URLhaus Database

You are currently viewing the URLhaus database entry for https://dcryptobuzz.com/moua/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2634481
URL: https://dcryptobuzz.com/moua/?1
URL Status:Offline
Host: dcryptobuzz.com
Date added:2023-05-16 19:09:12 UTC
Last online:2023-05-18 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-16 19:10:27 UTC to abuse{at}namecheaphosting[dot]com)
Takedown time:2 days, 2 hours, 7 minutes Poor (down since 2023-05-18 21:18:10 UTC)
Tags:BB28 geofenced js Qakbot link qbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-18Uulof.jsjs 6016f12710a18923ed029eb1dc62882b5f1a032a7424e0169dd8c2228598f59dVirustotal results 27.12% 
2023-05-18Stxcfi.jsjs c74cf0cb7927a8438a84c9cedbdbab3e4815550813336043f39674a67b6a021aVirustotal results 28.07% 
2023-05-18Vhqf.jsjs 51ffefa8a10b6da720a80cec4735fe173669e7c974946e46c8dda908e824d8a4Virustotal results 22.03%
2023-05-18Ykik.jsjs 76443e093ed6d6e3961cb5f9bbd546bab2d05f6bc2536c5744dc86f7a769bea8Virustotal results 30.51% 
2023-05-18Awletdj.jsjs 4d5930fafddc2692e6c1a340c6245c1808561d2295d342f2cbeea65191d05c43n/a 
2023-05-18Sxagsn.jsjs 8496ebcccb2676a1fb21ed0fdf36c320fabcf9036d275af7acc025b0182e7963n/a Quakbot
2023-05-18Plpdd.jsjs b9a4b8691e7de63f6af1a61319d16827e3308ff248981ca1c9d815fee2a1b93bVirustotal results 32.20% Quakbot
2023-05-18Hjbq.jsjs 91f2349ddffafc85ec07721077d9d38a2ab0376beaf588950fe98bb16d3218efn/a Quakbot
2023-05-18Hjpszmlf.jsjs 43a19d17453fa7c2633186d340c06a3b0b794b8cfe7e6ce0adf02f44713c5e25Virustotal results 23.21% Quakbot
2023-05-18Sehswqmm.jsjs 176082ec2166a938b76477a4d42d940987b38d787c43628c9e17e75057338dc2Virustotal results 10.17% Quakbot
2023-05-18Akvkz.jsjs d5cf74860b7b3a07c522d435a8360406d7c4a5575bd34a1244d8d0c1426bdb61n/a Quakbot
2023-05-18Ixekq.jsjs 0b38200ce89d27eea5fb23346b4015cb585d0af5fd4f176a7c9bdb20ae369a4eVirustotal results 25.42% Quakbot
2023-05-18Emqzeq.jsjs f6bf73aa768753f4379e2df6f0094dda46beb48b879c76c983896434f67c0ab0n/a 
2023-05-17Biaoshex.jsjs 7d4c05f2b21fe02c34ffc3bc7077929482fa7cdbc01c894e2647cf6e38ab20bbn/a Quakbot
2023-05-17Czphwhl.jsjs 5e2610a338e8ef5c3c882966366fdd36d988d79233ad84071b96fe04a7ea18cbVirustotal results 30.51% Quakbot
2023-05-17Rezjxih.jsjs 77a97bbae92dc7a7845ded72bd28a849a3c41c2912628816d93ff4b9a27ed45fVirustotal results 32.20% Quakbot
2023-05-17Szdlhxel.jsjs 0d025c1350cd713034b5b581118f5b7a71d0ba2551cc2321adbd286c8493fa25n/a Quakbot
2023-05-17Lodaqfm.jsjs 47838303934003e958511bf93e4b40816c144d7ddb6c99ad7cdda7145ee5dcf8Virustotal results 24.14% Quakbot
2023-05-17Pnoi.jsjs b64790ef2bb214bf0fea83cb0aff305cd66dd38f065ab3cc62b9ddf5d3570eecVirustotal results 23.73% Quakbot
2023-05-17Vcdzr.jsjs 36fa7b7d4e7fc7c9366c2fa6533c47fd96cdc2d9a6f2c3a9025fc4271c5d4c18n/a Quakbot
2023-05-17Uyrt.jsjs 819c3375d47e95f26e1466039e2ff5a096837d0761bed7564c2366b094c8895bn/a 
2023-05-17Etvit.jsjs b6bc2e49d104a9e875cbcbc3f7839558466dfc615e5802342dd95bb917624779n/a Quakbot
2023-05-17Khhysygk.jsjs fafad2beda82ca00b0b4cf6be670e3a06b91a87a261c4cf718d9b30534134876n/a Quakbot
2023-05-17Njszhfp.jsjs 98e310414bbb54bbce1e8c440fbbe033ed0cde3196d6a4bf98897813d1996902n/a 
2023-05-17Icgr.jsjs 69a6c03bf21fa96d35bef4b966637ebb004bdbf2705f9700c4f75ffa9cb84149n/a Quakbot
2023-05-17Osqueznm.jsjs ad98cb42a2d4b123964f774bf75f1d89b0480f33a1f8dab308bce676f9d980e8n/a Quakbot
2023-05-17Fjsggok.jsjs d9cb32f570bb2238a6ca7152c0c4b9008eb7cf321d29450cd97d91e899a5a73cn/a Quakbot
2023-05-16Amkjmg.jsjs e07771aebba4db2951234f66dcd11cfbe0486a2afde89439f7d52dd5061e18dan/a Quakbot
2023-05-16Hqrgdf.jsjs a459feba60a4a4b2fd06599e6ac73c3b7b068500888b14e98c6b8d85516ee8f1n/a Quakbot
2023-05-16Qbovdtrz.jsjs 83b52c3c4d917b604ecfa4dc893f21088174b65234173e0f73a48c96f4f350f6n/a Quakbot
2023-05-16Cozb.jsjs 25ac52fc8f580475ccbc2ac788f7470b29bfa8935936cfd45e65e56e86d1d591n/a Quakbot