URLhaus Database

You are currently viewing the URLhaus database entry for https://slotmahjongways2.net/gs/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2659265
URL: https://slotmahjongways2.net/gs/
URL Status:Offline
Host: slotmahjongways2.net
Date added:2023-06-13 16:33:22 UTC
Last online:2023-06-15 16:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-06-13 16:34:35 UTC to abuse{at}namecheaphosting[dot]com)
Takedown time:1 day, 23 hours, 34 minutes Poor (down since 2023-06-15 16:09:27 UTC)
Tags:BB32 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-06-15document_AE183_Jun_15.zipzip 894fb1f7582f1a1790367e6723e799316d8a77ae949f5e0af3ae615b8727610bVirustotal results 6.67% Quakbot
2023-06-15document_CA532_Jun_15.zipzip 9519d3c70bad04d639873224dfecb2099ad28cf4ca3af0c34f948aa852f42de0n/a Quakbot
2023-06-15document_BC132_Jun_15.zipzip dc312426da8604056e90811a7039ca8ec070d805a9ddb630e3901c4d6fca8032n/a Quakbot
2023-06-15L0XOsDw2GDIR.jsjs 85aae601a2f0750d7cdbf3361e28aac0efdce11e9f7dfed6fd00a0313764f4e6n/a 
2023-06-15Da4l3b7MQmAhE.jsjs f5149ba60bc3e3c294ff0304eb0f0189f747d7631553d6d0fb89f84a73e2c749Virustotal results 3.39% Quakbot
2023-06-158vWHEvCBeG2U.jsjs d482677ec5742aa810b8b0e553816a0fd83a1b76ea661095374c8c8ae546b79dVirustotal results 0.00% Quakbot
2023-06-14WgD8rmv7Q2Gg.jsjs 4125559da4f4ea2baa83d23ff911bad22a8e5ac9c44cc8c34c3ae5d2586fc3den/a Quakbot
2023-06-14YbipUqxG8OcYjN.jsjs 9146f4e94f028775506ad0d49008eaa260115e5efcb90d5d26606b98a5a04c6an/a Quakbot
2023-06-14fbewheJ67rCKR.jsjs e95922f0dae07ad241c6ad232d612a94b183bfdef3293b81f0ad457c8b5798c5n/a Quakbot
2023-06-14KmcxcYMPzOTl.jsjs 68bb9a216f8a9d3aee9ac685839b394690255a12e753e075293ba5c883c17e36Virustotal results 15.25% Quakbot
2023-06-146PIIYTKmVUAq.jsjs 248f62597c9428bc5920ec40a1128e5954f688fb888e243ad6ff19496f2681beVirustotal results 15.25% Quakbot
2023-06-14rnm8UcCo1IhpB.jsjs 69b80b67a6c963fa6d00d4fe7ba7d280cf4c16753fca11691d917a50bffe9ad6Virustotal results 0.00% Quakbot
2023-06-14e5rDLXvL1rud.jsjs 63858de90c1486d4ed0fd0bf91ddb45d8623040cd5d3c6643eddf7f95251d03dVirustotal results 1.69%Quakbot
2023-06-145vWbvSDSs18Jl.jsjs 930344da054b37c5cc4ce764b1562976503b8062063ec52a0535b3d5a00ff583Virustotal results 0.00% 
2023-06-14EGlKdomTlEaOGK.jsjs c25ecf652174f94ac18bba8177d5d8322fb31d649edabc523b505e815cc47376Virustotal results 15.25% Quakbot
2023-06-14oAqAPUdN3sWxZc.jsjs 32f6e57da1511e2b5aa533fe8bc682f2ac537adac93c562bb9ab1fd9890917e0Virustotal results 0.00% Quakbot
2023-06-140cSwzGwquDh2.jsjs a45d4d895c5ad4ecf258fca833590f970305756db31f19b86036caeea68707a3n/a Quakbot
2023-06-14UaRhpQd5DFODnX.jsjs b4e17241304cddc6bb0ccb0fdcad130a8c50c007d3850e39ce6c8d3f24865201Virustotal results 0.00%Quakbot
2023-06-14Qn7DqtRNohDm.jsjs 9f3de48d50ae11c8416b11db22eca5f04706871ac6c58bc9ab556b5947e3ab55Virustotal results 0.00% Quakbot
2023-06-14toyYIEOOR5HbDU.jsjs 2e710862b1b5e4548bca3e5332dff71bdd903c25e09f08037f93deab4ed7f065Virustotal results 0.00% Quakbot
2023-06-14Y6THE4OcEBtf.jsjs cf8bc1bbbf24b2b6024ac626ad92ac3a48f55307d7ac30029242f0c0cb1fa018n/aQuakbot
2023-06-139iaXSo4sNpSy.jsjs 95f39895645fa1cf28a00404995ea9e9463e30da69c3607fc718f06046175eb9n/a Quakbot
2023-06-13tMovYGD1mgdqe.jsjs 560577fa242290542fc7064daabd1dae1cfff4d7fa5eac3489ea2c6424edb136n/a Quakbot
2023-06-131dWCANg9Bhit1z.jsjs d29086a0afa3bbf6370ea15dd5d165b38fca62d2a5ee34f490f9e34654550dcaVirustotal results 0.00% Quakbot
2023-06-13YXZBzyvUHeTN.jsjs ad95395315d5caee130c970112020092bef82a19e7f1c607a5c81a2152a0bf44Virustotal results 16.67% Quakbot
2023-06-13SErsDTdYAyzPj.jsjs 7f141a6ead781ea3893bbccd921bc9e80c75dd8a7edd2fa5b662b590c029d301n/aQuakbot
2023-06-134URY0Azt2olHiG.jsjs 10822b4666c0953463d8b008d0d2f82687b418f1b9cddec323ca3b920d68e6a1n/a Quakbot