URLhaus Database

You are currently viewing the URLhaus database entry for https://ideasexchangemart.com/baeu/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2634913
URL: https://ideasexchangemart.com/baeu/?1
URL Status:Offline
Host: ideasexchangemart.com
Date added:2023-05-16 21:56:10 UTC
Last online:2023-05-18 22:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-16 21:57:33 UTC to abuse{at}hostgator[dot]com)
Takedown time:2 days, 0 hours, 46 minutes Poor (down since 2023-05-18 22:44:16 UTC)
Tags:BB28 geofenced js Qakbot link qbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-18Ykgveqnz.jsjs 51ffefa8a10b6da720a80cec4735fe173669e7c974946e46c8dda908e824d8a4Virustotal results 22.03%
2023-05-18Nyqcznmj.jsjs 1cea0c4b1af9170b9ed2927f3b100d202bebd1b8e69ba1527336aaa6b2c0bffcVirustotal results 13.33%
2023-05-18Gocyhj.jsjs d76b1300fd995ec8def343df0450c11a58a217803fee3749db4afacebc64182eVirustotal results 22.03% 
2023-05-18Makke.jsjs ef42e387a84d54501d7550e22179026ba4ab96c2df219dd5961b4bac6b37684fn/a 
2023-05-18Xwmmpote.jsjs 34af4640c3591095a1562606faa096b2cab669c17859f8b99df4321999b17373Virustotal results 22.41% Quakbot
2023-05-18Suijf.jsjs cf3f8bcfc47120345a6bf7e2b44265e2cb07dfc6d6aae1290d5552e5f6d2e1f7n/a Quakbot
2023-05-18Ppfdlpj.jsjs 7237114103b60a76ef6a67916d0d6fc1e14dc707087bd27684d1093748393f39n/a Quakbot
2023-05-18Iyps.jsjs 928455b0e6b3a04da2d4fc9cc17de42c52ae2a640937dcbc9a048f76050c138eVirustotal results 28.30% Quakbot
2023-05-18Tkpkgnt.jsjs c6712a15900f7986ac9ad350dec34f50284b50e708bdeb42e320d99659f8d46fn/a Quakbot
2023-05-18Iovdo.jsjs 2312d94387e675afd3db56f1fd5419a3a083bea7bc690341fa3d49d3e3f69f53Virustotal results 25.86% Quakbot
2023-05-18Bywyrf.jsjs 5c53fc6d6d29d37ae644bf3845ff851d6b03cd26eb5e411f93c26dcf018a4c35Virustotal results 25.86% Quakbot
2023-05-18Kzreb.jsjs f80b9a7940830c735c2fbaf225da18389f25dc1ed7ef8e073311c9b3d680a95bn/a Quakbot
2023-05-18Aahphyiw.jsjs e78861a712a577b61558f7ea9878b91e974692081e5daa5f02dcb5ff1cdc359aVirustotal results 32.20% Quakbot
2023-05-17Ygrrjvv.jsjs 2072042cbdf8458366261756217da566a1b8d6cf4b24541a37d71c44c07c7fdeVirustotal results 24.14% Quakbot
2023-05-17Odglz.jsjs 82cd8d7b9c35490bb2685891e16cfd099b8290ad60d557532fe6ffcdc79b6b88Virustotal results 27.12% Quakbot
2023-05-17Plbu.jsjs 2ef6e700c619c1ace05075497393d8ac827d836ec052de9b6a71a0cdcd343141Virustotal results 24.14% Quakbot
2023-05-17Hrvpq.jsjs b1580417444140f2311d1f0098c4af6163f27ee7fc99281c6c6904870fdd88e3n/a Quakbot
2023-05-17Toerzoe.jsjs 88f6a8cb20802cddd090c331d20f9642aed6deeda17214154bc2017f911d61c3Virustotal results 21.15% Quakbot
2023-05-17Hnftav.jsjs 42b8297467af3118af88bc8bd71bc4b1cff09e2fdd17dd631cda319c5c4cf592n/a Quakbot
2023-05-17Mkfz.jsjs f9a03e213a2bf36d23d4a6877af8261834b3049ed458410c5e8b4c6da00e2383n/a Quakbot
2023-05-17Vxlt.jsjs bef479cd425c51a42c480a8d1adb1b4b8687f21ea2c3fec9bb9a5fab1d92e206n/a Quakbot
2023-05-17Zntxaabp.jsjs 4057732814a7ef7df5df340a73296c96fb47b8876b196b577d087c0c19968fb9n/a Quakbot
2023-05-17Fexz.jsjs 737f2a582d45e31ea34e7a09a14e71647525886a96451a61d687d7bcff494168n/a Quakbot
2023-05-17Ehanyyy.jsjs fd60a7b486f0601e12c1fbe743e1c97ffed81e77f02b3948858b158503c18d34n/a 
2023-05-17Hmgd.jsjs 93cd75345849c6da55f32a6b2217d2272c176152a4b17bcdc3f481a6a05bf63dn/a Quakbot
2023-05-17Vjujxgp.jsjs a20e74f7764e40355c3db95259046bda81d7c21eec5da717a98aa6bf15c33b0en/a Quakbot
2023-05-16Qufxru.jsjs 02d6db2ead556e37e3f2d0b3c9abc1f83ea46865879c2878736d84f1be95cbban/a Quakbot
2023-05-16Djopp.jsjs 9d0bf1364d6bf4bb99a64ac769813c5ee11eabbc960e2bbaa2dd3a2948ca9053n/a Quakbot