URLhaus Database

You are currently viewing the URLhaus database entry for https://colorcaribbeanbeauties.com/ene/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2634478
URL: https://colorcaribbeanbeauties.com/ene/?1
URL Status:Offline
Host: colorcaribbeanbeauties.com
Date added:2023-05-16 19:09:11 UTC
Last online:2023-05-18 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-16 19:10:24 UTC to abuse{at}bluehost[dot]com)
Takedown time:2 days, 1 hours, 52 minutes Poor (down since 2023-05-18 21:02:41 UTC)
Tags:BB28 geofenced js Qakbot link qbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-18Wulfgupo.jsjs bbcdb87a842c5157acea98f0cedd358f764e2613b6a635e4f9f5946de8c07780Virustotal results 13.56% 
2023-05-18Evijsc.jsjs 51ffefa8a10b6da720a80cec4735fe173669e7c974946e46c8dda908e824d8a4Virustotal results 22.03%
2023-05-18Dqnklsj.jsjs d76b1300fd995ec8def343df0450c11a58a217803fee3749db4afacebc64182eVirustotal results 22.03% 
2023-05-18Ovszxed.jsjs 0eaba15ab577cf3c9483477182ae842774b648400dbd159ba17e92102b8fdf7dn/a 
2023-05-18Qoie.jsjs 6c9b5539e5f1f1b4e1d609c95278f2b4bd4386f4efc315a332648f1467d2b94aVirustotal results 23.73% Quakbot
2023-05-18Istc.jsjs 1c8c07d6d5454652a85d1673775e071cb4068ca92c83d2e45e4cf830d85e56b7n/a Quakbot
2023-05-18Xougylzc.jsjs be782f3af4554ce0188bf903632e461191f0020d22f70c2760c1f9d32b21bfban/a 
2023-05-18Rwzrexv.jsjs 19f01a32bff6fe9b165ef850e438aa1e9f6ca0de31dcfa4ad489b61367cab1e2Virustotal results 25.42% 
2023-05-18Tczx.jsjs 8f5bae7c3310650dc125b9223695f4a40a6d1394f6f6f9dff466a3e53099ba7en/a Quakbot
2023-05-18Tzkb.jsjs b3d737c721d3c5e7e58a28f076c7fc26e6ebaab2f08f52e645c645c0b8536210n/a Quakbot
2023-05-18Byklnsw.jsjs 0e3f95cec4063907bf68a435963ea684b5f9bbcbdd4ac6337048ae70087a81fdn/a Quakbot
2023-05-17Zaggt.jsjs b896df419a5e1ac8fe67ede2b9594d6252e8dbf87ef64fd093ceacc52a84798fVirustotal results 24.14% Quakbot
2023-05-17Duftfga.jsjs 4bc76e07bcd4d492a60a7464d0a8d6c204b4744fac7ea6748a6b673c6ff31cc5n/a Quakbot
2023-05-17Jvkwv.jsjs fbf34d1f59eea01ae0ec44fb3d7e93d4a06dad0b411065a5d6292f3ebe7081acn/a Quakbot
2023-05-17Noqe.jsjs c6acb46e483e7792474a50acd3a7ad70626f538da57050c7153b3061376b4f02n/a Quakbot
2023-05-17Wtlqluui.jsjs 2ffe30857db286ab5839fb47499480fff446371b3c1f8df2d8dde6853266f088n/a Quakbot
2023-05-17Hzvt.jsjs 3f883b067422272c3b10eea88505351741b599d103f66676cb75912106735cfdn/a 
2023-05-17Jzruwg.jsjs 2c313cd1a4dccf8a65db87c9ba3fa021d72b657c76645f60008948e78b75b846n/a Quakbot
2023-05-17Tytxuhm.jsjs a9077783f78a7df93259426f4866e17e1ad8498f6c9a8a702e01b52977c67684n/a 
2023-05-17Flivst.jsjs b6253e4f6053b330b93b23606e34306712190a3ed48283f1fd43e0ef7be7c6bbn/a Quakbot
2023-05-17Nguohtw.jsjs 0df9b4d789e92691f602fa0376b1a20bdd65ee554a1aaec6534e6293eb4af450n/a Quakbot
2023-05-17Pfoj.jsjs ba64add4f2aa11f4f3ee55d1e39d978d82827fe289bef9f17c02fe9be62a5579n/a 
2023-05-17Kpkvpqw.jsjs bd45376a2f6ec003a002d844687d970569d27ec9a7fc1f7637be46e895152efcn/a Quakbot
2023-05-17Ilejshl.jsjs 21f01ba4f40fd55c857a9e7e53d02ffad50743b70c90c86d6a362ad6bbbee5e1n/a Quakbot
2023-05-17Twwxwiw.jsjs e6f68b97518d325afb7985b0c116825e52fc108d9ce77dc3be7f3e6624de63c8n/a Quakbot
2023-05-16Yhonksqs.jsjs 7753e882042872e78c5efd69de921770c9945c02f0b36fb9b20e7ecef379d42dn/a Quakbot
2023-05-16Kgjlope.jsjs 58cd2c96af05458fe6a354c987ee5709b9436da8e88cdf72417cd53e47ac5726n/a 
2023-05-16Hwbjld.jsjs 3977d9ec806977a5110d1facd47fb8ec2fbb69ffdceeeb3c0e88fd807690f91en/a Quakbot