf0n/a Quakbot
2023-05-17Dnlnq.jsjs a5a4ee8ee94d4804f1f09735f3372ac638b01ecb0ab0596d4c00600c296c8f1cn/a Quakbot
2023-05-17Cdxz.jsjs abcdcafc61e76fe4cd2c0351776e0f090b4fafd6f075a4fa086935511990d7cfn/a Quakbot
2023-05-17Nqeonrj.jsjs 7adea9aaaeca22e1d573f94f797b833a727f00e30c6806aefaf38ea01212020dn/a Quakbot
2023-05-17Diswr.jsjs 1d4081483b6ab24c4606c1fd77e240e602bfff428ad6594e7ac6defb8edab63bn/a 
2023-05-17Nobrlbmt.jsjs 3b39fe3884b567177fc61180797b33e8c94b4c4854bdbffb5ce4a632d8cbb0cdn/a Quakbot
2023-05-16Unpcplr.jsjs 1e47ad7550794a2e3a0fae3cc67dcca9eeb213e6d7352281d1378278b62dcf7cn/a Quakbot
2023-05-16Uetnpjov.jsjs 8cc901898757cf06a6bc35ddb4707c92ee1a2ac5e55cbd0049a149a9315c6db6n/a Quakbot
2023-05-16Dpmizy.jsjs 1684416bc9e25bcd251529e5ba55f7e37dfc79bccafc28941be6552e14555194n/a Quakbot
2023-05-16Ktpkg.jsjs 744bfc78c81ce846fa53241dfc36a12851ca1290c7e0b79397f628fa8424c0cbn/a Quakbot
2023-05-16Ckeonaq.jsjs 5a2d909130fb3c0b3050c80cd81057d219cba93581a09511c2cd420bcea04ec1n/a Quakbot
2023-05-16Kcgbblmp.jsjs 88cadcf89c415fcc834458f21b48eeb12d164b8cbf26b8adb605d8c9b455fbf4n/a Quakbot
2023-05-16Vsmiy.jsjs e8207fd437b405043b2d1770583c1c6d2d5ebb621cfeb60e47798e5ddf62701en/a 
2023-05-16Kinbbnco.jsjs 87ca70d5aba1f0e65bad74b6142622be7370c59092ea471ae945e471a318f4d0n/a Quakbot