URLhaus Database

You are currently viewing the URLhaus database entry for https://simracingpoint.com/meai/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2635086
URL: https://simracingpoint.com/meai/?1
URL Status:Offline
Host: simracingpoint.com
Date added:2023-05-16 22:00:12 UTC
Last online:2023-05-18 22:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-16 22:01:52 UTC to abuse{at}namecheaphosting[dot]com)
Takedown time:2 days, 0 hours, 4 minutes Poor (down since 2023-05-18 22:06:05 UTC)
Tags:BB28 geofenced js Qakbot link qbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-18Rvapptqe.jsjs 76443e093ed6d6e3961cb5f9bbd546bab2d05f6bc2536c5744dc86f7a769bea8Virustotal results 30.51% 
2023-05-18Qrzvbyzn.jsjs 1a2e818afb29521c8658d2a0643158af97370d69c32c0bd85cb900bd3e85b0eeVirustotal results 22.03% 
2023-05-18Cehygsv.jsjs 1cea0c4b1af9170b9ed2927f3b100d202bebd1b8e69ba1527336aaa6b2c0bffcVirustotal results 13.56%
2023-05-18Wmpce.jsjs f14b4c5bce4401428839d59703e293459c921f27395e7d065178850463f59649n/a 
2023-05-18Npnw.jsjs 5c2f413b69f9b93e5bf828d8c4219af88afdfc9d6fc5d04d749815dc66cd664bVirustotal results 33.90% Quakbot
2023-05-18Zycjd.jsjs e5c5a60b175cb60af996c9c06d7956eb02b365460e950ac7662bb4ea5c87d9c0n/a Quakbot
2023-05-18Vkofmok.jsjs d772a62298f946a1a964db9c0e6aa23473d6590e013fb3056502ad74b75a046fn/a Quakbot
2023-05-18Sgzr.jsjs 50ea4195ce44fd0c177d6c8bca4b2a4f34676b3b8cbddaa734fe11cf5a265f01Virustotal results 24.14% Quakbot
2023-05-18Fzdrce.jsjs 9f83e5346339db98db754ee60a6d9de3db2ecaf650f4590c2a11ad9e484c46a2n/a Quakbot
2023-05-18Nwdcwi.jsjs 79b1f8ec256643dd38b44883fae1a1c46e851db6d07560d38f8cb371756b1fa1n/a Quakbot
2023-05-18Vlgyqvt.jsjs ddfe74e26faf2b35c9062f09a66b41c79d391c1658c3fa8b4e2ce20752a2b05fVirustotal results 27.12% Quakbot
2023-05-18Rbjv.jsjs 19add01de5eb9fa85d7bed9badc8daf24f0083faf06b7eaecd8b1efb21be5428Virustotal results 25.42% Quakbot
2023-05-18Rjyuf.jsjs 6730ba9eb12acff08b5c019bd8587f2cecef533f14a7ca9fc80e7ed001bb903cVirustotal results 30.51% Quakbot
2023-05-17Hikdmup.jsjs 7faf3851af4522294594f1f661ae893ca01e462da47aeb7214a3b78b523ac9b1n/a Quakbot
2023-05-17Lgezj.jsjs f3cf1988e5b288b64fc34cf15045d67a4fcd2c9c61549510e3df907ea1f61cf8Virustotal results 27.12% Quakbot
2023-05-17Guhgb.jsjs 403516fd88c6e48a70d5ab2c1e966024e8e46c5403dcaa8dbb3b56774715cf30Virustotal results 25.86% Quakbot
2023-05-17Xpfrg.jsjs 8475cb42b6b2c974e37378cf11491570a83f194a37e5ebbc50add4a5677d6d72Virustotal results 25.42% 
2023-05-17Twzqo.jsjs c426bcba8c0bf1790fa05cb78d763ad67bedd1b1bc3eec6b4902700e097a1a0fVirustotal results 24.14% Quakbot
2023-05-17Bdhxwuop.jsjs 534fb18b08176440d03086ec406d8a79bdfaf1488c044a8355d161fd7e521950n/a Quakbot
2023-05-17Jmqmcyg.jsjs a210c26582545649797ac23fd39c87f64b60e74898cdc2d6c891e36c9e9487bfn/a Quakbot
2023-05-17Wdizu.jsjs dd10eb9a15ac992e14cd84824cbe7fdfcef13ea87c8d0d230e9cb49331d84699n/a Quakbot
2023-05-17Tkkvj.jsjs 638cfa2752059bb4f28e5dc96ff7653b8dee473817762caefe0e0f808fee851dn/a 
2023-05-17Gfdk.jsjs 3b3075b0314ab5f5834443c4af33c8b53b7afd2e24a8a6accbfca9021f1f81b7n/a Quakbot
2023-05-17Qltptoom.jsjs 7c21d581f12a4d0b7bef13bae0b4cc66cb13e640d26f9a6713faa9b89b50e156n/a Quakbot
2023-05-17Ctwsm.jsjs b57975c66c755fb7164d28fca09edb3b3064d0d5b04e926d9caea4d1e7ebdea3n/a 
2023-05-17Sjmnfuq.jsjs ac40ddb02ecfc7b29f9b09f074f2fd42e5ca8c9dcfa03788b30eba2e29e41389n/a Quakbot
2023-05-17Njtufd.jsjs 3ce355ca5733288901ff5b85ac4c2c9fe3166e0f0b63f5ef5d0a9f9aa7a85c05n/a Quakbot
2023-05-16Ujngh.jsjs 4009b25822dd61d4034d9b94d13140cb0881eaae7f50e93cdf7ea5736b2d9590n/a Quakbot