URLhaus Database

You are currently viewing the URLhaus database entry for https://comprejogos.com/lut/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2634476
URL: https://comprejogos.com/lut/?1
URL Status:Offline
Host: comprejogos.com
Date added:2023-05-16 19:09:11 UTC
Last online:2023-05-18 22:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-16 19:10:22 UTC to abuse{at}cloudflare[dot]com)
Takedown time:2 days, 2 hours, 56 minutes Poor (down since 2023-05-18 22:06:58 UTC)
Tags:BB28 geofenced js Qakbot link qbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-18Cdvxheqf.jsjs bbcdb87a842c5157acea98f0cedd358f764e2613b6a635e4f9f5946de8c07780Virustotal results 13.56% 
2023-05-18Fhhnzv.jsjs 1cea0c4b1af9170b9ed2927f3b100d202bebd1b8e69ba1527336aaa6b2c0bffcVirustotal results 13.33%
2023-05-18Nvhjpoij.jsjs d7522ab4f64ae0950e24bb00df9157136bbcb900ace0c77bd1a46f06149bf37aVirustotal results 24.56% 
2023-05-18Ambprhlz.jsjs 45fccf9dd6cd9fd5f464724dfd244d0569e1b3c36362fa2d027f70dd0eaa89f8n/a 
2023-05-18Wynij.jsjs 2ae86821ba6902bdc957f61f92f752f51c37b2620aa00688fc6affc9b9b6c9c3n/a Quakbot
2023-05-18Lnmep.jsjs 2f457141989cd8db7267b3dd982bc3aca3c0d763161cfedf75384aaa9b27bfe3n/a Quakbot
2023-05-18Lffdapqz.jsjs 939b394768f864f5af2b1e196cb9982563bcbf1157f23f9a873030ba262566c3n/a Quakbot
2023-05-18Lpztaa.jsjs 71122ff461bd77e00f131eb7f52d813ed7a1fdb3262bba2adb83ee04085152f9Virustotal results 34.48% 
2023-05-18Jzij.jsjs 655729ffaa1d79b40a1df6017495f362432d5497a1c79b18220fdcc46d21f2aen/a 
2023-05-18Htrgee.jsjs 6e98b0ad9b6fe81e7dde4a5e76cddfdc25b19695ca702e4faf95f45dfc5a65e4Virustotal results 11.86% 
2023-05-18Ievqejz.jsjs 176082ec2166a938b76477a4d42d940987b38d787c43628c9e17e75057338dc2Virustotal results 10.17% Quakbot
2023-05-18Hndtxs.jsjs f6d73eed4ee4cb252294f53568ea49c055a4a65267b79e8491ace852655d5575Virustotal results 27.59% Quakbot
2023-05-18Vvkx.jsjs cd8a39cd43a8cbb2e0c04b201b7df230226fe2dd696ab5c20c9ecbb16cc723f3Virustotal results 24.14% Quakbot
2023-05-17Nxpzpl.jsjs 0769e73bc4ebc2ee5fdfb2e6d02b6a282085b48c709104d96e856380e8e4ecfdn/a Quakbot
2023-05-17Rjljgdb.jsjs 88e1c48885e6e3ca5b9336e4c427b393b3ed8d986289d640404abb2cdf869689Virustotal results 22.81% Quakbot
2023-05-17Sjfwozvr.jsjs 9fe91aecf500ad9c63e2325310e5a0f358434ce9e04f697e1173ad6af1956453Virustotal results 25.42% Quakbot
2023-05-17Zppt.jsjs 1a1943fad765d92f9e4afa5ae4df4ec80c61fe42d83f15ab13027ced2e33bbbaVirustotal results 25.42% Quakbot
2023-05-17Weud.jsjs 10f759e97a48df574fc941e1fdddf412b2e5a598d13829c47c202527d7d36ee6n/a 
2023-05-17Hpbsueh.jsjs 27544c60ff36a51e0dae2573402a63de5c6ae28c1c7160377a0d3787272d74bbn/a Quakbot
2023-05-17Uthqhh.jsjs 561eeabd5f230ff8d733b3aa53f761558b65f54ba6d32241bf0350b4e136b808n/a 
2023-05-17Siocj.jsjs de6dac9d814c8dca09edd46dcedeb14af32f49cc84f65abb3f84cf267f9fc7dan/a Quakbot
2023-05-17Inyrtnx.jsjs ad8f528b9e07d189572a2565ab66e379b491c695a7b577bc3b28fcd05e85be5bn/a Quakbot
2023-05-17Hscmp.jsjs 2b931842d6854febe4ad622dcd57f8480ad0c519d21833a3453a0056facf2842n/a Quakbot
2023-05-17Pvtz.jsjs ecea61c3ba616a91fc5eb0211bf200be96d30d51b192f731b3614b29f95447e0n/a Quakbot
2023-05-17Mqadrwac.jsjs fcf0aba2fc50a4913689cfac4340a972437bd25490e5e9a39bb1ddf9917afd35n/a Quakbot
2023-05-17Obmav.jsjs d18348cbb4f9e5317d97e9eb01c51589d41a22efcd3a471c207c9de3d558e7ddn/a 
2023-05-17Wwzszg.jsjs 3276d0dca190c3986e19c86bfa43debdf5ebc08e8ea2b661f9d7f56998ff976bn/a Quakbot
2023-05-16Yyfiee.jsjs 3fa4b2958775690fe5e332ec49eeb8022add3eb3648ba04d82bed815a78e80d4n/a Quakbot
2023-05-16Nydho.jsjs 554af19462771e8de512472d862b8e695e4e1d232deeb3df0ab9d6f96800e4f9n/a Quakbot
2023-05-16Osvnhn.jsjs f70d143cc806c7bd6e253054fd702905a1498e0bca9a2cbcc543db441d1b79fdn/a Quakbot