URLhaus Database

You are currently viewing the URLhaus database entry for https://perfectgadgetbd.com/dao/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2634602
URL: https://perfectgadgetbd.com/dao/?1
URL Status:Offline
Host: perfectgadgetbd.com
Date added:2023-05-16 19:13:14 UTC
Last online:2023-05-18 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-16 19:14:20 UTC to abuse{at}axgn[dot]com[dot]sg)
Takedown time:2 days, 2 hours, 4 minutes Poor (down since 2023-05-18 21:18:35 UTC)
Tags:BB28 geofenced js Qakbot link qbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-18Mxyiaq.jsjs d3c6e06204212c1aeeef29809460056535cba3beca8cf163b7c8719671ef0c9fVirustotal results 22.03% 
2023-05-18Bnzbglep.jsjs 1cea0c4b1af9170b9ed2927f3b100d202bebd1b8e69ba1527336aaa6b2c0bffcVirustotal results 13.56%
2023-05-18Gebnjo.jsjs d7522ab4f64ae0950e24bb00df9157136bbcb900ace0c77bd1a46f06149bf37aVirustotal results 23.73% 
2023-05-18Nvbieunp.jsjs 526aa690253d14c2656c1f03897be924e72ac0621007f61dc5ab61efd05008d9n/a 
2023-05-18Lukx.jsjs 20bd75aa446aa0b87c0d7042cd6119cf26dee2dedc5fe401477ada73a6c84e1eVirustotal results 22.81% Quakbot
2023-05-18Wheaphy.jsjs 0a6a1598b501c10c9f5b674586502de9eb32d51063c42dfce137a78f56aa4388n/a Quakbot
2023-05-18Fsmndmc.jsjs c6712a15900f7986ac9ad350dec34f50284b50e708bdeb42e320d99659f8d46fn/a Quakbot
2023-05-18Skqwh.jsjs 9024a49a844d092fb509a2d8e48a42cd4209b347497199616d579fa84a136fc5Virustotal results 25.00% Quakbot
2023-05-18Ylxmo.jsjs 0857b5e40844024689620ed0e9d9fbef8b9b295f54e11fba7dd9693f59ce40fdVirustotal results 27.12% Quakbot
2023-05-18Eurrbvxe.jsjs fe38571546fce56178ef24eac652a6bdb02adb17817e8381824c1e1039b5f642n/a Quakbot
2023-05-18Oyuxnve.jsjs ea84f700c5132b793e8bbc20dd9383bd71e86ffe8be7ec16ec7fd5ada9cfb33en/a 
2023-05-17Djdcfzca.jsjs 9898858b1809b1511e09fbef76498bfa2d39365eb70958ac81ba4a0263c6e209n/a Quakbot
2023-05-17Shdfbpuu.jsjs e78861a712a577b61558f7ea9878b91e974692081e5daa5f02dcb5ff1cdc359aVirustotal results 32.20% Quakbot
2023-05-17Lgfmprpd.jsjs 865abbd345425ca06fe788a0af4970d985cf2d622cd0ee375cb43dd5567afe23n/a 
2023-05-17Agbkgm.jsjs 81f0fe1ef9b350d79e5c368c2f73deec42c5a379bfbbe52f88c1c79ee481b5e9Virustotal results 8.62% 
2023-05-17Kcgzlcc.jsjs 6bf7410f1b32c7fad44030961607fb13ec400a2a008f5817485ba84c5c297175Virustotal results 27.12% Quakbot
2023-05-17Mjstoln.jsjs 3833419abb83fe2369255a23b3fa983e65047ca005c0dee0d772efbdbf8ee75fn/a Quakbot
2023-05-17Mkbo.jsjs f51bc0d7dd86e4e6db698538eca1063e4e4936ee3f57c669e347f143576749d9Virustotal results 30.51% Quakbot
2023-05-17Jeypf.jsjs d3c173c2dfa25e646847bc107890d76906c807bf85968b5dd9e96044a7729b2fn/a Quakbot
2023-05-17Alasrfn.jsjs 6eb496255733f2c3d38c5a59dcde19fea6d1d87c0e124472aabccdf8e39079ddn/a Quakbot
2023-05-17Qewx.jsjs dad490355d6e2ea7e726b3ae757a8a56632c1207c1207677839d9f10e20e6041n/a Quakbot
2023-05-17Sihn.jsjs bcbd77e5d9106c7a2ade59189f3dfa6dbdbd86a8da4fb871605eefd57e8c9f82n/a 
2023-05-17Coccs.jsjs b5d1c75e59a979a73e762a4e418fb90191a69e029e4c56af1b17e11f79881714n/a 
2023-05-17Orkdiac.jsjs 77c72c40921378ad3d6495ed119d2fd9302fc5e1701a53a6955ee3dbf9a3f069n/a Quakbot
2023-05-17Fqhzyo.jsjs d38b9d081d5acd1cfb1046ba292f4e219eaf1d09441fb5c1aa4d823d0377c844n/a Quakbot
2023-05-17Lrmhdx.jsjs 2d248f719a323e84776cb15aa616c00025ec9cceeee0ea942583d63bd9a82584n/a Quakbot
2023-05-16Uxdj.jsjs 4957e3e780fb2dfbd41a239d710950a824ad8b46f2e8eb29fa6d3b7d791ce794n/a Quakbot
2023-05-16Jkleetu.jsjs 95bea519adc4112bc3c32e8639e8d5160b353638f2491c7c96e215a9524d1e59n/a Quakbot
2023-05-16Horafavo.jsjs 2cc2ca5e24c28a6f1e53aa068ecdc1c1531844871fe6179168334be20a795c38n/a