URLhaus Database

You are currently viewing the URLhaus database entry for https://garagedoorrepairessexma.com/osdi/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2634881
URL: https://garagedoorrepairessexma.com/osdi/?1
URL Status:Offline
Host: garagedoorrepairessexma.com
Date added:2023-05-16 21:55:11 UTC
Last online:2023-05-18 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-16 21:56:10 UTC to abuse{at}hostgator[dot]com)
Takedown time:1 day, 23 hours, 39 minutes Poor (down since 2023-05-18 21:35:20 UTC)
Tags:BB28 geofenced js Qakbot link qbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-18Nutwbbs.jsjs 51ffefa8a10b6da720a80cec4735fe173669e7c974946e46c8dda908e824d8a4Virustotal results 22.03%
2023-05-18Koxci.jsjs d3c6e06204212c1aeeef29809460056535cba3beca8cf163b7c8719671ef0c9fVirustotal results 22.03% 
2023-05-18Wdjyxs.jsjs 6016f12710a18923ed029eb1dc62882b5f1a032a7424e0169dd8c2228598f59dVirustotal results 28.81% 
2023-05-18Afopvfw.jsjs 36029f1d9a7704928efea9a3054baf07bbe0af0490bac898e5d47bf87389dd9dn/a 
2023-05-18Tuisf.jsjs 076515d52f5219c37701ac4b38e72e4f6a809dffce463343615c3fb079c9ec89Virustotal results 26.67% Quakbot
2023-05-18Ttca.jsjs c2b44422f7f4e7dc1cd2abeab300413b55a00cd9d34fda7542a467dd852bafb4Virustotal results 27.59% Quakbot
2023-05-18Kyjdgm.jsjs f80b9a7940830c735c2fbaf225da18389f25dc1ed7ef8e073311c9b3d680a95bn/a Quakbot
2023-05-18Qmqu.jsjs 5f98b59055620e884f40e504321e65af6a6ff2e7eff1035ff136dc57e98e0cb1Virustotal results 25.86% Quakbot
2023-05-18Azrguwq.jsjs f7b76f7e79498990be74945924e01e7f53e3b42e5be51e93dd0c4c7a5ecb47d3Virustotal results 27.12% Quakbot
2023-05-18Yeio.jsjs 6637cd86cb6d1780d474d49c347f8accc08a24f73ec7d212ecaa591e370d7e1dn/a 
2023-05-18Ersv.jsjs 1cd77905385f0c42fc817556a8df0df76650c7bcc4f1d670bfdf4cefe71c5d76n/a Quakbot
2023-05-18Lkalplsn.jsjs 020f938e3e5a80465883b947cf72e1604c794e693956eee1cc4707135129fd43n/a Quakbot
2023-05-18Gkll.jsjs dc2082d0e27eabe3ed96fdbecac723d76fcbb6897709edc0b6e8a7a9a9ef177en/a 
2023-05-17Bahgfkdi.jsjs 7524d906b4d42ae7fd1e5e15cb503e8b54fdc1afa702a0b4e4c5f1d6f99edd1bVirustotal results 30.51% Quakbot
2023-05-17Oczy.jsjs 59b0a76ebb16b7e92fd7040cce169d3cd207567b8293852c5bc0d44574f68077n/a Quakbot
2023-05-17Iecw.jsjs af1b94948c602627bf551b38dae50d6be3c349f5b15e7fe1d2a792e047809553Virustotal results 28.81% Quakbot
2023-05-17Fmxrpx.jsjs 1eaeb0800e5cf78a2590fb2ea6859c5f0bb66ad09354a079964ab9c7e6381781Virustotal results 32.20% Quakbot
2023-05-17Cjccfi.jsjs 02caaf8685c239c1d2e1a5e8440a7c9b39c4b12921ba12cfce6caf0214ea2df6Virustotal results 15.25% Quakbot
2023-05-17Eakivm.jsjs 66718c6f0ac9419d7f5bb30cef5272328e503b226e7ee6157072e26782f6421fn/a Quakbot
2023-05-17Tvil.jsjs 93efce1195cb7d77bbd4f1a432af107a820b70e77e1fa62bb268e707d708b2c3n/a Quakbot
2023-05-17Toflwfwi.jsjs 9bb216a2cb0dd4c1b254022c58fe39d50ee7535a305bc5a74248f1ff9f25d6f3n/a Quakbot
2023-05-17Wwabkwu.jsjs 4cc44da3de5e07074956533d17a33971a277820dc4c0c6b56418a7dedec4fd8dn/a 
2023-05-16Qvmamfsa.jsjs 604ff6550bb4d1c57674140736b066a2d45ac8d99b4be5c4ab3e019c51b75ef9n/a Quakbot
2023-05-16Sklr.jsjs 673d3c015104d1e54c5c9844741cc4e90dd05e166dc25bb263df8fc2dcf42990n/a Quakbot