URLhaus Database

You are currently viewing the URLhaus database entry for https://maisbolsabrasil.org/nn/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2634321
URL: https://maisbolsabrasil.org/nn/?1
URL Status:Offline
Host: maisbolsabrasil.org
Date added:2023-05-16 13:42:38 UTC
Last online:2023-05-18 22:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-16 13:46:14 UTC to abuse{at}hostgator[dot]com,eig-net-team{at}endurance[dot]com,jayanathan[dot]muhunthan{at}endurance[dot]com)
Takedown time:2 days, 9 hours, 1 minutes Poor (down since 2023-05-18 22:48:01 UTC)
Tags:BB28 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-18Zdtjqqp.jsjs c74cf0cb7927a8438a84c9cedbdbab3e4815550813336043f39674a67b6a021aVirustotal results 28.07% 
2023-05-18Nxkrtmc.jsjs d76b1300fd995ec8def343df0450c11a58a217803fee3749db4afacebc64182eVirustotal results 22.03% 
2023-05-18Drgnfsj.jsjs bbcdb87a842c5157acea98f0cedd358f764e2613b6a635e4f9f5946de8c07780Virustotal results 13.56% 
2023-05-18Cqiu.jsjs 51ffefa8a10b6da720a80cec4735fe173669e7c974946e46c8dda908e824d8a4Virustotal results 22.03%
2023-05-18Cdzmzqx.jsjs 9a7b6842e81a18456e160cf2e864028ac6fd35db21813d94cdd71cd33d4e3a6bn/a 
2023-05-18Mmpq.jsjs 35a99626b0db91409ed1ac874964033c1490a20549ae611e95fa7f81dbd98d44n/a Quakbot
2023-05-18Thdh.jsjs 50181b4f3b73fded444a5822e9aae57537b05f693c1a1887d0f8b54f0f597de3Virustotal results 24.14% Quakbot
2023-05-18Coytcq.jsjs cc1399eba326d79dc397363937989a81822144dc05e184cd6d904bbf2617e9f7Virustotal results 22.41% Quakbot
2023-05-18Snntmgo.jsjs 3a2fe931e43de04dd026f5fa57590b2baf3539c2930e6d9239ec3a95a1ec6bd7Virustotal results 32.20% Quakbot
2023-05-18Knhdi.jsjs becfbdbbd5a9cfbb918940eafdd8f586133d77eb11bfc5dac1f96e7787abfd65Virustotal results 22.81% Quakbot
2023-05-18Zixbycu.jsjs 2f457141989cd8db7267b3dd982bc3aca3c0d763161cfedf75384aaa9b27bfe3n/a Quakbot
2023-05-18Hfsxk.jsjs 7b0e64b5b88495d402a11b16ad7776cc5e0d44a07992e8b9cf9c7006a92ac8bcn/a Quakbot
2023-05-18Jvxzvv.jsjs 70a531a610e47641bb1c9aa721282178341c6ccae5578f0ba31a38cfc5cad76eVirustotal results 27.12% Quakbot
2023-05-17Ytfnpd.jsjs 32805d4a1cf5298234803410351824aacdf3ae591f390289a3ae325ad6e77e1en/a Quakbot
2023-05-17Bkrqrrx.jsjs 64b83f23408d2a7227fa4c862e4bafcc65ec650c57113690f264fd64d4b9bfceVirustotal results 27.12% Quakbot
2023-05-17Fnnfcps.jsjs 1518f10a4a3e1bb0772544083dd21336675b9248d73c59f8dd75068406de1474n/a Quakbot
2023-05-17Bmkxb.jsjs 71122ff461bd77e00f131eb7f52d813ed7a1fdb3262bba2adb83ee04085152f9Virustotal results 34.48% 
2023-05-17Ycvs.jsjs aa49eea2c5b828df4f85742d3d76bc365ee6c18721795dfe567bd8be0b360d61Virustotal results 28.81% Quakbot
2023-05-17Jtohjfc.jsjs 91bf97c2e5d25bf79ff22ef99cccd3bdb7aab412d34521e172610b16562203d8n/a Quakbot
2023-05-17Wiayei.jsjs 9df3913b28766d41d3231bc0996357b93135e9e04b66f9aee8716778c2a462a9n/a Quakbot
2023-05-17Gpka.jsjs e76ceed93c5e2fc649e71b50c6f1cf0a1801e499b4ddef07599654f37e7ceec7n/a Quakbot
2023-05-17Guwsxpr.jsjs 38d027c533f0572a2188bedd0dbf7d47cbc18609f644793b8a8ef7969fb534adn/a Quakbot
2023-05-17Gromek.jsjs 238bccac6fd64ea5f4cb13af8d1b767295620e5dc27d6f8d73e6eee263794452n/a Quakbot
2023-05-17Eouqxvb.jsjs e418e7603217d540136382e53417efe5bdbc82ada9cdc76d7bc52f49123882aan/a Quakbot
2023-05-17Fsknrht.jsjs 67004953cd04db679cdfefe7a773fa3bc9e62bf454dab8c6501a2f9b85bc664dn/a Quakbot
2023-05-17Nhhoslq.jsjs 8ede5f15e157a1ac619aec6e0b69e93603a172ef01d32093d9ed2b47156264a8n/a Quakbot
2023-05-17Uomedi.jsjs 2565a4ca781039a8436d594149d05e9ca7ab988b53177935889c9855b1dbd5den/a Quakbot
2023-05-16Sdmamzth.jsjs f614e1a2246e6d8a1659903cd5e5d18374433edebbd32ec35723b7dab65f958an/a Quakbot
2023-05-16Tcebkcy.jsjs a164b3a72ccf65349a5cc4aecb10e7bb06e80a8f0528b2be9e46c83978754e6cn/a Quakbot
2023-05-16Nqkclndz.jsjs 2499e24dafcbc2249ef920568bede8ac9bd082839b97866059b92a673354e11cn/a Quakbot
2023-05-16Ckszfhtv.jsjs b201ab088934ed3aeb270b84758defa373f1138dcfd31c462bf01b845893eb8dn/a Quakbot
2023-05-16Zpdjsnu.jsjs fc257c341b0cbc31d2ea1247db1cfb309af08ba258a2ee99d89fecce495f5823n/a Quakbot
2023-05-16Qkhzoyzb.jsjs 096eecf6bcb8e9db3877a0479764099cd9b9df90b5efe781a95b1baa4321f122n/a Quakbot
2023-05-16Miudu.jsjs 86966ca98afdf6e6ceb416f5121b2094944b577c0553e49af76f780709f56c1bn/a Quakbot