URLhaus Database

You are currently viewing the URLhaus database entry for https://vedrishi.com/omq/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2659257
URL: https://vedrishi.com/omq/
URL Status:Offline
Host: vedrishi.com
Date added:2023-06-13 16:33:17 UTC
Last online:2023-06-15 16:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-06-13 16:34:30 UTC to abuse{at}godaddy[dot]com)
Takedown time:1 day, 23 hours, 30 minutes Poor (down since 2023-06-15 16:05:24 UTC)
Tags:BB32 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-06-15document_DF980_Jun_15.zipzip fa28f07edb3f50a4cb19234e6313d379110495f83d53743102d92a83529832cfn/a Quakbot
2023-06-15document_BF781_Jun_15.zipzip 7fc189b964d7717500c47c46c09f7e7bffc0812196e92a601fadfc40f2ea15f4n/a Quakbot
2023-06-15rBB26bN2IK5IRU.jsjs 1ba52ce2d747ac12e1ab743e1a8bc6cd5225779ecce5dfe57a1007b16eb2d919Virustotal results 15.25% 
2023-06-15NSymiLhF9rvg8r.jsjs d63a51c6cc8f5c02b6b86f7f5c2a93694d4c33badf8257dc594505d7c9e80d36n/a 
2023-06-15P0OwBqqxhqgPa.jsjs 40753deebd082bd4e6cd99085669b73660d7a42adcdce1d35fa9033a06c080e6n/a 
2023-06-15MuA9b48Nvq3S.jsjs 7658a9b8dc009dacae893e93b455c96c86274d7ac592f0b847cf20e5760578c8n/a 
2023-06-15AkV99MKn7qfo.jsjs 211c466a37612756efe3b9a971d7a185541c84e29724cb83e101ae70cfed2ce6Virustotal results 6.78% Quakbot
2023-06-15Ueeex6vFE1YoP.jsjs 9cc5fc60f03f08b06b9e79eadc29f5e41a4cdaf808810a6abb0bbc36f4b4fe75n/a Quakbot
2023-06-14wqlc1RPiAIWZ.jsjs 39f5ab62ea753a49634d9090ffd7812a48c0b8dfe7f611005357683897b975bdn/a Quakbot
2023-06-14docu_DF680_Jun_14.zipzip 2497560d44cf999bcc1156ae1ccd1125128ba735ef3521a9324f616b1bf8d947n/a Quakbot
2023-06-14docu_BA301_Jun_14.zipzip 197c2db0857bc2cd2b24856ea3966173990489709337aa4a3bce6ce17e9e9b22n/a Quakbot
2023-06-14lNaGWDhsg0y7b.jsjs 97cccea6c329b26241e01f0eb4a1b98073c032ea3b21c0799ea95ebceb7b2fa2Virustotal results 0.00% Quakbot
2023-06-14rjg3Jsr76OFV.jsjs 6da029743607bb22e88cb150fd7747cf0a8668764fb56332ac14509f3cdd6baeVirustotal results 0.00% Quakbot
2023-06-14DXaaPzEG4V1JO.jsjs 43ab69d42b8f5ee56207c459572b0287c8749f71a833d58c4ba5670f148e609eVirustotal results 0.00% Quakbot
2023-06-1417qKnHsCgvWh.jsjs 3052e8ce4ca4a564e8154728bbc1b20f272d4299d9b6e22b26019ac84c540f96Virustotal results 15.25% Quakbot
2023-06-14uxRIFAgje21o.jsjs 8670dee51f9e9588f77e0da71d324085bd9f779001244b568f807e6e24782340Virustotal results 15.25% Quakbot
2023-06-14JJ92SanhhqRB.jsjs b9ca9f87d2a85f7b671c1d08dd34a71081ec109909c5868ec4fd07ac739bc0deVirustotal results 1.69% Quakbot
2023-06-14KBQX2wGULIS3H.jsjs 2d51ac6d29b21302128cd87268c70da5b91aaa59553304e72210d3a7818d53aaVirustotal results 15.25% 
2023-06-14ypDfRALVBDEW.jsjs a821e7221d10ecd07f5e0bb75652e33eead49e60ee39c0532cee0b43775b11e8Virustotal results 15.79% Quakbot
2023-06-145gyvKi7zZsiTM.jsjs bac9cebf108823865b264e88078ce7267a60426dbe23db0b5a8d3a2b8f7e1f50Virustotal results 0.00% Quakbot
2023-06-14ASabpkbciwq4.jsjs c069935f4f53b0c08d722076112e402786c82d14cdc448072d7be9ad2593aa29Virustotal results 0.00% Quakbot
2023-06-139H41PQ0U6tJZP.jsjs 0bb3a8ce8febe836b6c0be4b0a1548ce1f0d2035ef37538493e65c5562c2aac1Virustotal results 15.25% Quakbot
2023-06-13vC14nRk4mKMhlM.jsjs df3b28d587d16626bda6bcf6914585f4279716804ac992bf862c65f8f7508847n/a 
2023-06-13UDlgp3uIJRRLO9.jsjs 4fb3918be26f23014bba198de4bca6c3e13488cdc04d8e54859e1807b619657bn/a Quakbot
2023-06-13fZjeFYcEpkIZ8h.jsjs c3f1110313742df53f6f93973f684be118068afd18a8eae12d3b4ab442de140fn/a
2023-06-13ZzzXW4z9tSvd.jsjs c77ed796ef00a4893ce2cbc9683838b4c6e9c4b58f52116aba6393a49c48c58an/a Quakbot
2023-06-13L1KhE2GwXpq2u1.jsjs 8b7ad482b2d4ae6336df9e63c13365e00e549e430b9a843d8a4e392a43a4d828Virustotal results 0.00% Quakbot
2023-06-134YGGcDjpsNxC.jsjs 1cf12ccf2b1632da9f05834dcd311d1b703027cec1548083ee00b133e6949162n/a Quakbot