URLhaus Database

You are currently viewing the URLhaus database entry for https://kakapuas88.com/ou/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2634544
URL: https://kakapuas88.com/ou/?1
URL Status:Offline
Host: kakapuas88.com
Date added:2023-05-16 19:11:11 UTC
Last online:2023-05-18 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-18 09:20:08 UTC to abuse{at}cloudflare[dot]com)
Takedown time:2 days, 2 hours, 2 minutes Poor (down since 2023-05-18 21:14:22 UTC)
Tags:BB28 geofenced js Qakbot link qbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-18Qlzqbn.jsjs 1a2e818afb29521c8658d2a0643158af97370d69c32c0bd85cb900bd3e85b0eeVirustotal results 22.03% 
2023-05-18Xsdly.jsjs bbcdb87a842c5157acea98f0cedd358f764e2613b6a635e4f9f5946de8c07780Virustotal results 13.56% 
2023-05-18Qkdufgq.jsjs d3c6e06204212c1aeeef29809460056535cba3beca8cf163b7c8719671ef0c9fVirustotal results 22.03% 
2023-05-18Omft.jsjs 51ffefa8a10b6da720a80cec4735fe173669e7c974946e46c8dda908e824d8a4Virustotal results 22.03%
2023-05-18Zjcuxjqk.jsjs d76b1300fd995ec8def343df0450c11a58a217803fee3749db4afacebc64182en/a 
2023-05-18Bpjwmx.jsjs ca063a5c4a2f07276b9df68bb57bd04f5d4db92caa0c2bf31dcd15c63ea26f33n/a 
2023-05-18Wwuo.jsjs d25526dc27feb5e67f938d4b403a9dad1250e9bad80e8f4d66a22d696dacc328Virustotal results 32.20% 
2023-05-18Mflawckz.jsjs 53d2ace5dfd9b4384bcefcc9b7e2c0b6701053df124573ad3dc1044ca98e8398Virustotal results 32.20% Quakbot
2023-05-18Pnjiy.jsjs b19665dd5f7dbec102ef5c751b9f86dbe37003d54eb666e3be898351373a0486n/a Quakbot
2023-05-18Mlmiivm.jsjs 31bfb0e9f32a6891aa3b4bb9c1caeefec664295de95b74eccecf9eb67a2b84cbn/a Quakbot
2023-05-18Qrmc.jsjs ddfe74e26faf2b35c9062f09a66b41c79d391c1658c3fa8b4e2ce20752a2b05fVirustotal results 27.12% Quakbot
2023-05-18Wffc.jsjs e8a4b575211295a78e536c4a374d5538f24470f6036d3a1e5ab52f149b6a5683n/a Quakbot
2023-05-18Dihidaw.jsjs 2177d925f10e2cd3a5d175b8e14d8faa7413f6cd18da6fc7832edca35cdb5aadVirustotal results 25.42% 
2023-05-17Uqssik.jsjs 17c3055ce856c6ee8bbfdfa36ea81dedf3d495e3aa418145fea73358747d4cd0Virustotal results 25.86% 
2023-05-17Jgkdzq.jsjs eecafdba553631375cb34761f4cf33cae100547238141bd641f76c3cb87700f7Virustotal results 28.81% 
2023-05-17Kdupx.jsjs 0ae16f66866567a01f4af47c0c7b2e49d1e54eba4e457b2de97f88c48016cedcVirustotal results 30.51% Quakbot
2023-05-17Iiyioni.jsjs f0dbb6e29c6d7e8d5463a1e716423776b0aa2be9fedbdd957adf165559ca8a5dVirustotal results 28.30% 
2023-05-17Vuxsqcc.jsjs e378d6c2c0b5f5ad7404ae59dc73fb118bbc687f0b78b8526939d18e1a151bban/a 
2023-05-17Qsvduvc.jsjs 0c7c96dd589f0bc1676f7af1371bc70cbf50d310293d070ff8e1fef3df4533f9Virustotal results 24.14% 
2023-05-17Tcwi.jsjs 8f29c702a43f99c1cfc18167ff61035ac4068757aba92e0eb5e9dde5ad72a0cdVirustotal results 31.03% Quakbot
2023-05-17Ktszdq.jsjs def1eebe55f3bc428d1f39ef2f6c7d61a64a48dcc71389a348eefbb797e07653n/a 
2023-05-17Yoht.jsjs 19c40585627ffe423ed5f0a6da7706a51a4e068323d3f9cd2f54a01d45c02af1n/a Quakbot
2023-05-17Yorhji.jsjs 8beaf0e02e2fd818067c8f293658855a9b8df5ec169164881dd73ef5971b531bn/a 
2023-05-17Rvsu.jsjs 222e27174041bb00c6384fe187759ac83b6c461d5c429dbef6d2dc475e1ec081n/a 
2023-05-17Dqosig.jsjs fa2856d2e9e43574894d18d78c267c3492770debb2c3f19e0e5c7171a805d86dn/a Quakbot
2023-05-17Ytkacem.jsjs 47f2e9ce3f91dd25482da332301b5b1b2db25dd78d7b91636a8e0da26baf3e42n/a Quakbot
2023-05-17Wgdcgf.jsjs d65bf2456a6600307ef6008eea455a9419323a3d61fae2717c828f569de18e5an/a Quakbot
2023-05-16Qiiwozt.jsjs 737b8a0ee086cc86faeee63ef41f132400c6ceb31aa80fcdb8b09b227b9eff6dn/a Quakbot
2023-05-16Rvdx.jsjs 1c7f47796a5ae8ab9be738761ef03a3e9d2bdf60a1628c8bf5380fd83175cb22n/a Quakbot
2023-05-16Ufzzmmz.jsjs 69ebd33aa136a8a96801f577be028e7de73048545f1b02cc946645528afb1079n/a Quakbot
2023-05-16Ogmycs.jsjs 13910a63caaeae3e378e6f98b509dda4770e24245a69545c2360a7c31f53d03en/a Quakbot