URLhaus Database

You are currently viewing the URLhaus database entry for https://mayoreomuebles.com/nrd/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2635013
URL: https://mayoreomuebles.com/nrd/?1
URL Status:Offline
Host: mayoreomuebles.com
Date added:2023-05-16 21:58:13 UTC
Last online:2023-05-18 22:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-16 21:59:48 UTC to abuse{at}bluehost[dot]com)
Takedown time:2 days, 0 hours, 38 minutes Poor (down since 2023-05-18 22:38:19 UTC)
Tags:BB28 geofenced js Qakbot link qbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-18Trex.jsjs 1cea0c4b1af9170b9ed2927f3b100d202bebd1b8e69ba1527336aaa6b2c0bffcVirustotal results 13.33%
2023-05-18Gdqky.jsjs 51ffefa8a10b6da720a80cec4735fe173669e7c974946e46c8dda908e824d8a4Virustotal results 22.03%
2023-05-18Scbo.jsjs d7522ab4f64ae0950e24bb00df9157136bbcb900ace0c77bd1a46f06149bf37aVirustotal results 24.56% 
2023-05-18Ihhbzury.jsjs dc94aa70e0b96e33c5c886a6a33e835d38d0cb7344127885c738b192c36e6d29n/a 
2023-05-18Nukts.jsjs 05dab37be019900d575f8a51485f2baecb4fe212712970c486fb711a173c6290n/a Quakbot
2023-05-18Lyjhotiq.jsjs 403516fd88c6e48a70d5ab2c1e966024e8e46c5403dcaa8dbb3b56774715cf30Virustotal results 25.42% Quakbot
2023-05-18Btadosja.jsjs 2bcfc438cf9c0a4f72832a134f6709c7596645ff3d738abe3b2fd53250ed50f9Virustotal results 22.41% Quakbot
2023-05-18Jwbsj.jsjs 03de8856a9267b9e96c1454bd5a13ff8d068076ae6a1b7ca1984367997fa981en/a Quakbot
2023-05-18Dxlerfl.jsjs 14ce409dfb31225a9aa73965aca14ef09852a03cf69033bf2deac2a816796a31n/a 
2023-05-18Fwrapvh.jsjs 2072042cbdf8458366261756217da566a1b8d6cf4b24541a37d71c44c07c7fdeVirustotal results 24.14% Quakbot
2023-05-18Iherebw.jsjs 62f72a40ec519cd843b1c38ebe9ee2be23628961bffc952c1da59c3687a87466Virustotal results 24.14% Quakbot
2023-05-18Mksqaim.jsjs 3302a636901e95a2eb9b66a8fdda7e3cf8997cec8749d879da126651b259557cVirustotal results 26.00% Quakbot
2023-05-17Ghiwsuhb.jsjs 66718c6f0ac9419d7f5bb30cef5272328e503b226e7ee6157072e26782f6421fVirustotal results 16.95% Quakbot
2023-05-17Oigbd.jsjs 9487aeedb7473998494f4a53f02cd176e21f14043b6e2e75cff9016c277d0c0en/a Quakbot
2023-05-17Hmockgjy.jsjs 4765e3f8945205cf00c99d49497f3f90e74523fec9fdbd0bf9ea1f6163c07512n/a Quakbot
2023-05-17Xnrto.jsjs 53b3144d6c4d4163d5317d32d6bfcc11069a721edc167234c3599a6e2aae5274Virustotal results 25.42% Quakbot
2023-05-17Nrsg.jsjs 86fa62e0346304f7f35a32db756544d5f0b031a7794b54ab9008570bd7ef65f8Virustotal results 20.69% Quakbot
2023-05-17Utbl.jsjs 7b0e64b5b88495d402a11b16ad7776cc5e0d44a07992e8b9cf9c7006a92ac8bcn/a Quakbot
2023-05-17Xqvuay.jsjs d2ecbbc4d10634ac3f47ce638df6c4302d7335ab985c09f6accdfe4df322ddden/a 
2023-05-17Uabmavb.jsjs 649df2393e15d90fa359d2fc1ccb107334c51fe26d99a8513b3bcdc9280cfcf6n/a Quakbot
2023-05-17Nqhdydw.jsjs e42baa047958fa07311dbd58bd787dd9976c282771dab25bc6668c3adcedc32en/a 
2023-05-17Hrhhcvl.jsjs c28b02d807c2dbc408ba4913a0ebc0b46fa0e525420953c898cc953166c221adn/a Quakbot
2023-05-17Wxcvf.jsjs f2a5285e2d0b7d31e92db8b44a2c65bfa2d84986d00fcd772f30d23e71fad80cn/a Quakbot
2023-05-17Tfavypp.jsjs 4ea40c90cf33f8eaa455099b843114b63d235d2058f8966f6b8438eb2a978f75n/a Quakbot
2023-05-17Bxzrgjk.jsjs aa1d526f04e73a2411564d77b939835dddcc001887ca48a259b10ea38d83110en/a Quakbot
2023-05-17Ybclgghq.jsjs 59e470711baa6fbdc7bab826f6ddc4aad5b3fd58eeccd15bc3280e79e1ce6a78n/a Quakbot
2023-05-17Xwucniwk.jsjs 9aeecb6b4cab63bb422b2596fd39568ea6d4cea717bdc201779546fe125ce061n/a Quakbot
2023-05-16Khthha.jsjs 8f5815dfe3082da7af7f15915a2d4b4d0b38e6e357493edb739aa82f5d4728b3n/a Quakbot