URLhaus Database

You are currently viewing the URLhaus database entry for https://mayoreomuebles.com/ap/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2635001
URL: https://mayoreomuebles.com/ap/?1
URL Status:Offline
Host: mayoreomuebles.com
Date added:2023-05-16 21:58:11 UTC
Last online:2023-05-18 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-16 21:59:48 UTC to abuse{at}bluehost[dot]com)
Takedown time:1 day, 23 hours, 35 minutes Poor (down since 2023-05-18 21:35:10 UTC)
Tags:BB28 geofenced js Qakbot link qbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-18Qrvw.jsjs 1cea0c4b1af9170b9ed2927f3b100d202bebd1b8e69ba1527336aaa6b2c0bffcVirustotal results 13.33%
2023-05-18Ywkfk.jsjs bbcdb87a842c5157acea98f0cedd358f764e2613b6a635e4f9f5946de8c07780Virustotal results 13.56% 
2023-05-18Btjovot.jsjs 50a2ae9f7d2e20aa374c4d52aa3b6a18b770f4a0d2db6b526d1f4b8086d937ean/a 
2023-05-18Aebldq.jsjs 0769e73bc4ebc2ee5fdfb2e6d02b6a282085b48c709104d96e856380e8e4ecfdn/a Quakbot
2023-05-18Nuzpbdf.jsjs 6fc84f16bba8f14130cc061d7ab41c424fdccd71398b2bd8c1f4300ffffe8912n/a Quakbot
2023-05-18Gbvaud.jsjs 748288dd3065db0c33b5cd484c4347216a3780b90eedc58ea62491f9297a57d7n/a Quakbot
2023-05-18Bitfiwdl.jsjs 3c55d89d269d20d6852bd0da433091d1fb247c736acddefdf23c414213857e73Virustotal results 31.03% Quakbot
2023-05-18Wzirxvuz.jsjs 9b2f8c74295c1bedca1e85a34eca84634c652741d93c24d9c5586926552a77a5Virustotal results 25.42% Quakbot
2023-05-18Gsii.jsjs f65cfd45df99f110dd5e24acdcb4a032a333c2d5f289d2867feb0d7fc6aa1960n/a Quakbot
2023-05-18Umoz.jsjs 70a531a610e47641bb1c9aa721282178341c6ccae5578f0ba31a38cfc5cad76eVirustotal results 27.12% Quakbot
2023-05-18Tqzox.jsjs abab065bf35d31ff71f44feed5659074ee381a93862817826b7b884996333700Virustotal results 25.86% Quakbot
2023-05-17Rbmpqksr.jsjs e83bd9c4b21fcd0dac063c512259b7310762d0f7b923cba778206403e5314398n/a Quakbot
2023-05-17Fadhdt.jsjs c321a1664d74da4f73b983c793c4059b38202d4116be2e9f53f9aa1d4320d830Virustotal results 24.14% Quakbot
2023-05-17Xsglfc.jsjs b22c3068eb2fde1d32dd3e2ce301ae348c6baefe0a01c2b50703b10083122ae6n/a Quakbot
2023-05-17Mjorneun.jsjs 561eeabd5f230ff8d733b3aa53f761558b65f54ba6d32241bf0350b4e136b808n/a 
2023-05-17Txxacz.jsjs 2072042cbdf8458366261756217da566a1b8d6cf4b24541a37d71c44c07c7fdeVirustotal results 24.14% Quakbot
2023-05-17Urwugebe.jsjs 4ade6f7d7cfcd03dbffdfe401ed93fa601500252c858fa6010e54b0587fa0249Virustotal results 27.12% Quakbot
2023-05-17Gnof.jsjs 5526b208f51ee2b6adbf6b588401d5c1e058973988c16897fef27cdf25f2a51an/a Quakbot
2023-05-17Yypyo.jsjs d5264353f22f09ac64ef1b1a197226f2a8b28f5cf1efe21d28897dc4d3138c59n/a Quakbot
2023-05-17Haoij.jsjs 671dbd0652543dd812e471509d7c2874e52ea6ab39184d28a9b7bc645369c607n/a 
2023-05-17Naytyfzx.jsjs 630178e770b789bc3c070638baf2e2ea2608c248cc5ff30f795997652311f060n/a Quakbot
2023-05-17Kdkdp.jsjs e2a44166d7abbe63620bce57c1db083838ba652770bd36910056609b2f496c2en/a Quakbot
2023-05-17Jlkfofk.jsjs dd5e61a9e1fe255661e804f27aac18f83d3d01ae99ac20b5342bb852692e8daen/a Quakbot
2023-05-17Uztkveu.jsjs 87d0a132e4eec9029b35f1065d1979594b5166f9e3a67ff4a007ed12e41410bcn/a Quakbot
2023-05-17Yzelj.jsjs de329a204d6f0f1a450904e1df3c9d13ed2501d5b689602a9fbfdabe21fb4f70n/a 
2023-05-17Tlhkhgrg.jsjs 143fcd378c8123156feb4a8e27649593f3eb88e8382277728d140d0be5bc07c7n/a Quakbot
2023-05-16Zcmel.jsjs fd6d6067ef8fe7ba95e344644083072afc7e5cd11c7a2cb61227ea17ac24aed3n/a Quakbot