URLhaus Database

You are currently viewing the URLhaus database entry for https://redepintadas.org.br/aul/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2635047
URL: https://redepintadas.org.br/aul/?1
URL Status:Offline
Host: redepintadas.org.br
Date added:2023-05-16 21:59:09 UTC
Last online:2023-05-18 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-16 22:01:23 UTC to abuse{at}hostgator[dot]com,eig-net-team{at}endurance[dot]com,jayanathan[dot]muhunthan{at}endurance[dot]com)
Takedown time:1 day, 23 hours, 16 minutes Poor (down since 2023-05-18 21:17:45 UTC)
Tags:BB28 geofenced js Qakbot link qbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-18Jngi.jsjs 51ffefa8a10b6da720a80cec4735fe173669e7c974946e46c8dda908e824d8a4Virustotal results 22.03%
2023-05-18Mirjyrwr.jsjs 6016f12710a18923ed029eb1dc62882b5f1a032a7424e0169dd8c2228598f59dVirustotal results 28.81% 
2023-05-18Zjjzgq.jsjs d76b1300fd995ec8def343df0450c11a58a217803fee3749db4afacebc64182eVirustotal results 22.03% 
2023-05-18Vvfyg.jsjs 311c1ea6742ee8d93bea4480edd58e9979fdc125fdf73752b05fb418bbdf0af2n/a 
2023-05-18Lpwg.jsjs 5b2d175b18348c26ef8ad20f51fdeb4aa6ab4076aa57cc05caa3cc8772385077Virustotal results 25.86% 
2023-05-18Jlvlwugf.jsjs 8496ebcccb2676a1fb21ed0fdf36c320fabcf9036d275af7acc025b0182e7963n/a Quakbot
2023-05-18Pjcwdqz.jsjs 90fa0f56e8df4147606c0590d9bf8794253f48339dcf3295c0bd6d7b2dd0664an/a Quakbot
2023-05-18Uxyw.jsjs f517f6e7dd7c0f029a72fe25803ac2d5c54c7abcc8e576fbf95cbe6a87759540Virustotal results 28.81% Quakbot
2023-05-18Zqkxrmg.jsjs 75aba79d300dca2a11da16879bf5c0fd15d388a5926381550db24144937b72fan/a Quakbot
2023-05-18Fpejjtt.jsjs 561eeabd5f230ff8d733b3aa53f761558b65f54ba6d32241bf0350b4e136b808n/a 
2023-05-18Weqq.jsjs 6f1a5f81c661643e1367ba7f42de50ede7d8841c0eb4bd7e13f5922b8a539766Virustotal results 29.31% Quakbot
2023-05-18Btibbuv.jsjs 8116e7914df0a4fae9adad12da668660206754557fac016131c53fcd305d537fVirustotal results 32.69% Quakbot
2023-05-18Yytv.jsjs 819e1677a9b83e3e2c5f43d5b2dc0f2f54147bd8257c067505fb818330efc68an/a 
2023-05-17Vgscpo.jsjs 09ae96eb664bab43c15f8208e579fc06cb4e92d817de28ade6659d138ca9571en/a 
2023-05-17Fiswomxb.jsjs 939b394768f864f5af2b1e196cb9982563bcbf1157f23f9a873030ba262566c3n/a Quakbot
2023-05-17Gopu.jsjs 47831ca3235332c96696b1add7425b7dcb044b9de06934992957a5e00cb4dadcn/a Quakbot
2023-05-17Iuhh.jsjs f0dbb6e29c6d7e8d5463a1e716423776b0aa2be9fedbdd957adf165559ca8a5dVirustotal results 28.30% 
2023-05-17Tcnieose.jsjs 6003ec795de91a5d5a9a9abb15e037b5f4dcd8cbf43bac5330005fdda61c603aVirustotal results 25.86% Quakbot
2023-05-17Bcyjmdd.jsjs e84b4920d25503f9505dfe8813b964551aa485cc176eb30dc5ac5e46dd5d56bbn/a Quakbot
2023-05-17Bfzc.jsjs 15284b1502dbf4c84ff0c772b1ae8788a56987a2e9cda8ba27208e57da59e8a0n/a Quakbot
2023-05-17Dyzfi.jsjs ffaaf1dac4bd1ed9ec0864d08c72de9df1668cc1709b0e2b0e9dd609802b060bn/a 
2023-05-17Jjwoitou.jsjs f1d6c2adb31eb0c716dd9963ec1c39a2dbe1c5902f27688d443d476fe6d66deen/a Quakbot
2023-05-17Frxzeki.jsjs 1b346ebacaca540127b33510d7bfb7c45ac5c633f8e07eecce425d25b1e7cf84n/a Quakbot
2023-05-17Eoiyjrbq.jsjs 14b014974737f74d0509452ec1b1e0901bc730d0a102b5de9414bf1accd379c1n/a 
2023-05-17Zkms.jsjs fc212091759a0b6a7f023435873d36f50676756ecef45f4f2e6e6ac3ba79e0e3n/a Quakbot
2023-05-17Eqhy.jsjs 1e5af58e64d99d462aecaaa01e3cb8669a152bcd12fbcb05d383c197beab33ban/a Quakbot
2023-05-16Ohkrs.jsjs 0eb54649a806a7b3bf4a6f135e278f7c656697a92e74a650d2a747761346ecden/a Quakbot
2023-05-16Qbkul.jsjs 6786d06ab03809c4a5f9476cb843f1a02422029db9993d06271ad6830f49a5can/a