URLhaus Database

You are currently viewing the URLhaus database entry for https://staugustinehairsalon.com/tle/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2634616
URL: https://staugustinehairsalon.com/tle/?1
URL Status:Offline
Host: staugustinehairsalon.com
Date added:2023-05-16 19:14:12 UTC
Last online:2023-05-18 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-16 19:15:17 UTC to abuse{at}hostgator[dot]com)
Takedown time:2 days, 2 hours, 1 minutes Poor (down since 2023-05-18 21:16:45 UTC)
Tags:BB28 geofenced js Qakbot link qbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-18Tplol.jsjs 51ffefa8a10b6da720a80cec4735fe173669e7c974946e46c8dda908e824d8a4Virustotal results 22.03%
2023-05-18Bpstvrlg.jsjs c74cf0cb7927a8438a84c9cedbdbab3e4815550813336043f39674a67b6a021aVirustotal results 28.07% 
2023-05-18Vueqxvia.jsjs d76b1300fd995ec8def343df0450c11a58a217803fee3749db4afacebc64182eVirustotal results 22.03% 
2023-05-18Agrxi.jsjs 8d677183a1526f381d202c26a4b323d90fe186278e501aa7aab1b2697a5d7addn/a 
2023-05-18Lvjxljl.jsjs 98ca0fd1f80c8b41e2782376e1e44d8dbd142e3c6e7f91e3459aed684bf210a2Virustotal results 25.42% Quakbot
2023-05-18Ohdd.jsjs 9fb9192d902b2bec0253263ac7de12696284a3203d04c735faf491c94c94ed32n/a Quakbot
2023-05-18Fdwozx.jsjs 959eaab7d50ed2022fc6403b969a196f340861c5aafaa73ebd170ad225699275Virustotal results 15.52% Quakbot
2023-05-18Kqfpbq.jsjs 2b2ddaf766a72a62c3247e520317d64f6b32231d8802b99b861cdbcd872a7ef0Virustotal results 27.12% Quakbot
2023-05-18Izymew.jsjs 1539b3e778af6f644e932c0910705fec144fe2bbef2f8df241b0d4bb821d0fc5Virustotal results 29.31% 
2023-05-18Vjeu.jsjs fdf950ea03d008fe87c7f897e464c152d19d8f830013223033ceb1852f37ef5en/a Quakbot
2023-05-18Dpzii.jsjs cbc57ebccb343515692b47782246ac3ce19ae8ae335ddc9895810261d11cb663Virustotal results 16.95% Quakbot
2023-05-18Hcuexfah.jsjs b7c08519c7c42c933959411b973cf0045693335de503ec8af7235576bf7ece66Virustotal results 27.59% 
2023-05-17Ertkfbz.jsjs ec038ef76ec39d36971e8a801105bd271b7e7c72a23435f57313e54e0faaac27Virustotal results 17.31% Quakbot
2023-05-17Dhxy.jsjs 16cf6bcb57e5b6fbd88357c73a7c2e1fea2c60e1facf1122d4f6d9ef672f908cVirustotal results 31.03% Quakbot
2023-05-17Oomrnf.jsjs 3f883b067422272c3b10eea88505351741b599d103f66676cb75912106735cfdn/a 
2023-05-17Xuzd.jsjs 479435405ce11b58fbf16a8d7d4f3f1b2d8952718a2dd79f8c0e4ecb91176be8Virustotal results 32.20% Quakbot
2023-05-17Zpnbi.jsjs 5195290a6bfe72d1709c08345d0210181ab60e363339796ef44c05a17d9c03dan/a 
2023-05-17Gerwdqy.jsjs c1b685d3448c37f78c922a2a19a51272e6cba29bcc9f50ae1266bc064074f257n/a Quakbot
2023-05-17Rmgjjn.jsjs e110307cc28be98f92d216dd28fc7d6da13a507a96b36ae70bf43408894b0dc6n/a 
2023-05-17Twviftg.jsjs 5f2729750895a60aee2bc726e754df48100dc9e51751ef7b9193b1d7cb7e0b86n/a Quakbot
2023-05-17Wjesus.jsjs 111cf82df7387a68a808c8892c598eea18c59a22240dcca35187f0edd1658c03n/a Quakbot
2023-05-17Lapcfd.jsjs 2f9795094a774fad197d2bf70db7a5ebf4e55cc3bff15725f68f24bafc65dfe1n/a Quakbot
2023-05-17Gvoxd.jsjs df1ea6095bbb1719dfd268b737bb85ebaf3e092f328e91ef8a86dd8c7767ced6n/a Quakbot
2023-05-17Mfvit.jsjs 7c20917202638526cfbdd4533ed31b9fc4e23facf4698c78b785a8e87f427d92n/a 
2023-05-17Riifjg.jsjs b05e2113bb9583f82170625544acb121c1074a9a763fcd5e6afb265d8ce63fb9n/a Quakbot
2023-05-17Vazib.jsjs 619eebf46f8d14de20b7329691f45bf86196cc239c1baf86b3b1703eb72e28ban/a Quakbot
2023-05-16Rskxcxu.jsjs 8b66db21b52d25b70e2919ccd2c300406efc3cb0905d91229010c9bbac79e786n/a 
2023-05-16Dspijf.jsjs a36b92b64835d2f7615be1ac40609a47b6b03fba687cbb9adcdcbc98f220cf65n/a Quakbot
2023-05-16Hrvdgqvm.jsjs eee4da53b23abf9ad4827556073ab5676a978785a4ef385326db9dd591f988a6n/a Quakbot