URLhaus Database

You are currently viewing the URLhaus database entry for https://mybabezacademy.com/sut/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2635008
URL: https://mybabezacademy.com/sut/?1
URL Status:Offline
Host: mybabezacademy.com
Date added:2023-05-16 21:58:12 UTC
Last online:2023-05-18 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-17 07:16:09 UTC to abuse{at}cloudflare[dot]com)
Takedown time:1 day, 23 hours, 37 minutes Poor (down since 2023-05-18 21:37:11 UTC)
Tags:BB28 geofenced js Qakbot link qbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-18Hhos.jsjs 76443e093ed6d6e3961cb5f9bbd546bab2d05f6bc2536c5744dc86f7a769bea8Virustotal results 30.51% 
2023-05-18Yafrfty.jsjs bbcdb87a842c5157acea98f0cedd358f764e2613b6a635e4f9f5946de8c07780Virustotal results 13.56% 
2023-05-18Glhmyzd.jsjs 1cea0c4b1af9170b9ed2927f3b100d202bebd1b8e69ba1527336aaa6b2c0bffcVirustotal results 13.33%
2023-05-18Azckd.jsjs 1a2e818afb29521c8658d2a0643158af97370d69c32c0bd85cb900bd3e85b0eeVirustotal results 22.03% 
2023-05-18Mfaxgof.jsjs 88f1d054be875f8abe5757a24f216a85f431e661af7e147ecf758632606886d2n/a 
2023-05-18Mvtslf.jsjs 03de8856a9267b9e96c1454bd5a13ff8d068076ae6a1b7ca1984367997fa981en/a Quakbot
2023-05-18Jesyt.jsjs 9487aeedb7473998494f4a53f02cd176e21f14043b6e2e75cff9016c277d0c0en/a Quakbot
2023-05-18Rtyqqlcm.jsjs 69d10bf1c18cc7df540de106a1056c5af79f8b60f1ffae762d06532cc84375d8n/a Quakbot
2023-05-18Azuefdd.jsjs 81d46bf6cc71d927906bc2a9ae29103ed6a1d3f01599e9736dd016267c874521Virustotal results 11.86% Quakbot
2023-05-18Zxsl.jsjs 43f0a123b00abe19f1412b6fff2944e5bf4436a2ba20e3493ba9708ee5088c8bVirustotal results 24.14% Quakbot
2023-05-18Whtvqzt.jsjs 4a91fb2765da3056fe04bf5254fac9eb72f1fb4f8026845d71ffe672d4daac8cn/a Quakbot
2023-05-18Inggl.jsjs 716b277dffdcf3099c8c86e0198ddab7a5d55627de582e5b73e900db63fed67en/a 
2023-05-18Mrlgjw.jsjs c408bd9762412a5776d177862b5ac082170428db1332d9ba6c28929b506a4858Virustotal results 33.90% 
2023-05-17Zqklb.jsjs 9e158a8d22dc98e3ae057267f1f3abc2cabc910f829c052269762460d602479aVirustotal results 25.86% Quakbot
2023-05-17Cjjgbeb.jsjs 724461f309ab96d511ced805b91951db475a6c036216777c4f4570a3ce7fbac5n/a Quakbot
2023-05-17Uevsjsp.jsjs 08b43f87f3dd81d9be92cb99ab4547399f67348b7ffe33011b49947b98a44046n/a Quakbot
2023-05-17Eqmesqk.jsjs 2936b6742f1d05f0f4625a1582b4bb5e44cf16340984eb0eaf2118709e5f7933Virustotal results 30.00% 
2023-05-17Bucmrymj.jsjs 657ba945eb9c34584fcdaaaf316636af2fcddf21425ff248bf2de46d55dc8147n/a Quakbot
2023-05-17Gpujb.jsjs 6c2bc2e984886cdc84fd988cc8504fd8737f22afe09cd972d52344c526d16d5bVirustotal results 30.51% Quakbot
2023-05-17Ksdjlk.jsjs d72be2d3e9fcadaa237d2573ff95eacd51e973b70514465c8d57e7cd957769b2n/a Quakbot
2023-05-17Oqus.jsjs 8deae0dc00f63d06da4b8491f06c909682b192af1c7ae4467703241c34a509ebn/a Quakbot
2023-05-17Osgmly.jsjs 3ea566da49ac648f2d39fc9861a409c5002baaf424a443f5afcd8e486416db64n/a Quakbot
2023-05-17Uplzf.jsjs 4ba5e4d582cd06c170459f482f63d4552c696ec5243ec6eace6981916bd2665an/a Quakbot
2023-05-17Hfyvclcy.jsjs a9ef1f16e1c0393e95041854d45741850d9aa4fc5328c474e7bf1d19705dc838n/a Quakbot
2023-05-17Livum.jsjs abe8178d7311efb965c876d14fe37fef6872b1e3fa662d472b3b174c1b17cc73n/a Quakbot
2023-05-17Yutyt.jsjs 88d9a0137d7e9073176d5cdc1871f444e71c11e184c19ad89683485265086e09n/a 
2023-05-17Vzkbn.jsjs fa86e33149138782f2d6bf73791964c5b6a10e029372a9d9499c6025c7c8cc6dn/a Quakbot
2023-05-16Utqqjgbz.jsjs 1bf06b6c76ee3241e974bea58df0b2f6e0e6f11bc8ab029c074ae8387807c2ecn/a Quakbot
2023-05-16Ylyph.jsjs 0ca080c90e69144d398623879f8a3820a14143d92477c397c6b63fbeaa9a11e4n/a Quakbot