URLhaus Database

You are currently viewing the URLhaus database entry for https://peasx.com/bup/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2649290
URL: https://peasx.com/bup/
URL Status:Offline
Host: peasx.com
Date added:2023-06-01 17:07:30 UTC
Last online:2023-06-02 01:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-06-01 17:09:21 UTC to abuse{at}cloudflare[dot]com)
Takedown time:2 days, 4 hours, 1 minutes Poor (down since 2023-06-03 21:10:47 UTC)
Tags:BB30 geofenced js Qakbot link Quakbot link USA zip

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-06-03document_E934_Jun_2.zipzip c4c70491630c5b01de9dbf382065f0162ac44afe28d25bee42ef8e055fc48086Virustotal results 25.00% 
2023-06-03document_A512_Jun_2.zipzip 1039d027237f587f07732338d965c848737dc9a14efa46b244756147a3fb74een/a 
2023-06-03document_B149_Jun_2.zipzip e68f07ea4b65616c3dca5b47a1c6cc8bd21cfe77335763bee6c93c2b41cd6b3fVirustotal results 17.74% 
2023-06-03document_A938_Jun_2.zipzip 4ad1fb03076968f0b67d995ad005272334dcf9cb0d9a31123e3821cbcb4b7c6fVirustotal results 17.74% 
2023-06-03document_F527_Jun_2.zipzip 48c536726b3be7c55db59eefff0cbc387f89e9e5cfca0ddf6183fb895c9bd73en/a 
2023-06-03document_B168_Jun_2.zipzip 830e6b41ae37df7fe7170018791931f43160917e3a9c1753b7d5a23685e6b0f9Virustotal results 19.35% 
2023-06-03document_D875_Jun_2.zipzip fcf4bd2d1b4f2d0af1a71a65a85bf1490399bbd7574905498c526cd19407591bVirustotal results 20.00% 
2023-06-03document_F851_Jun_2.zipzip eeaeae95753b45550b278671628c021bb32a6ef390f5c1f9207141113a66af7fn/a 
2023-06-03document_C349_Jun_2.zipzip 069decfeae089e134470be2d021b45a613f0af084af45cc693710f22d3a1c5d2Virustotal results 20.00% 
2023-06-03document_C673_Jun_2.zipzip 44d34f8b19d2720ef9ef35e02d8918767838d3682439eb3647d52fd7b8257ebdVirustotal results 17.74% 
2023-06-03document_C370_Jun_2.zipzip 2273cdca392135972eaffcf65d334cb775a99ab9801f136ab72ecccb1e2a9479n/a 
2023-06-03document_F510_Jun_2.zipzip f2696c530f0f51661607361d6fff141371e9593e852f27d5fd15678ffe1d928an/a 
2023-06-03document_D614_Jun_2.zipzip 78eda06b0182ea8790b76211cba1469a43e368bad306f17d74f3b0be01321c8aVirustotal results 19.35% 
2023-06-03document_E765_Jun_2.zipzip 3ab60d495fbe0359a4dc07b5285f6e928f3efea63a5670c46f3a2b8884f37c5bn/a 
2023-06-03document_C672_Jun_2.zipzip 86b2e9d04a71067fb23c8863062730530a623d68e24017d18ba44493dc8242c9Virustotal results 19.35% 
2023-06-03document_E295_Jun_2.zipzip 103b62677d0a77dce5daae1f7d7eee916fd18f4087e9ec7e06862d78e4537460n/a 
2023-06-02document_E531_Jun_2.zipzip f32b314b6b4591bc75ba4b8325425a9d87e4eafb3a97076df294538921b6d9c5n/a 
2023-06-02document_D368_Jun_2.zipzip 99d3b7d0569976e3837cee0646b2fe1d12d600b37c19eda7c2936e03272210c7Virustotal results 19.35% 
