URLhaus Database

You are currently viewing the URLhaus database entry for https://amchambolivia.com/ls/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2634438
URL: https://amchambolivia.com/ls/?1
URL Status:Offline
Host: amchambolivia.com
Date added:2023-05-16 19:08:11 UTC
Last online:2023-05-18 22:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-16 19:08:23 UTC to abuse{at}hostgator[dot]com)
Takedown time:2 days, 3 hours, 24 minutes Poor (down since 2023-05-18 22:32:46 UTC)
Tags:BB28 geofenced js Qakbot link qbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-18Mugghka.jsjs bbcdb87a842c5157acea98f0cedd358f764e2613b6a635e4f9f5946de8c07780Virustotal results 13.56% 
2023-05-18Usokxjo.jsjs 6016f12710a18923ed029eb1dc62882b5f1a032a7424e0169dd8c2228598f59dVirustotal results 28.81% 
2023-05-18Flfcetk.jsjs 51ffefa8a10b6da720a80cec4735fe173669e7c974946e46c8dda908e824d8a4n/a
2023-05-18Xqozcu.jsjs d3174d21c0af8584eb01c73536a3c50de953ccf9c1486afb0e38c63e608d5342Virustotal results 29.31% Quakbot
2023-05-18Ymbixnr.jsjs e7958ccd8a002219ae5c0a15fe85c42f33e3433270f0ba102d597f19a494e2e8Virustotal results 27.12% 
2023-05-18Zfdh.jsjs dfa59aec9d3aea04d54bc6bcacf0f7a1fc618f9981bc4a0955947134999d2ae9n/a Quakbot
2023-05-18Hndlg.jsjs ef903a00f557175fbe1af9263796fbdaad81dc6578e948729821675219196f43n/a Quakbot
2023-05-18Jkmk.jsjs 0c7c96dd589f0bc1676f7af1371bc70cbf50d310293d070ff8e1fef3df4533f9Virustotal results 24.14% 
2023-05-18Pxit.jsjs 6da4a8bacb02c6d1b3251c5978545168c0712fb14b5ec2731a867b73a3daeacan/a Quakbot
2023-05-18Uhcbes.jsjs 2d4fa148f948ad83cb6ea9d45930d0384b699b8dad0de5e48214d4fcd895cad5Virustotal results 28.81% Quakbot
2023-05-18Brspn.jsjs 91bf97c2e5d25bf79ff22ef99cccd3bdb7aab412d34521e172610b16562203d8n/a Quakbot
2023-05-17Swyaylxb.jsjs 0d83b17da8e3318b0fe3004f0ee17572790abab90c15278d5d57ac951953fe5an/a Quakbot
2023-05-17Hjuvrp.jsjs ec6f55b9c56d3dead8b8490dfbbcccadcdfef62b7d67c671b8d0ee9620f4b74fVirustotal results 16.95% 
2023-05-17Ptocebu.jsjs b0be9915846a032654d7a5cdc2488d13fd892ca71f707d67ef917a7ed79bd43fn/a 
2023-05-17Iyjv.jsjs 5b903308829f5c7410c0e53ec748a05a9e2205f4400bf2941199cf2223c0e1f7n/a Quakbot
2023-05-17Xrrkbga.jsjs ccfd3d544f060b0b45133acf8df8a753724ec29a916820e53f6e7692dd785c8dVirustotal results 21.67% Quakbot
2023-05-17Fchno.jsjs 8323339fe9864a8ae4d4d40aaccb4bf92a9b3ba6b545c2210dec09fb28bf9374Virustotal results 27.12% Quakbot
2023-05-17Jqkmv.jsjs 0d19b7d7e092df5355727bab9cbf454b5b17f90d5380ef6240d0cada7cb5a1c0Virustotal results 15.25% Quakbot
2023-05-17Jlfrozaf.jsjs b726185bac5c9502b0014a711f793d0559b2d0afcaf5cc376d063cb315412020n/a Quakbot
2023-05-17Hxegre.jsjs c8d839374b6245293246625d0eeccbe2b34ab7bb5a0486475e4538a935f3984bn/a Quakbot
2023-05-17Qylyb.jsjs 3519ce104b3a8d15db7decb714235059d65031c8387cba9ca601c39dc8dc549cn/a Quakbot
2023-05-17Qdnrqxee.jsjs 092113cfe8c893d6b86c98b5c4b5e02a61d1f3d834b025f3de4d89344e0ce230n/a Quakbot
2023-05-17Xvqisca.jsjs eb00abad91bbe8c142441b7914b6f24f348c91474ce9a81230c24782b11b2c8en/a Quakbot
2023-05-17Hcjgw.jsjs ebfab95faeeff8e7101a42e840a6a4c8e680791cfc4d1bf58ab948ffa93e0f39n/a Quakbot
2023-05-17Jkvaaqv.jsjs a7735b1cec8ae518f633ddfae139ff5b201127c3180c71e3ad83190daf3ab1fdn/a Quakbot
2023-05-17Ttpsxjz.jsjs bfe8258a7a9d85e5808d2c4682e68350c8f6ba4da03ba441faea7a1fc7d1eba8n/a Quakbot
2023-05-16Tzif.jsjs 6ee8dd896e3c6811a875076b400a1c2c6431e815494751454085084cd7cdb67fn/a Quakbot
2023-05-16Kyez.jsjs 74b8305c870b9f8eff53f334a793927c9db4beabd04669a8f56c55f07a06f157n/a 
2023-05-16Vill.jsjs 50f4682c31d30b4a357603dc433ea758aaeb67d97a3f1e6cbc114df3d6a4fa12n/a Quakbot