URLhaus Database

You are currently viewing the URLhaus database entry for https://breakthroughreward.com/urm/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2634467
URL: https://breakthroughreward.com/urm/?1
URL Status:Offline
Host: breakthroughreward.com
Date added:2023-05-16 19:08:23 UTC
Last online:2023-05-18 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-16 19:09:34 UTC to abuse{at}cloudflare[dot]com)
Takedown time:2 days, 2 hours, 6 minutes Poor (down since 2023-05-18 21:15:47 UTC)
Tags:BB28 geofenced js Qakbot link qbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-18Zxzgcd.jsjs d76b1300fd995ec8def343df0450c11a58a217803fee3749db4afacebc64182eVirustotal results 22.03% 
2023-05-18Jhzxx.jsjs 76443e093ed6d6e3961cb5f9bbd546bab2d05f6bc2536c5744dc86f7a769bea8Virustotal results 30.51% 
2023-05-18Jnlrmyzh.jsjs c74cf0cb7927a8438a84c9cedbdbab3e4815550813336043f39674a67b6a021aVirustotal results 28.07% 
2023-05-18Irku.jsjs b2364ea30109948d36f99aa0b62eed376d0a58a291c3e1079283cda17f161151n/a 
2023-05-18Sghg.jsjs 4ade6f7d7cfcd03dbffdfe401ed93fa601500252c858fa6010e54b0587fa0249Virustotal results 27.12% Quakbot
2023-05-18Dxzze.jsjs e78861a712a577b61558f7ea9878b91e974692081e5daa5f02dcb5ff1cdc359aVirustotal results 32.20% Quakbot
2023-05-18Anfbwyi.jsjs 534fb18b08176440d03086ec406d8a79bdfaf1488c044a8355d161fd7e521950Virustotal results 25.42% Quakbot
2023-05-18Qnaeb.jsjs 11ef57c233cd2baa14c4cfb9579839d381fbdec85d01923f9679f5ed21935f52n/a Quakbot
2023-05-18Kykhhmv.jsjs 9a649ac76d537c5f4ceb023745e2fcb3a6ed8443c46ac1f2dbd7da98f0487deen/a 
2023-05-18Qxgg.jsjs 35c35c65a46137ab025bfda60be1ea1c10a10b9cae6e337415b9c7b2ebd3df3en/a Quakbot
2023-05-18Lptvpkom.jsjs 3f883b067422272c3b10eea88505351741b599d103f66676cb75912106735cfdn/a 
2023-05-18Auxb.jsjs fcdd7c512aa91e5f6574a7c7ab77a118b9e1af5f2e3b502a5adb136508c4ba47n/a Quakbot
2023-05-18Jwyl.jsjs 9f16a38888bf7c130dfc15dff72eda59b2621e7c1048f157a4cf51e9bcb2e280Virustotal results 32.20% Quakbot
2023-05-17Isqctc.jsjs 9665c60390e6de64d398dc14f91957bbec2a396ca2c0ee79cde6f8ae0e2a585dn/a Quakbot
2023-05-17Piephiyf.jsjs 4763068a93fa58650c7a913bb253b59fb9f5f7da3d041d28302d9d1b4d301008Virustotal results 27.12% Quakbot
2023-05-17Eciy.jsjs 0eb7615075853fea63154c3bbd2be5b4bb724f0717a67082633fe348e45b49ebn/a Quakbot
2023-05-17Rxqjwj.jsjs c7018ff287088c076eb317d0b9402bc9dda25e832c0b205e91a3aeef7468bcd4Virustotal results 32.76% Quakbot
2023-05-17Tlgejqlo.jsjs 614b789451a47511f7b28865dc84ac5a5214ce91e53b5f9ebf50cc64c5cff4d0Virustotal results 25.42% Quakbot
2023-05-17Pihi.jsjs 36fa7b7d4e7fc7c9366c2fa6533c47fd96cdc2d9a6f2c3a9025fc4271c5d4c18n/a Quakbot
2023-05-17Ghnxdq.jsjs f80b9a7940830c735c2fbaf225da18389f25dc1ed7ef8e073311c9b3d680a95bn/a Quakbot
2023-05-17Kdkia.jsjs 407fc292ff19f337bcf90ec5c47895ec7a45968c1cae32f9adc71ab82328cf0cn/a Quakbot
2023-05-17Kkwo.jsjs 08bae18af7718fe8304876219b0b4868f9c9ffa4fbd5c8eba99b27eb7a692584n/a Quakbot
2023-05-17Hubvuiid.jsjs ddcd7fb3cc14c85b4dfdc6cccc994bc716ea3477665049c3ace15fc7fb4b0aadn/a Quakbot
2023-05-17Ihis.jsjs 3e7b623dc6d70fab1d23f938ecca11ace5282db84e048b897050b442d00866fdn/a Quakbot
2023-05-17Srqpzlwt.jsjs 92677ff70364b9f249ca64dea49b7534ca2e698190875bca7f10ea8e0f2be1a4n/a Quakbot
2023-05-17Kpno.jsjs c59b7b08ffc03bafb9bccab9ae7c59076b67f1c2c55d4e784937df7f0a8f52b3n/a Quakbot
2023-05-17Bnpo.jsjs 6cd0fc5a429d181eac210c2b24777cc960ed2db381e473a8c698b811c434e503n/a Quakbot
2023-05-16Yhgad.jsjs 28abf608c3fe1cee2f98a2527c62191e5a4936e85ab81606ed06ec71b1b8866cn/a Quakbot
2023-05-16Twuwpuyb.jsjs c50f1bc61f150789b33f00d0f06a94a1bfffd332faefa2d5f591459b02d886d6n/a Quakbot
2023-05-16Bfxa.jsjs 5cb902203996f65a068adb545165c59b36a80d7a3a2daace685ff607e0811704n/a Quakbot