2023-06-02document_D942_Jun_2.zipzip c71a0c4cd4c9593f0a9683dc3d0213bbb52bfe704d3dbb4c1027f1fb41ed71c8Virustotal results 21.67% 
2023-06-02document_B478_Jun_2.zipzip 8634de7894f9caffbb3a5d96b800e2094b1612a5d65b63805b27f14915b53428n/a 
2023-06-02document_B195_Jun_2.zipzip f291111430cfd9270d8f77a05b13f0299cb01051c810fea2cc4d55244cb6c0fan/a 
2023-06-02document_C268_Jun_2.zipzip 4b86812c14c2744ee23abe2147ce17904a9a401689724aa7285836581da2fdd8n/a 
2023-06-02document_C629_Jun_2.zipzip 69ca6848329b1c1d4e068c16bf5756b0e46f86b1b3dfa7ed8893dbbdc0e39708n/a 
2023-06-02document_D934_Jun_2.zipzip bd43c1dfe8a50dd7bd1c5c61fd057348d49fe1ee5615cc925e77887f5aa5ebf9Virustotal results 19.67% 
2023-06-02document_A693_Jun_2.zipzip 387d5598b47e507e28b3477d7477573460064ca61b6e4bd615d6fcdadc2467dbn/a 
2023-06-02document_A140_Jun_2.zipzip 6cc5a95745a6c4a5e9eee84c0e71876cca5564613b860d923bbb29704b1d2210n/a Quakbot
2023-06-02document_B089_Jun_2.zipzip da0108a5bb5344b40e9dd9f54ed2fa13aebd8339d48e7211f95b4afd2018d8efn/a Quakbot
2023-06-02document_E519_Jun_1.zipzip a90426ab98192138a970355cfa3862f8da7c8239d7ffc854d3c73d1e8e8b7354Virustotal results 19.67% Quakbot
2023-06-02document_E246_Jun_1.zipzip 1e009a9f78c51de4f5db76559500b16b68ea8600b97ea55feb8c6b80c14ac217Virustotal results 25.81% Quakbot
2023-06-02document_B941_Jun_1.zipzip 2ee8cc23d87da52d36d0b1a0fe1c12c81b0b0134a04e1abe420d607920163855Virustotal results 20.97% Quakbot
2023-06-02document_D107_Jun_1.zipzip 6bc22c9e8c6fedcc9ab93fc3ac05a65d6ad24e2457bed88eef39746460abd856Virustotal results 20.97% Quakbot
2023-06-02document_F951_Jun_1.zipzip dfc4592348043512335c0465a0912357268fb556c5f47284b79a669c7b0a2ed5Virustotal results 19.35% Quakbot
2023-06-02document_A012_Jun_1.zipzip 0e4322df2d93a9d4e6572dad38ee7a65b674350ff04ee7b390e0c5098b5f103dVirustotal results 22.58% Quakbot
2023-06-02document_C716_Jun_1.zipzip d85e30d2a7762630cdb3d992e9a2376d33a6654041833c3124627905beb0680dVirustotal results 23.33% Quakbot
2023-06-01document_B573_Jun_1.zipzip c51f6d06c1bf647e50f94343095543c056d899fc5d815e47bd24b7814c9684a2Virustotal results 21.67% Quakbot
2023-06-01document_E987_Jun_1.zipzip 5218783f0aad9a021a774a48c87504a429e4277d7c7e2fcc1e1b5e60ca916e64Virustotal results 20.97% Quakbot
2023-06-01document_A916_Jun_1.zipzip eb598950ee6abd7471cf945b3483e32beb636348a8a2a5432065733e2f35e1beVirustotal results 21.67% Quakbot
2023-06-01document_A365_Jun_1.zipzip 5c872cd4fc4836eee4764b57285bfba04a9de1cb04ce138ec6218a7034890503Virustotal results 21.67% Quakbot
2023-06-01document_C071_Jun_1.zipzip 8c2400f9801aed5bdd0e524c97a8d24bbaa8e57c222d64189123be34d0eb89d5n/a Quakbot