URLhaus Database

You are currently viewing the URLhaus database entry for https://bizgrowsz.com/uu/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2634806
URL: https://bizgrowsz.com/uu/?1
URL Status:Offline
Host: bizgrowsz.com
Date added:2023-05-16 21:53:20 UTC
Last online:2023-05-18 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-16 21:54:29 UTC to abuse{at}namecheaphosting[dot]com)
Takedown time:1 day, 23 hours, 47 minutes Poor (down since 2023-05-18 21:42:24 UTC)
Tags:BB28 geofenced js Qakbot link qbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-18Mxujsqc.jsjs d7522ab4f64ae0950e24bb00df9157136bbcb900ace0c77bd1a46f06149bf37aVirustotal results 24.56% 
2023-05-18Umbie.jsjs 51ffefa8a10b6da720a80cec4735fe173669e7c974946e46c8dda908e824d8a4Virustotal results 22.03%
2023-05-18Sqadmayu.jsjs 0426224c9d6035c408494c2b37300fb27436b1fb811ce72bd21755c12f0dc610n/a 
2023-05-18Evolfh.jsjs 93bba231e08381a78fea4f6623a38ef11130273ca9bad59f5132b68797d90d23n/a Quakbot
2023-05-18Xaagpcrm.jsjs f3f5b182d275d4c04caa73e7abc7c40748f810123832c294c35b3b4bf997ea3eVirustotal results 27.12% 
2023-05-18Palutpuk.jsjs bcf9e05bff1a4453dbe187a142eddb6857e41bbaf3869f7ddc598b6ddca0d276Virustotal results 26.32% 
2023-05-18Akgucxt.jsjs d6cb8ae70d4f102ac987c9de47abc6d962e10fa9755d74ea54a68edb6173dad1n/a Quakbot
2023-05-18Ihmw.jsjs 2971e245d875fcb96bbbbcff59e1a34e0490ae85f5e8abd688b28772bca0b30fVirustotal results 34.48% Quakbot
2023-05-18Jingb.jsjs a5ad0d19dd6ae50f16dc5be1921c43a887aba5ab8dae04acbea417a5cd62d61cVirustotal results 26.32% Quakbot
2023-05-18Xihmnpzb.jsjs b9c9809b0db8c089d16e6f9223ed8a4e5c74ac2b18b9f60ffdfb52ab0e82ab9aVirustotal results 32.69% 
2023-05-18Lawy.jsjs d4048bb4d8d517078d21db74a0238b8f0696dbad0bfb9cecbe0dad5e3a89bb47Virustotal results 30.51% Quakbot
2023-05-18Mjqvbon.jsjs 26a9ccdd2cb5bd68aea8b06532a4945f8f6585f5ee8e03fd64c7dd7ba9bde535Virustotal results 25.86% Quakbot
2023-05-17Rsmtrjiz.jsjs c1044908da1da906878008c59c922860ec35f46da707552ee2bc0ecd86b9c0adn/a Quakbot
2023-05-17Xhcrsgfw.jsjs c63bbe3dc673315fe3da91f26e53709a754546f9d2fe9fdbbd7dfebbf28c116fVirustotal results 23.73% Quakbot
2023-05-17Vrksccjq.jsjs ed175d3585ab2d387e6c4a9420d8aa055d62ef6670fbe83a0f66d5bfaf943a92n/a Quakbot
2023-05-17Siihxyvc.jsjs 94482ada3a27f9e8cf8f7b554597969eef03e0593d496ba95205fdf735ed010an/a Quakbot
2023-05-17Bagiod.jsjs 92541d594f60bdb46e24073e3720e0deb32a8bb5a4409a44b650b790dbeda309n/a Quakbot
2023-05-17Mawsflx.jsjs 0b3324b249fb9e33cb3970056ed6166b271c1f678d65d34cdff6079bbd95f2c5n/a Quakbot
2023-05-17Xhdm.jsjs 959eaab7d50ed2022fc6403b969a196f340861c5aafaa73ebd170ad225699275n/a Quakbot
2023-05-17Oficmubw.jsjs 3ac82b6a4edf9f519d5be06b1d68b23386c632ba2fc3b9d6bed212dd6f854776n/a Quakbot
2023-05-17Ynos.jsjs 76c0f48796f343a5120c5e06396cb339195fe23e49053036e34ea2fa2bbd3afbn/a 
2023-05-17Ysotk.jsjs d7bdd1cca54b3a665de954cfab582b6391b6f8f2db873e6be8833eedf76f8ae2n/a Quakbot
2023-05-17Urmincm.jsjs 98f3ab368aa61f8b2a93d355caba074292aa5bad2e66bc062f5592f8b9485040n/a Quakbot
2023-05-17Gmddy.jsjs ae6d5044f96db036f44dae415056e53156625cbfb8a57b00959793157481b037n/a 
2023-05-17Lpemszpq.jsjs 3262dc9d032a0316ee7e1aca9f19c4a35aaaef6f7641d968367b8eb8bd0eec06n/a Quakbot
2023-05-17Wkvvuqg.jsjs bf276323b2030519f8a90b47525cdb9ad6244d89a893ff00a76ecb57315033cfn/a Quakbot
2023-05-16Csyjl.jsjs 3182ca908f7a087efb24d59bb4976e4dc65f3eaa7c32f06da3b188afcd3efea5n/a Quakbot