URLhaus Database

You are currently viewing the URLhaus database entry for https://amsupplygroup.com/ol/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2634727
URL: https://amsupplygroup.com/ol/?1
URL Status:Offline
Host: amsupplygroup.com
Date added:2023-05-16 21:52:13 UTC
Last online:2023-05-18 22:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-16 21:53:13 UTC to abuse{at}godaddy[dot]com)
Takedown time:2 days, 0 hours, 46 minutes Poor (down since 2023-05-18 22:40:05 UTC)
Tags:BB28 geofenced js Qakbot link qbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-18Rblete.jsjs c74cf0cb7927a8438a84c9cedbdbab3e4815550813336043f39674a67b6a021aVirustotal results 28.07% 
2023-05-18Lhzcj.jsjs 51ffefa8a10b6da720a80cec4735fe173669e7c974946e46c8dda908e824d8a4Virustotal results 22.03%
2023-05-18Jcxllthy.jsjs d7522ab4f64ae0950e24bb00df9157136bbcb900ace0c77bd1a46f06149bf37aVirustotal results 24.56% 
2023-05-18Rzsapiiv.jsjs 176af4247406a23de2d922965d1b44816ed81135a775feeb5c9f7f84cd3b1339n/a 
2023-05-18Rapdl.jsjs f39cee789a4050e31f3f61e2dae48c0b5328d480424a439ba3c06fdf7d12ba43Virustotal results 29.31% 
2023-05-18Bicodnnu.jsjs 40b44314a486ec7a8d570abd6d0edb8d6d9384e75de8dfd5d698783e701d3dbaVirustotal results 16.95% Quakbot
2023-05-18Zefido.jsjs ccdaaebf2ae2ce525ab5ccf2b4d74cf6b58e7d9515c21c0d46e2b8e0709eefb6n/a Quakbot
2023-05-18Vshlyrj.jsjs e6823880248255f28dad73af6553cfbae133b6df9f78eff124a379d793265ac2Virustotal results 27.12% Quakbot
2023-05-18Jszpnpq.jsjs cc3f6d63f84cc1a94c7b2a3942b9e0df2af0f247cf2a81b2ba18f33ce401310dVirustotal results 27.12% Quakbot
2023-05-18Bqyd.jsjs 13429cf0cc28ad9378b2b6c46f7c85f5356150262bfc598353fc15c0530e893aVirustotal results 23.73% Quakbot
2023-05-18Txepkae.jsjs f65cfd45df99f110dd5e24acdcb4a032a333c2d5f289d2867feb0d7fc6aa1960n/a Quakbot
2023-05-18Stmbiswq.jsjs f80b9a7940830c735c2fbaf225da18389f25dc1ed7ef8e073311c9b3d680a95bn/a Quakbot
2023-05-18Tkhwm.jsjs 2ef6e700c619c1ace05075497393d8ac827d836ec052de9b6a71a0cdcd343141Virustotal results 24.14% Quakbot
2023-05-17Sbatubmu.jsjs 3bb38fa6f98d4d9251f3db4a5374a212389305ea2079c93ed01408cb473d434dVirustotal results 15.25% Quakbot
2023-05-17Dqrm.jsjs cf3f8bcfc47120345a6bf7e2b44265e2cb07dfc6d6aae1290d5552e5f6d2e1f7n/a Quakbot
2023-05-17Bsmjd.jsjs a2f17ffca655028bf5663349090771ded5e0eac6f65e71d0fc151816a2dc7342Virustotal results 23.73% 
2023-05-17Iioteeja.jsjs f7141b5e0f8768e0c1d39b6da886c311b1ba7a4a1db8d4efe2c936270bc2f0c8Virustotal results 26.32% 
2023-05-17Lcbm.jsjs 32805d4a1cf5298234803410351824aacdf3ae591f390289a3ae325ad6e77e1en/a Quakbot
2023-05-17Rstaw.jsjs 555220330c615686c8a042f7d99f74d150a132b4d580ce95d1a7b6db412b77ean/a Quakbot
2023-05-17Dglbjn.jsjs 94c0e2cb4555cac737f055665918c2568ec6a3d5718627639a492e4652d1aee6n/a Quakbot
2023-05-17Uatfc.jsjs 751f756653470b2471ff3c79268e589c3d360c969eb9fc24f5c6c5172cb97ef9n/a 
2023-05-17Xwxp.jsjs a1f51bbe367d234271fa630366caa596005fe52e10b6265c345d616f85977e06n/a Quakbot
2023-05-17Hfcz.jsjs a841876b7d8b219cf1c8593792624ba5f4e0b9e75c014ae103693a6cf722075an/a Quakbot
2023-05-17Pyxqcvh.jsjs 460096bc63d58e556fd5125ddd34e1b75c9d10924b21124d04c2a9e437e09a8dn/a Quakbot
2023-05-17Wyple.jsjs 782a3858104c6b514c57403f2802a55af27cbff9835d48ba7bc572a2f4fc8d1cn/a Quakbot
2023-05-17Ioben.jsjs b6bf6d7b1742191463f4cddb163e7274d28e5223e9a9bb3fc2744f52b98eeb75n/a Quakbot
2023-05-16Yjyrlezl.jsjs 5eb3466dcffcfe41fd5c21b79b2b08b0c5ac79e78561cbb796064afb49913efcn/a 
2023-05-16Hvvc.jsjs ce4a0cefaa58f7abe816896f03d4c0420e385a17e5c73dbd7a6b6183d4fc958en/a