URLhaus Database

You are currently viewing the URLhaus database entry for https://almirajacademy.com/outt/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2634464
URL: https://almirajacademy.com/outt/?1
URL Status:Offline
Host: almirajacademy.com
Date added:2023-05-16 19:08:19 UTC
Last online:2023-05-18 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-16 19:09:31 UTC to abuse{at}namecheaphosting[dot]com)
Takedown time:2 days, 2 hours, 23 minutes Poor (down since 2023-05-18 21:32:36 UTC)
Tags:BB28 geofenced js Qakbot link qbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-18Hnge.jsjs c74cf0cb7927a8438a84c9cedbdbab3e4815550813336043f39674a67b6a021aVirustotal results 28.07% 
2023-05-18Bbohmnt.jsjs 1a2e818afb29521c8658d2a0643158af97370d69c32c0bd85cb900bd3e85b0eeVirustotal results 22.03% 
2023-05-18Bocdfwub.jsjs 1cea0c4b1af9170b9ed2927f3b100d202bebd1b8e69ba1527336aaa6b2c0bffcVirustotal results 13.56%
2023-05-18Doiewet.jsjs 53d2213def8d32cad93a6f6555fbf915af01b3db38b27ee42ea500fd9d468663n/a 
2023-05-18Qhgnfcom.jsjs abae955795961dc369ba3d41196f2f4238001efcff8a2dc429ababf4821ca7f5Virustotal results 23.73%
2023-05-18Dzyb.jsjs 0b38200ce89d27eea5fb23346b4015cb585d0af5fd4f176a7c9bdb20ae369a4eVirustotal results 25.42% Quakbot
2023-05-18Dgwfoq.jsjs 817e3087dd09d826cc20a0381d67784b264c51a854134ac760b9219f49d58f0dn/a 
2023-05-18Xezasprp.jsjs 8d8b15db563271d51b6caabd1d280fdd09e2262383534714503ad6903b1dd6fcVirustotal results 31.03% Quakbot
2023-05-18Uveywmr.jsjs 6a2662394ca0402750ab97d8fe3a3010858b9dd07c373ce3b2579f8f0b13364eVirustotal results 27.59% Quakbot
2023-05-18Ilvm.jsjs 9da26f54018ef7b69e7ca172d1ef9d1de643acee030e0b25c66a5f27867c8833Virustotal results 26.67% Quakbot
2023-05-18Hariodzf.jsjs 98e65224d86b8f3b2be7f45d6b5bc6711e25eba8a298bf06d24ad94bfa8b2089n/a Quakbot
2023-05-18Gkyxmse.jsjs aaa4050b504cc828d80b7057106a778bca86d9e00c674992ba5ee3eddf1db803n/a Quakbot
2023-05-17Zifgxsrg.jsjs 3769ece7cf8318e31632260f0a962a6c155adc7adcb91cb53a6d50100a8f3281n/a Quakbot
2023-05-17Fqzf.jsjs 9be436ae8d8612af572358c0394b27e9c751e6f50b2597c2b7ae636e99088255Virustotal results 28.81% 
2023-05-17Wlsrxmhx.jsjs 5002cf2a22a794f451347414eae921d359f14704e2fc3491ec70ae29266a6ea6Virustotal results 22.03% Quakbot
2023-05-17Fkhsd.jsjs 1f3d3d34fcd02bfbd9eba7becc4eb01342dffb209af4971f9df25374411cd1a7n/a Quakbot
2023-05-17Uwcv.jsjs 9e158a8d22dc98e3ae057267f1f3abc2cabc910f829c052269762460d602479an/a Quakbot
2023-05-17Ninj.jsjs 076515d52f5219c37701ac4b38e72e4f6a809dffce463343615c3fb079c9ec89n/a Quakbot
2023-05-17Ejyfzwr.jsjs 584680760762a6814ff84e38f5de401a9ba356c834f6302e03634c8883180fd4n/a 
2023-05-17Npyjmu.jsjs 84c5c109da884212935e893a14b665cc1efa6f9b2278fe85903727368f6d47d2n/a Quakbot
2023-05-17Geyffdj.jsjs 40a59754d45e671f53397087ef78d2ae420e585a71e69aad8c5f6ba1b1c8abeen/a Quakbot
2023-05-17Pmxhvo.jsjs dd6d5bf3dfbfa9adbc1f8b57fc9ea5efa6cf84a55e67d6108b40a44aa8c32648n/a Quakbot
2023-05-17Azruk.jsjs 9ff0e3adf1b6743f516b8e37c4057771bd347842d55e592aabcd61839dfe2983n/a Quakbot
2023-05-17Xlbfopyo.jsjs 9c8209b6a9899701a022fe8042ef0b6f5552efd5106b3e221d587b9e1f1213efn/a Quakbot
2023-05-17Fcqxhvbn.jsjs c928f6a0221edad262755e772590c1da9669b18090e049ed4c88bf322ed203b2n/a Quakbot
2023-05-16Njsp.jsjs 90398519f036952ae63458ac85785ef1d8de7ece6c0391457bf80684d08b082bn/a Quakbot
2023-05-16Epvhwfz.jsjs 35ce85660ffb2e5a930a8a9b010dfc6449e72967b74194c22294301ad57664b0n/a Quakbot
2023-05-16Obczbbmq.jsjs b96e338d7c5c8150b96b3799deca4e03804d2b02d31bf05de74773187d73e5f1n/a Quakbot
2023-05-16Pdyece.jsjs c16562fe32bceb73c39ad1b63584fe48d9bb8045c626fae3b511352a6558bfa4n/a Quakbot