URLhaus Database

You are currently viewing the URLhaus database entry for https://dlbcharitabletrust.com/eque/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2634849
URL: https://dlbcharitabletrust.com/eque/?1
URL Status:Offline
Host: dlbcharitabletrust.com
Date added:2023-05-16 21:54:15 UTC
Last online:2023-05-18 22:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-17 12:39:06 UTC to abuse{at}cloudflare[dot]com)
Takedown time:2 days, 0 hours, 43 minutes Poor (down since 2023-05-18 22:38:54 UTC)
Tags:BB28 geofenced js Qakbot link qbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-18Xnfjpihc.jsjs 6016f12710a18923ed029eb1dc62882b5f1a032a7424e0169dd8c2228598f59dVirustotal results 27.12% 
2023-05-18Yawzg.jsjs d76b1300fd995ec8def343df0450c11a58a217803fee3749db4afacebc64182eVirustotal results 22.03% 
2023-05-18Ukvvxrfq.jsjs 51ffefa8a10b6da720a80cec4735fe173669e7c974946e46c8dda908e824d8a4Virustotal results 22.03%
2023-05-18Nermofhm.jsjs 0cf27800f3c62d90af8fc452fac7249e7d023c7e9512dba61026db9234755cecn/a 
2023-05-18Boafvu.jsjs 13fa98699be69d8a22ee7c59e1a9efe2f504a721757490445465dc8a1de1765en/a 
2023-05-18Ickmgqf.jsjs 9b45c4614db7627fee14ec88aef1faf7e97115a9755ad170998bf331df8c2b0dVirustotal results 27.12% Quakbot
2023-05-18Bwjt.jsjs 32786105579d9ee90c2b3e3c5c1aa115af93c9931e8629901c02b41150fa1636Virustotal results 27.59% Quakbot
2023-05-18Zcxbz.jsjs cd8a39cd43a8cbb2e0c04b201b7df230226fe2dd696ab5c20c9ecbb16cc723f3Virustotal results 25.42% Quakbot
2023-05-18Olwqu.jsjs 2a95cf3c1e69da726dd11f2d5621a546ce89b168fa1cab3506197a63de008d69Virustotal results 11.86% Quakbot
2023-05-18Hnalrnbd.jsjs 0d025c1350cd713034b5b581118f5b7a71d0ba2551cc2321adbd286c8493fa25n/a Quakbot
2023-05-18Itauwbv.jsjs 3657123d41437d5c2c4b48b03e14153b367398907ae10d30021c974941a5b64cVirustotal results 32.20% Quakbot
2023-05-18Fdrgnym.jsjs 80ab380263a5873a2a0e5bf0f6970a2c5a2f1bb6ced244bb881a685269c5d92cVirustotal results 15.25% Quakbot
2023-05-17Vtziccuv.jsjs d307232640d2944029109ca441be49052d7c8d24590a54096c256c48e4d7da1an/a Quakbot
2023-05-17Crob.jsjs 2eaa6ab373b017bafebcf7e8d12609c6c9958b230ee8d4a3e4f96294f5ea826dVirustotal results 32.20% 
2023-05-17Jnsu.jsjs c98276273a209f91c3e1637785f0f3e59d5724b05ee395f9f32ae11ee5e8679cn/a Quakbot
2023-05-17Sntufivf.jsjs d3174d21c0af8584eb01c73536a3c50de953ccf9c1486afb0e38c63e608d5342Virustotal results 29.31% Quakbot
2023-05-17Wcexb.jsjs 935d2fea6488c7d2c6ec2b528f43f43c49b96750bbf21401284b5c42710e8c75n/a Quakbot
2023-05-17Kaxnacv.jsjs 5c02cc26158109b9e14b2601be5848cda11477e56c521a791dfdc4081366da0bVirustotal results 26.67% Quakbot
2023-05-17Erkws.jsjs 928de378e1b8690de67deab709ed80da406ac542daf31e7c5859f02c0b9a4240n/a Quakbot
2023-05-17Kmqfm.jsjs fab89deda2e8de1afcdf4d43b713652dab42ebcad6b4eddcd3b225188a7e3078n/a Quakbot
2023-05-17Kzxfaiw.jsjs 534fb18b08176440d03086ec406d8a79bdfaf1488c044a8355d161fd7e521950n/a Quakbot
2023-05-17Flgf.jsjs 27ff123a55b13ea9cc5906475c5ac95a0f067c5ce9aeb93fec1735088762880an/a 
2023-05-17Kpmtgfk.jsjs 6174d33843d856861549008dfbd4e11c3335053762ec2ebfb8669807850586fan/a Quakbot
2023-05-17Bprm.jsjs 2cc64e15e465d715641f709f3492fdfd72c8ceebfaeca9e4aff9cad2807c4e7cn/a Quakbot
2023-05-17Jhazxc.jsjs 9dc08c44668b8850c29533febacbe57a11bc98d27443b52d9e65daf1f3242b65n/a 
2023-05-16Zlcid.jsjs 102797d6d37e674e9f8b9e5decf573892fdda51205d2716257a71b599cf8bed3n/a Quakbot