URLhaus Database

You are currently viewing the URLhaus database entry for https://barreraselec.com/uua/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2634730
URL: https://barreraselec.com/uua/?1
URL Status:Offline
Host: barreraselec.com
Date added:2023-05-16 21:52:13 UTC
Last online:2023-05-18 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-16 21:53:16 UTC to abuse{at}hostgator[dot]com)
Takedown time:1 day, 23 hours, 33 minutes Poor (down since 2023-05-18 21:26:20 UTC)
Tags:BB28 geofenced js Qakbot link qbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-18Qaxw.jsjs 1a2e818afb29521c8658d2a0643158af97370d69c32c0bd85cb900bd3e85b0eeVirustotal results 22.03% 
2023-05-18Plzkulwe.jsjs d3c6e06204212c1aeeef29809460056535cba3beca8cf163b7c8719671ef0c9fVirustotal results 22.03% 
2023-05-18Dkizkxih.jsjs 1cea0c4b1af9170b9ed2927f3b100d202bebd1b8e69ba1527336aaa6b2c0bffcVirustotal results 13.33%
2023-05-18Iszsg.jsjs d7522ab4f64ae0950e24bb00df9157136bbcb900ace0c77bd1a46f06149bf37aVirustotal results 23.73% 
2023-05-18Prywc.jsjs d6e5d8bb312aa607d892cd90a910040c5ff30ee3a76f41fd9c177f3c09b59f21n/a Quakbot
2023-05-18Fmoomeip.jsjs 1ef243d363359aa7c5d8ab0a55ffa52a9302f63a3750df5b8408c99641bb9ab9Virustotal results 27.12% Quakbot
2023-05-18Ctjs.jsjs 3c39de1cdb595f8d1822395bd3cf9c81743a1b303cf7188cf41f49bf8c0005c7Virustotal results 31.03% Quakbot
2023-05-18Fwoimefw.jsjs 872a8726044bc6afb068028c44ba1376f7a3a6835147e080a9c5b7de41d634afVirustotal results 25.86% Quakbot
2023-05-18Vydlyc.jsjs c7018ff287088c076eb317d0b9402bc9dda25e832c0b205e91a3aeef7468bcd4Virustotal results 33.90% Quakbot
2023-05-18Uaclamlu.jsjs b267e2261f79527d447d6a639751fcabcf68f9640e62a3c3106b4f750cb07b66Virustotal results 32.76% Quakbot
2023-05-18Alxlqoi.jsjs 6debfe0d45ae5dd2dc9622ccd7c9480a487bacf847087e1fc8c10ca87a65e7a2Virustotal results 27.59% Quakbot
2023-05-18Dqxdym.jsjs c82de2729716408ddf8dadbc7c96d591774e13040bd782c4b2f6f56ee2b039d5Virustotal results 30.51% Quakbot
2023-05-18Uuffkal.jsjs bc08bfae3a441cb9485634aeda5f5ae4cbbe5e36cd98ce7b2812cd62ed4e5034Virustotal results 25.42% 
2023-05-17Trlgo.jsjs 7e29b555dd10291e663446073640ea5519a3e38a3655264511bf14299c86dccbVirustotal results 24.14% Quakbot
2023-05-17Uejzfy.jsjs 4a6c21e15b576501924674558e19d80b23e2d306cbeaca7d496abf5b826fb769n/a 
2023-05-17Kgzwz.jsjs 9ed630b44354fa9a5b12648e092b487dbecee08d6aad53bf5d2695dbea9b9cc6Virustotal results 32.20% Quakbot
2023-05-17Nglaagi.jsjs dc776fb044bb27e20a16f383ecdaa44a67be283f4902ddd48f1f6cffd24d036cn/a Quakbot
2023-05-17Mxmb.jsjs b88c04bb3bdf213453514ee3d92c8a7fd5f5e014017ea615f8df49c9c0a7ebefVirustotal results 27.12% 
2023-05-17Qoah.jsjs c1460321f81f5ddaf0e6965fdc14511326240b2d261c1e2c98e92f73eb1accd4n/a Quakbot
2023-05-17Eivkk.jsjs c1b685d3448c37f78c922a2a19a51272e6cba29bcc9f50ae1266bc064074f257n/a Quakbot
2023-05-17Mubdwh.jsjs 5c2aa0e953b5c95a17f3fe9b4e8e3e1af71db14efa6357b22119b69c7bb35025n/a 
2023-05-17Wesddc.jsjs 3a2f3ecb19e6e666f1481efd4502ef0ca62e117fe0045ab6bfa8532a7b14a66an/a 
2023-05-17Lxlhzl.jsjs 08e8d09a6f2ee52d63167a7d33255a2575ff84af80c58c8d98093534c9410d84n/a Quakbot
2023-05-17Fetxp.jsjs 85f4fa8b1dc6efff9b0ebb42f1372e0d090a8bbdafdc093a7326eb96115c6ec7n/a Quakbot
2023-05-17Fpyvezcm.jsjs f1fa564e68afe3c23ca3eba9417eb6c5ee9be9571ea015856205d43b2ab9e30an/a Quakbot
2023-05-17Lxwjnwjw.jsjs 59dc78a0019348b1d99fece2266cc319d468cf7f4cb410207a11dd93ce912542n/a Quakbot
2023-05-16Qpaoclbu.jsjs 8aed202fa622994cf27d7f6a816058812572f554db69035836aec64106a92c6fn/a 
2023-05-16Jelw.jsjs 2d8621afc8cb19e642e3a894229800718beafa55e48c32c43b2b8e84caa73902n/a Quakbot