URLhaus Database

You are currently viewing the URLhaus database entry for https://careerparadigm.com/ip/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2634249
URL: https://careerparadigm.com/ip/?1
URL Status:Offline
Host: careerparadigm.com
Date added:2023-05-16 13:42:25 UTC
Last online:2023-05-16 13:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-16 13:43:44 UTC to abuse{at}cloudflare[dot]com)
Takedown time:2 days, 7 hours, 20 minutes Poor (down since 2023-05-18 21:03:53 UTC)
Tags:BB28 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-18Fyvugsbj.jsjs 6016f12710a18923ed029eb1dc62882b5f1a032a7424e0169dd8c2228598f59dVirustotal results 28.81% 
2023-05-18Lgucjm.jsjs 51ffefa8a10b6da720a80cec4735fe173669e7c974946e46c8dda908e824d8a4Virustotal results 22.03%
2023-05-18Uhrrcbn.jsjs 76443e093ed6d6e3961cb5f9bbd546bab2d05f6bc2536c5744dc86f7a769bea8Virustotal results 30.51% 
2023-05-18Gapt.jsjs 908db6615c1921fff03fc29dc428ccfc4be024518d2c166f9f3cf8f336c5e091n/a 
2023-05-18Zbebmqtp.jsjs c73f356c704556ac74d752c91963fe6a1c7273b77027b218016b83f03ca878eaVirustotal results 27.59% 
2023-05-18Ukoxify.jsjs a64cebdd853596ce95beeb112b9dfab6eab26ff09b77eaad1c909cb1b6cff48an/a Quakbot
2023-05-18Szanq.jsjs 2072042cbdf8458366261756217da566a1b8d6cf4b24541a37d71c44c07c7fdeVirustotal results 25.42% Quakbot
2023-05-18Fyap.jsjs 2570cf55120f499263bb8841172328a59101385bd1804bb919458e9bf167319bVirustotal results 25.86% Quakbot
2023-05-18Lwgdtou.jsjs d072c0958caad1a6504236a0de9defd899adf9e6deedeb1cdeba1e72229b29d8Virustotal results 30.51% Quakbot
2023-05-18Uukaty.jsjs 5e2610a338e8ef5c3c882966366fdd36d988d79233ad84071b96fe04a7ea18cbVirustotal results 30.51% Quakbot
2023-05-18Fbmdkwb.jsjs 93492712919e0adee85ebe16363f99eb8fdbfe7f055f8645bf21322ce803cc13n/a Quakbot
2023-05-18Ghrf.jsjs 586fe07a69bfe8b72088da7156e3feb75ac24d66ef99584f203b73fe30f08076Virustotal results 28.07% Quakbot
2023-05-17Xqxri.jsjs ace729a8273c30f923532f7f1a8c2d214aeb49b0c3109d8eff64612384b29140Virustotal results 31.03% Quakbot
2023-05-17Qdhalez.jsjs 4de3c0071371884b0a2e8815554e19a2c0d89112e1bd9bc512d30aa306d3f0a9n/a Quakbot
2023-05-17Fhcgwbvu.jsjs f51bc0d7dd86e4e6db698538eca1063e4e4936ee3f57c669e347f143576749d9Virustotal results 30.51% Quakbot
2023-05-17Svnulnro.jsjs 959eaab7d50ed2022fc6403b969a196f340861c5aafaa73ebd170ad225699275Virustotal results 15.52% Quakbot
2023-05-17Lylrhxxf.jsjs e1f86c377a5fb822c6704735ae1fc4f80bddbea822ee597fe99762e575e05ba2Virustotal results 25.86% Quakbot
2023-05-17Alwrddfd.jsjs dd72eab3dc3f67fee1ec6cae276e3ecb4fd364daf45f773c22f8a0c771fbf742Virustotal results 25.86% Quakbot
2023-05-17Gissr.jsjs 62046b91a066c98a15aeba46b02ff8ae453c2d23d8e39a7e7eb2fb4d322464cfn/a Quakbot
2023-05-17Fevkvt.jsjs b1e3d2745b4c0496abefe4fcbb7478d27f421219c3b47b2183301926e6de2bb3n/a Quakbot
2023-05-17Dqbvb.jsjs 2592ed9bbc02f4ec295275b89bc7ffc6803e661418d4ff2b7b4d5d30675552e3n/a Quakbot
2023-05-17Ajpndo.jsjs 04f1cce18a48df0b8d83f7b4a2b1a49f78d9487dd1a10a135abc8a11bc6d912bn/a Quakbot
2023-05-17Fwekw.jsjs 79e266b3dde69015c847e2c638dc4d85d4456733e8d051129f49d97b5f10b75en/a Quakbot
2023-05-17Iawhx.jsjs 285dbbd550191e9e9a07d60615cfa234fa936fa44374011e4969147bdb37629cn/a Quakbot
2023-05-17Dxkrgtga.jsjs de79d604b8f418a1f160c091aea9e7276fed572d32261ae7039ae4e64f095ce2n/a Quakbot
2023-05-17Sxpxspc.jsjs e323881b0bbca931e2967adacdcd81f5b366a778a546794750471b77a6b34b48n/a 
2023-05-17Qgciv.jsjs 231e80823a053d829da30085c180700a52eebb383115505575a3f1e60fbc80ccn/a 
2023-05-16Rmeeeuk.jsjs 51b7eae385765f96352737a4450535c18dea51b68b6ea1e0cd70181b01de274an/a Quakbot
2023-05-16Sbyjk.jsjs 6019a41ee682541ea13181405ec2872c6187532298cedd64da2f4126a2def6a3n/a Quakbot
2023-05-16Uhnbg.jsjs dc649af3e97c44403558c10c51c9f11a1a598f05821364c787c4fa118855ca1cn/a Quakbot
2023-05-16Olhphnmr.jsjs 4b069a2a7acc0df2817dda08f947eb9d48791cf181775d8905100e5cdef53dcdn/a Quakbot
2023-05-16Aaxsr.jsjs aca50febeea5c0ea90b14bbceffdb2bcd118827e80fd5760c1663a53f38ec036n/a Quakbot
2023-05-16Lasfh.jsjs 73823650fd8f295a922c3559a1f0fcd2d693f4a511b37665a52d8f27a92ce3e2n/a Quakbot