URLhaus Database

You are currently viewing the URLhaus database entry for https://amchambolivia.com/isu/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2634731
URL: https://amchambolivia.com/isu/?1
URL Status:Offline
Host: amchambolivia.com
Date added:2023-05-16 21:52:13 UTC
Last online:2023-05-18 22:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-16 21:53:18 UTC to abuse{at}hostgator[dot]com)
Takedown time:2 days, 0 hours, 49 minutes Poor (down since 2023-05-18 22:43:10 UTC)
Tags:BB28 geofenced js Qakbot link qbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-18Jxcrsa.jsjs 76443e093ed6d6e3961cb5f9bbd546bab2d05f6bc2536c5744dc86f7a769bea8Virustotal results 30.51% 
2023-05-18Ovicl.jsjs 6016f12710a18923ed029eb1dc62882b5f1a032a7424e0169dd8c2228598f59dVirustotal results 28.81% 
2023-05-18Nvbbaya.jsjs bbcdb87a842c5157acea98f0cedd358f764e2613b6a635e4f9f5946de8c07780Virustotal results 13.56% 
2023-05-18Psuwogs.jsjs a96854430c436d296fb5eab6bb063863ecdcb5e6d1f48982d5375cab74cc8773n/a 
2023-05-18Iiiu.jsjs fa4e13a9e0315137813bc3fcecc4a2ea7b145377cfb5cdd4d412a5b2256be037Virustotal results 27.12% Quakbot
2023-05-18Chvjwu.jsjs becfbdbbd5a9cfbb918940eafdd8f586133d77eb11bfc5dac1f96e7787abfd65Virustotal results 22.81% Quakbot
2023-05-18Wpjdh.jsjs 0727eef30bd3d52541c3e05de818415c77f77ce68db06ea425431972136cf8c7Virustotal results 32.20% Quakbot
2023-05-18Wrjm.jsjs 654d79d5b714216fcec5efd06082250b58afb76155c0be229ba139acd68d0797Virustotal results 25.86% 
2023-05-18Qxgye.jsjs c1058b3e90189dda6f009ff9980c9a284c196414c7682ef914862f8964b9950dVirustotal results 31.03% Quakbot
2023-05-18Pcctwf.jsjs fdf950ea03d008fe87c7f897e464c152d19d8f830013223033ceb1852f37ef5en/a Quakbot
2023-05-18Mefgnydz.jsjs 714d6297effa9020249e19940853d50dcb2ba31d5301a716f34ddf73f9a58bf1Virustotal results 28.81% Quakbot
2023-05-18Iasvr.jsjs 90d7044e2b3c6695b8ce4be887d9fedf198e2631c47d77093e427bbdc2ff19fdVirustotal results 29.82% Quakbot
2023-05-18Ujqxjqz.jsjs 611f39b0fe3d00c6bc886929f93aab5028192d0d7398bd8621b700c05e99dcc9Virustotal results 25.86% 
2023-05-17Dwtfq.jsjs 73b1e3fe01be0b7a83d8ac43d397530b110d3ece6e3ff93d424b36d0b7336aa8Virustotal results 26.67% Quakbot
2023-05-17Rkyt.jsjs de6f6abaf1f51ebe11aa72a93d20ae00f34f5c801284d731e438dd854258ee81n/a Quakbot
2023-05-17Garqlnsd.jsjs d5310c601c98c90eb1149ea53a24b05711bab888bf14ec14f88d5c7bb5dd59ban/a 
2023-05-17Qrnvrajv.jsjs eecafdba553631375cb34761f4cf33cae100547238141bd641f76c3cb87700f7n/a 
2023-05-17Bzvegh.jsjs 2ae86821ba6902bdc957f61f92f752f51c37b2620aa00688fc6affc9b9b6c9c3n/a Quakbot
2023-05-17Lblonr.jsjs 882f433be14420954cf276d10abb6b832e89ab1dc301d2d047538fab217afdabn/a Quakbot
2023-05-17Fyarza.jsjs 321297a6a16d641d9c36ec597a7fa4be874a4adee1bf829db766ab8759e347a8n/a Quakbot
2023-05-17Cgtb.jsjs 619187f56ed5d60f7595abecf65439c3b7fa9acff0c79039a26913b7ad85b8a6n/a Quakbot
2023-05-17Qosu.jsjs fc81bbbe6215cd1af21769b9a66fceddcd4493587cf1f1f173b9f9abebfa4632n/a 
2023-05-17Stxibo.jsjs 1589bc51374ba1f8ab40272098221f04c9ab66df1570de5feb91bab99087591an/a Quakbot
2023-05-17Zdzb.jsjs 0e89454052c3879c2ffd695cb5e1293638ce743321521db1aa91e86b8c4ea9een/a Quakbot
2023-05-17Zyjequg.jsjs c16b37090ca8e5be6e06f7d5e0514aab935a2fb81bbf41473e6f6aff26bffd34n/a Quakbot
2023-05-17Iabki.jsjs 575f67e18a55ceb2e3d87498d97028a9adb6a3c864a872de74f46c2144a29801n/a Quakbot
2023-05-17Jiplujgi.jsjs 911faf0ad9b7c4108579fda79f07e1d193dc7ca0f549e3c6bb5e7d470f90696fn/a Quakbot
2023-05-16Xbxf.jsjs 397013c21afa6e32e659b3efcb3b2d1e688340fab9ec09a64dc8d6ff84d0dbe0n/a Quakbot