URLhaus Database

You are currently viewing the URLhaus database entry for https://daydreamsvilla.com/das/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2634499
URL: https://daydreamsvilla.com/das/?1
URL Status:Offline
Host: daydreamsvilla.com
Date added:2023-05-16 19:09:23 UTC
Last online:2023-05-18 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-16 19:10:41 UTC to abuse{at}cloudflare[dot]com)
Takedown time:2 days, 1 hours, 50 minutes Poor (down since 2023-05-18 21:01:31 UTC)
Tags:BB28 geofenced js Qakbot link qbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-18Yobktd.jsjs d7522ab4f64ae0950e24bb00df9157136bbcb900ace0c77bd1a46f06149bf37aVirustotal results 24.56% 
2023-05-18Jopo.jsjs 51ffefa8a10b6da720a80cec4735fe173669e7c974946e46c8dda908e824d8a4n/a
2023-05-18Safu.jsjs 00101ce136b60da252cd994cf9a49191259f677d6b7f56801b5d6084e3b5a1a5n/a 
2023-05-18Aoyt.jsjs a7a7249194b741b44bab1befd74e783ba57af2f211b597961892dcbe975544c2Virustotal results 30.51% Quakbot
2023-05-18Xtib.jsjs e000b46c0d6abfd08c10602eb092657cdf4c49e578302729b7d31ae55a978a5bVirustotal results 18.64% 
2023-05-18Nrhsljh.jsjs 148afa4bdc9cc4fbfe4816e01d70172a2fba4ead24c822bd4cc936cb0efefaddn/a 
2023-05-18Oqgwqa.jsjs 3a2fe931e43de04dd026f5fa57590b2baf3539c2930e6d9239ec3a95a1ec6bd7Virustotal results 32.20% Quakbot
2023-05-18Orcilzc.jsjs 6a23cf1558f0a3efb0abb0f298f9716be0446165e859f1116485a847cf57442eVirustotal results 32.20% Quakbot
2023-05-18Cyym.jsjs f51bc0d7dd86e4e6db698538eca1063e4e4936ee3f57c669e347f143576749d9Virustotal results 30.51% Quakbot
2023-05-18Qfhuetph.jsjs f064ddce080fc01f0b5b378227f89a1ee2f48034efc22bcdba315de07adb217eVirustotal results 28.33% Quakbot
2023-05-17Ueek.jsjs 9dc74a47b57fcd85200f975b411792401c29e5d1ac2806f4efca47c4fbc00eben/a Quakbot
2023-05-17Vwib.jsjs c0a6fc4067da1b60a94f906dee1dd115392e21c209a0c86a40573a53c4a5024bn/a Quakbot
2023-05-17Xtirpdcd.jsjs 4ade6f7d7cfcd03dbffdfe401ed93fa601500252c858fa6010e54b0587fa0249Virustotal results 27.12% Quakbot
2023-05-17Mgjbkd.jsjs 906e50a48250213ff6fa64b72219e204e4f47e919757a5b1214a5e7682a44da1n/a 
2023-05-17Lcwwcu.jsjs 5cc7756639a24d5a8e14f7884507a76c1eb16843689035a0792202694705accan/a Quakbot
2023-05-17Rgcnpjhp.jsjs 47838303934003e958511bf93e4b40816c144d7ddb6c99ad7cdda7145ee5dcf8Virustotal results 24.14% Quakbot
2023-05-17Wxofa.jsjs ca9502bdc52560b18884b4483fd8adca417142d736bc92b2039511c11483e4f0n/a 
2023-05-17Uzjp.jsjs b8f07f3ba54b42d3be8c484c40396809011ea893e8cc45de69a5358dc9c9aa12n/a 
2023-05-17Gohjsuq.jsjs b50b7ee6c915270c8ddf644277e1502fa3df0ff75543fe99d7fb0ad88cfede3cn/a 
2023-05-17Ildjdg.jsjs 3bc2734abfc01f71f79c3e42a6648542b545bcb079d8224b87f62e52532020c8n/a Quakbot
2023-05-17Vommb.jsjs fd1dce1df4fdfe86a8997b4f695659945b09bcae3e111a5a867c5243ee401df5n/a Quakbot
2023-05-17Vrpeua.jsjs d24ca5cd27914f1110b931b92acb543c3ed59332d6b16e06439146e96107f5d3n/a Quakbot
2023-05-17Ayvohua.jsjs 9de789edd469335e45cc3096628b2beec672ca5c590de379dc7909be60d3f105n/a 
2023-05-17Klye.jsjs d08158f91d68d1e9e6e54f0e11a147a868dc003c3b2e3e2f2aa170c9e46e91f2n/a Quakbot
2023-05-17Kadsyi.jsjs 4c2fad504fb02ad1d1e070703a4d7e3b0765e527ad3fc941b66504c5761fe66dn/a 
2023-05-16Fdbd.jsjs beef24c5179ae5f6d4c338782dfa0fd2d46faa20b7dc3399827f5efcbd49b579n/a Quakbot
2023-05-16Dbmia.jsjs fb247426cd048e3abfd7e1c2be54b4e101772e0e90600a72319074abb2e04380n/a Quakbot
2023-05-16Kkkv.jsjs 4584011ec67a2533a21c9e0ee6afb98b3c150e6f3ddb68b7f5f3d09bde2d73den/a