URLhaus Database

You are currently viewing the URLhaus database entry for https://cafedonanton.com/ud/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2659173
URL: https://cafedonanton.com/ud/
URL Status:Offline
Host: cafedonanton.com
Date added:2023-06-13 15:04:16 UTC
Last online:2023-06-14 05:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: 0x48215333
Abuse complaint sent (?): Yes (2023-06-13 15:05:22 UTC to abuse{at}quadranet[dot]com)
Takedown time:14 hours, 2 minutes Good (down since 2023-06-14 05:07:43 UTC)
Tags:BB32 PDF Qakbot link Quakbot link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-06-14DXaaPzEG4V1JO.jsjs 43ab69d42b8f5ee56207c459572b0287c8749f71a833d58c4ba5670f148e609eVirustotal results 0.00% Quakbot
2023-06-14f3NjGJVIKJVsr.jsjs 6ee254383a658cdaaf89c33b3a317af72a04384d990326e57adbefa77a2cf9fbVirustotal results 14.04% Quakbot
2023-06-14v4yJCc6cFOFocD.jsjs 9f6ca620d7184800cba22bf6cfbfc01061338f12e38be48481be988d11fec7d9Virustotal results 15.25% Quakbot
2023-06-13OtfTqZ38L4qK.jsjs 1ab1b8718e6f930d3cba401c52e2765d9a40eae41f9f08c4fd62decb7973b6e2Virustotal results 0.00%
2023-06-13mJmHDks6xarOk.jsjs b821ebd5e1d06afdd93c227ebb6880b283016af9fccf31533ab6d3bdc8c9ff57n/a Quakbot