URLhaus Database

You are currently viewing the URLhaus database entry for https://breakthroughreward.com/op/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2634468
URL: https://breakthroughreward.com/op/?1
URL Status:Offline
Host: breakthroughreward.com
Date added:2023-05-16 19:08:23 UTC
Last online:2023-05-18 22:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-16 19:09:34 UTC to abuse{at}cloudflare[dot]com)
Takedown time:2 days, 3 hours, 28 minutes Poor (down since 2023-05-18 22:38:27 UTC)
Tags:BB28 geofenced GuLoader link js Qakbot link qbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-18Slypqo.jsjs bbcdb87a842c5157acea98f0cedd358f764e2613b6a635e4f9f5946de8c07780Virustotal results 13.56% 
2023-05-18Nugc.jsjs 1a2e818afb29521c8658d2a0643158af97370d69c32c0bd85cb900bd3e85b0eeVirustotal results 22.03% 
2023-05-18Lnsy.jsjs d3c6e06204212c1aeeef29809460056535cba3beca8cf163b7c8719671ef0c9fVirustotal results 22.03% 
2023-05-18Xchyzkp.jsjs 08550e3997978db1a2f8ac8ab760491cd509a773a3b4435e30ffdfbe3d4ae4a7n/a 
2023-05-18Jgbyeu.jsjs e4e514b57ab086485b47e1413c71a7e9bebc8c84c6615f90bf252d04c98fb5ebn/a Quakbot
2023-05-18Debkr.jsjs de40c651da56945e6aa4f1adecf9ca842f4b2c630f3e1ad45c2c02952d4578c7n/a Quakbot
2023-05-18Uicudj.jsjs 287c569bf794a7ec47dcd5f308d39f138b6b4b964ad50c335991038cafd9d476Virustotal results 32.20% Quakbot
2023-05-18Mxtte.jsjs ff50e9d6bada1c148165cd94d8242cd7c0651692a508bbec763046c0ad17be90Virustotal results 32.20% Quakbot
2023-05-18Mxzla.jsjs de678b4a37c6c15a808f0289a0185302b696546ff234a9c180ca99ac8bb1f313n/a GuLoader
2023-05-18Yylfkfp.jsjs cb2b2c5c8e0ff33bbc082310f5ad09305fb6f7b7e6d660efa2c02393341d6fd3n/a 
2023-05-18Edfp.jsjs f9a03e213a2bf36d23d4a6877af8261834b3049ed458410c5e8b4c6da00e2383Virustotal results 27.12% Quakbot
2023-05-18Uioq.jsjs 148afa4bdc9cc4fbfe4816e01d70172a2fba4ead24c822bd4cc936cb0efefaddn/a 
2023-05-17Wzxshp.jsjs 2a95cf3c1e69da726dd11f2d5621a546ce89b168fa1cab3506197a63de008d69Virustotal results 11.86% Quakbot
2023-05-17Xanko.jsjs 10f759e97a48df574fc941e1fdddf412b2e5a598d13829c47c202527d7d36ee6n/a 
2023-05-17Myqij.jsjs fe38571546fce56178ef24eac652a6bdb02adb17817e8381824c1e1039b5f642n/a Quakbot
2023-05-17Emguj.jsjs 506d6f7370fc1f1367a79bb76a39e5ed1e2c5113ca286350f3239788538fa80bVirustotal results 25.42% Quakbot
2023-05-17Yukhlmo.jsjs 42046702c8332860c6d6224d63344bbd919246deac12c67a32bee542c7cde41cVirustotal results 25.86% Quakbot
2023-05-17Fntyka.jsjs 89ddd75a9d671f30070d8ed74468e507a72e5ca5699855296beb959dae2b71b3Virustotal results 11.86% Quakbot
2023-05-17Roqe.jsjs 6880ce894904976fa0bcca1c18a48cf2a862737e355802fd26301563e6a09454Virustotal results 27.12% Quakbot
2023-05-17Epdbxal.jsjs 33e5253fc3841fb30d4467ba7144f20b94bfb5714befb85aa32837899b33859bn/a Quakbot
2023-05-17Hxqt.jsjs b246dc6bd29b7f7bf62fa6cfdb10a17053bed892c03b79d0328d384cf96f799an/a 
2023-05-17Xnry.jsjs dcf494b3290d93a90dd6014994b7b81c3a9c8b58063ecbe8b72f17dc4e9ae851n/a Quakbot
2023-05-17Sprer.jsjs dc2878520180f90abcda536d492e109a48cdd8e1aeacaea1145418565f4abbd3n/a Quakbot
2023-05-17Jsmpvxv.jsjs d93492a7bedf76dddc72d7d8fc06dcf435266a7c85509b430a07f011248f1b95n/a Quakbot
2023-05-17Mfos.jsjs 326ce5d38958d66ff4ee46c924f6becdd1107329c5fbb35c8cb311a0ed557e98n/a Quakbot
2023-05-17Wvkxxcu.jsjs cf7963a028d45fd204c061a3551009948d0dc8e248ec4f56439e450629a82652n/a Quakbot
2023-05-16Exzh.jsjs 16effa7a51852257e7eebf41da17863b596958f9e127a16d00f7723c3632bd23n/a Quakbot
2023-05-16Qyuufmpq.jsjs ede2bfc2159d47520ba1684fedd524862fb218daf2cc76df9a73846911343e67n/a Quakbot
2023-05-16Ztyekggv.jsjs d166f4c7a42dc7682feaa8187513c2fb4ac85772fd71780b83068c329b68e8ban/a Quakbot
2023-05-16Dkxfc.jsjs 07b74d42c9b2a5003d2614f53574dc6d001b03216ecdbe10a68f7ec2c67f4fb5n/a Quakbot