URLhaus Database

You are currently viewing the URLhaus database entry for https://worlddambefederation.com/is/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2635172
URL: https://worlddambefederation.com/is/?1
URL Status:Offline
Host: worlddambefederation.com
Date added:2023-05-16 22:02:07 UTC
Last online:2023-05-18 22:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-16 22:03:42 UTC to abuse{at}hostgator[dot]com)
Takedown time:2 days, 0 hours, 52 minutes Poor (down since 2023-05-18 22:56:39 UTC)
Tags:BB28 geofenced GuLoader link js Qakbot link qbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-18Ydebp.jsjs c74cf0cb7927a8438a84c9cedbdbab3e4815550813336043f39674a67b6a021aVirustotal results 28.07% 
2023-05-18Vpwq.jsjs 51ffefa8a10b6da720a80cec4735fe173669e7c974946e46c8dda908e824d8a4Virustotal results 22.03%
2023-05-18Hkaeuvk.jsjs d3c6e06204212c1aeeef29809460056535cba3beca8cf163b7c8719671ef0c9fVirustotal results 22.03% 
2023-05-18Dlgweay.jsjs 1cea0c4b1af9170b9ed2927f3b100d202bebd1b8e69ba1527336aaa6b2c0bffcVirustotal results 13.56%
2023-05-18Xcjveys.jsjs f64ef93c38db950ba777965a599a097db13260209873bbb6488c8d86ae53c4ean/a 
2023-05-18Vlwk.jsjs 7f5092d0b223ae713b6ead45d62c1c63d910a500fc960aeae16e1a1073355c86Virustotal results 25.42% 
2023-05-18Ywxk.jsjs 7524d906b4d42ae7fd1e5e15cb503e8b54fdc1afa702a0b4e4c5f1d6f99edd1bVirustotal results 30.51% Quakbot
2023-05-18Luar.jsjs 77c78781fbf40291d31c545dd06a094505a49bd415cbeed6b922cafc6af07586Virustotal results 28.81% Quakbot
2023-05-18Lxyttvba.jsjs 94482ada3a27f9e8cf8f7b554597969eef03e0593d496ba95205fdf735ed010an/a Quakbot
2023-05-18Txetnby.jsjs 6f1a5f81c661643e1367ba7f42de50ede7d8841c0eb4bd7e13f5922b8a539766Virustotal results 29.31% Quakbot
2023-05-18Lpxmjc.jsjs 4740733be7e52c249ac1279362bec08d1af06172836e48e8e4d016c679ba2c01Virustotal results 16.95% Quakbot
2023-05-18Bxrfhi.jsjs e378d6c2c0b5f5ad7404ae59dc73fb118bbc687f0b78b8526939d18e1a151bban/a 
2023-05-18Txqyhg.jsjs 64dff88a0434f88beb3fac1ad7fb2945b374f90e6ee2ee7322665681b945e790Virustotal results 30.51% Quakbot
2023-05-17Cnkdak.jsjs c66769c1beccde8a71bc20172ba3978dfa20fa8e27c21976b94c10327af6d4caVirustotal results 27.12% Quakbot
2023-05-17Kiwrcap.jsjs 865abbd345425ca06fe788a0af4970d985cf2d622cd0ee375cb43dd5567afe23n/a 
2023-05-17Zplssvca.jsjs f0dbb6e29c6d7e8d5463a1e716423776b0aa2be9fedbdd957adf165559ca8a5dVirustotal results 28.30% 
2023-05-17Kxyptz.jsjs 7e29b555dd10291e663446073640ea5519a3e38a3655264511bf14299c86dccbVirustotal results 24.14% Quakbot
2023-05-17Pshkkki.jsjs 28e8b66452412d01288417d1253f85d6981dd1fe21d53dfb5cbd49822a60cdf0n/a Quakbot
2023-05-17Prsj.jsjs de678b4a37c6c15a808f0289a0185302b696546ff234a9c180ca99ac8bb1f313n/a GuLoader
2023-05-17Nmbxgzwc.jsjs cb2b2c5c8e0ff33bbc082310f5ad09305fb6f7b7e6d660efa2c02393341d6fd3n/a 
2023-05-17Okpd.jsjs b9c9809b0db8c089d16e6f9223ed8a4e5c74ac2b18b9f60ffdfb52ab0e82ab9an/a 
2023-05-17Cgdtpqwo.jsjs 8729bd1bdce738ca3a6fcb1b2d212cb59624c94aed5a106976701be0b8bffa5an/a Quakbot
2023-05-17Lklw.jsjs 2f78fd64144de8e56896992d87a4ff15ed64bcbbb7d8b307f835692b762c8d96n/a Quakbot
2023-05-17Ndkrwt.jsjs 6e1834baed7bb3d99631e963b690b2ab2d1ba807c7ec9a54ed502220f1d7fc44n/a Quakbot
2023-05-17Bhygv.jsjs eefbd23002403b29b5531634e3f8a428e2d68a1fd0e307fd9515c02003479c12n/a 
2023-05-17Nozvx.jsjs 4086b91699bda2aef25b34492478c26814ace8e3f72aafe1a63063f4ee462cd1n/a Quakbot
2023-05-17Ytvlvvag.jsjs 7b177a8f6a85c2fd14795e0fe3ee3913d784b4b4e3ae9b6529a88e1e8da23420n/a Quakbot
2023-05-17Sagrgn.jsjs cd6828fad9f96fc984e1558390cd61ccad7a19890d77ac8fb2a10fe8b13155d6n/a Quakbot
2023-05-16Utefa.jsjs 820786c3ac46d6fcbba8cda15dfc8d37284bab548c9cbc50a0fef819e29f0328n/a Quakbot