URLhaus Database

You are currently viewing the URLhaus database entry for https://simraagro.com/eurt/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2635098
URL: https://simraagro.com/eurt/?1
URL Status:Offline
Host: simraagro.com
Date added:2023-05-16 22:00:14 UTC
Last online:2023-05-18 22:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-16 22:01:48 UTC to abuse{at}GorillaServers[dot]com)
Takedown time:2 days, 0 hours, 41 minutes Poor (down since 2023-05-18 22:43:12 UTC)
Tags:BB28 geofenced js Qakbot link qbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-18Bwostpap.jsjs d7522ab4f64ae0950e24bb00df9157136bbcb900ace0c77bd1a46f06149bf37aVirustotal results 23.33% 
2023-05-18Rjjduat.jsjs bbcdb87a842c5157acea98f0cedd358f764e2613b6a635e4f9f5946de8c07780Virustotal results 13.56% 
2023-05-18Idlnkoxi.jsjs 6016f12710a18923ed029eb1dc62882b5f1a032a7424e0169dd8c2228598f59dVirustotal results 28.81% 
2023-05-18Bcfwtjji.jsjs 51ffefa8a10b6da720a80cec4735fe173669e7c974946e46c8dda908e824d8a4n/a
2023-05-18Soct.jsjs ec1c1483390887eb700da456b73b782b57201a4ecf94965f006529647a8f5791n/a 
2023-05-18Ktpqa.jsjs c7350bae160037853cf976ce2975bb3bf2a766449f69080fe67c733cbe18e005n/a Quakbot
2023-05-18Oprl.jsjs d5310c601c98c90eb1149ea53a24b05711bab888bf14ec14f88d5c7bb5dd59ban/a 
2023-05-18Rydzag.jsjs a581d1bc0926e4888a7d919a2ec529d51e03862bf784ac4cd4333e3df168d239n/a Quakbot
2023-05-18Wljz.jsjs f51bc0d7dd86e4e6db698538eca1063e4e4936ee3f57c669e347f143576749d9Virustotal results 30.51% Quakbot
2023-05-18Whqy.jsjs a4fb26b40f74df15f85f6ee98f0faab524e9434e8469ea400fb9e1d4a53e6505Virustotal results 28.81% Quakbot
2023-05-18Ccgklexa.jsjs 1382bbc235ac7b5a2dd52d131a5789c7736d4f2a5d674e59c647d3aa92091188Virustotal results 31.03% Quakbot
2023-05-18Zudsmi.jsjs 655729ffaa1d79b40a1df6017495f362432d5497a1c79b18220fdcc46d21f2aen/a 
2023-05-18Oaiqogvv.jsjs 3bb38fa6f98d4d9251f3db4a5374a212389305ea2079c93ed01408cb473d434dVirustotal results 15.25% Quakbot
2023-05-17Kfsshj.jsjs c73f356c704556ac74d752c91963fe6a1c7273b77027b218016b83f03ca878eaVirustotal results 27.59% 
2023-05-17Gfzrhw.jsjs 1e96a7079b653386193018082948ee18ee1ca517dd96395eb46b4d5e30507b87Virustotal results 30.51% Quakbot
2023-05-17Dfbusb.jsjs 9079446bd4c7bd26e207e6897766f15bb65c2e6bd4802d253ec23072dff72e4fVirustotal results 27.12% 
2023-05-17Cchrgz.jsjs 586fe07a69bfe8b72088da7156e3feb75ac24d66ef99584f203b73fe30f08076Virustotal results 28.07% Quakbot
2023-05-17Lxdqklzo.jsjs 4df2da0e1a60159c49866a7e3899e305f80766c9bae6b676bf18955d4e2ee8ecVirustotal results 15.52% Quakbot
2023-05-17Amixyvff.jsjs 99ad6e2718d4fa53c8b3e7479802548afcde5a374d0563ab49ffb0405d8e435an/a Quakbot
2023-05-17Ehzmfa.jsjs 8e13d078cc5a623e77df862498a637bd089487d45c2af8d1413f79f59d94dea3n/a Quakbot
2023-05-17Zeoa.jsjs 229ec0a3c1bfe3875f529154f65304cb58085f0b2ebdd37560420ce8d3059073n/a Quakbot
2023-05-17Aadbsgx.jsjs 5063fdc3fcf8f93b649aa447de976c7efa39de3549e54a61b874b97b9f2713dan/a Quakbot
2023-05-17Wqwdcm.jsjs e0def1c16c573d293970fa12e3a891cc7b18060b069697fffc28136fd8111824n/a 
2023-05-17Qvdqx.jsjs 91e1779f486e124f5800ce3c689f5131d8c4eebf3476cd494d4ed147da487745n/a Quakbot
2023-05-17Ewphrz.jsjs 09430d10f6e910951bb239bf301f6c4ce73cae1cddde54970e7473bfd2f6d5a6n/a 
2023-05-17Jgov.jsjs 7a978396821dde97abb27dac4c4cf8a3731430ccc4c827f72aea97630e071cean/a Quakbot
2023-05-16Fwlesm.jsjs aa7ce284e674d245e9429e0becb4334bdcd2a3967e3219d6e23f4945b8c07ad8n/a Quakbot
2023-05-16Bxyn.jsjs bea72105a42dd22559159746effd4224b6e61cdeb63e836f956994d145e1a4acn/a