URLhaus Database

You are currently viewing the URLhaus database entry for https://gamerzshops.com/iquo/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2634892
URL: https://gamerzshops.com/iquo/?1
URL Status:Offline
Host: gamerzshops.com
Date added:2023-05-16 21:55:20 UTC
Last online:2023-05-18 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-16 21:56:23 UTC to abuse{at}godaddy[dot]com)
Takedown time:1 day, 23 hours, 25 minutes Poor (down since 2023-05-18 21:21:28 UTC)
Tags:BB28 geofenced GuLoader link js Qakbot link qbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-18Iobh.jsjs c74cf0cb7927a8438a84c9cedbdbab3e4815550813336043f39674a67b6a021aVirustotal results 28.07% 
2023-05-18Gcsjoge.jsjs bbcdb87a842c5157acea98f0cedd358f764e2613b6a635e4f9f5946de8c07780Virustotal results 13.56% 
2023-05-18Qezvsw.jsjs 6016f12710a18923ed029eb1dc62882b5f1a032a7424e0169dd8c2228598f59dVirustotal results 28.81% 
2023-05-18Loncuvtx.jsjs d7522ab4f64ae0950e24bb00df9157136bbcb900ace0c77bd1a46f06149bf37aVirustotal results 24.56% 
2023-05-18Qeeu.jsjs 2878ea27fb0bf41510c5a442c350ea2d31a71ee4c1532dcabf74f79b9aa1b3f4Virustotal results 28.81% Quakbot
2023-05-18Ohlht.jsjs b45fa98328f6170801cd88be88f4ac670f2266e2ed383e78f37fdd5d860dc695Virustotal results 30.51% Quakbot
2023-05-18Ngdi.jsjs def1eebe55f3bc428d1f39ef2f6c7d61a64a48dcc71389a348eefbb797e07653n/a 
2023-05-18Ramcmhzp.jsjs b0be9915846a032654d7a5cdc2488d13fd892ca71f707d67ef917a7ed79bd43fn/a 
2023-05-18Pcufjq.jsjs ca0444007c6c56cf207e9de8f069644d774953d9bc532784f55d5deebc62acbfVirustotal results 26.67% Quakbot
2023-05-18Trigl.jsjs 5fe1ce92222b0ef2d0fe599c26907689fbeb05acb3c14dcc9cd468d2db479a26n/a Quakbot
2023-05-18Edahwe.jsjs 2936b6742f1d05f0f4625a1582b4bb5e44cf16340984eb0eaf2118709e5f7933Virustotal results 30.00% 
2023-05-18Dyfc.jsjs d4048bb4d8d517078d21db74a0238b8f0696dbad0bfb9cecbe0dad5e3a89bb47Virustotal results 30.51% Quakbot
2023-05-18Qfmwpvfh.jsjs 3a2fe931e43de04dd026f5fa57590b2baf3539c2930e6d9239ec3a95a1ec6bd7Virustotal results 32.20% Quakbot
2023-05-17Jvbwakbw.jsjs f3f5b182d275d4c04caa73e7abc7c40748f810123832c294c35b3b4bf997ea3eVirustotal results 27.12% 
2023-05-17Yxcxwntq.jsjs b4b9340a057e2f27555df973e95af7d75b991cadbf943c5f48de2cbda1e3edcdVirustotal results 29.31% Quakbot
2023-05-17Wbuzbgl.jsjs dc0d873178c61dae13dac14d65611d4716e9c28ebfa216e32126dbdd1ac971ben/a Quakbot
2023-05-17Nwgxhjxs.jsjs dff43d93176f7f0b50d2b960680eb78be307c219d3a2f9b42d969390818a467fn/a GuLoader
2023-05-17Sxmjhlq.jsjs 8506e3c5de62fa6173656a51f4f41a0986ccb9fa55bea9cfcb878c6df2bd88c7n/a Quakbot
2023-05-17Xpaivy.jsjs b19665dd5f7dbec102ef5c751b9f86dbe37003d54eb666e3be898351373a0486n/a Quakbot
2023-05-17Vkxcytro.jsjs e739a3185c0587dac1238cd84cf2f58ad93274cfa83bbe2f8b4fb791a0cd650an/a Quakbot
2023-05-17Ysaam.jsjs 6b4781e002df05ef7e6fcebd3b723248d8e554a4079c041a38d8fae705b13a87n/a Quakbot
2023-05-17Aulil.jsjs cad99febdfd2280389c769f6300c98381378ff25ad77c8b7d9cad63c13719b6fn/a Quakbot
2023-05-17Rwqxqkpx.jsjs 561bc8cc52b19cd75b66eacb6732cc29f3772e662b8b6799522451f1ff60c00cn/a Quakbot
2023-05-17Uxrt.jsjs d861a85ffb81b71469f8b045d5513bdda3d62f589110077f8a066404affee621n/a Quakbot
2023-05-17Narkgx.jsjs 70c2e88ce18fa11b828c5838cb9c9689f8d7bc1129915a951c3758883b75e5bfn/a Quakbot
2023-05-17Sygl.jsjs 41db5e73dc33a8c45955c71db9a179f759a9defc6dd87a59cb1c93b30e2a1d95n/a Quakbot
2023-05-16Lkvmkoin.jsjs 608cd5053d80a4848cc4d01f9404f3db05c37a06b128a54e5bc2fc01e31d0882n/a Quakbot
2023-05-16Lqsh.jsjs 5b2ca30eb4dd4011bfba24793c8eed0f24daf4b4dd65b778f8ba814efa2f3087n/a