URLhaus Database

You are currently viewing the URLhaus database entry for https://ayalapublicidad.com/ti/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2659271
URL: https://ayalapublicidad.com/ti/
URL Status:Offline
Host: ayalapublicidad.com
Date added:2023-06-13 16:33:24 UTC
Last online:2023-06-15 16:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-06-13 16:34:42 UTC to abuse{at}hostgator[dot]com)
Takedown time:1 day, 23 hours, 29 minutes Poor (down since 2023-06-15 16:04:27 UTC)
Tags:BB32 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-06-15document_EF501_Jun_15.zipzip d4953121a553ee969be7d5f5272e551e899802368e57d0daf5680560c9311517Virustotal results 6.56% 
2023-06-15document_DE016_Jun_15.zipzip 5080c658062ca0baac8acfcfd1efffe2cef1956e4c3cfece5e4b821b0ea855ean/a 
2023-06-15document_CF263_Jun_15.zipzip a0b2dcd7504c120911608c19bb88819542bf516447ecaea3aa397ab6f049f1a1n/a Quakbot
2023-06-15y0sUQmRptXkv.jsjs 6fecf026dfd063cb2e3ce5d0fef14bbcb1249a53d1352f4a83384c4dfece89e4n/a Quakbot
2023-06-15smSfMH7ImVdK.jsjs ce511fe5b0abd46f7bc980cfa8d6aaf88f04fa022725c1a4d72c2243427173e6n/a Quakbot
2023-06-15TDhjpzTaV39h4h.jsjs 0e3cefbe5c3f254e335c1eb2f7b527a928d550ae5aec077d181a2cfb6c0f8b53n/a 
2023-06-15ksq6qWvHdXYO.jsjs ed5f5808545e57b1061247bcbaeae4f11df972070a6f650040abe7e1b1608246n/a Quakbot
2023-06-14RfZrQL7MqAmjp.jsjs 4374f8a29296c24690dfe2804a893a29018d314f93351cd1fe73074eabf9c777Virustotal results 15.25% Quakbot
2023-06-14FwLsCOFDTRU8t.jsjs aa2ce3bceb21fec5bbb96da2fb37897c89e05d6389dca9cee0e5752ceaf0a324n/a Quakbot
2023-06-14EDGkLTThLtXr3P.jsjs 755b3c794568ae737b31e3b3b610a24d02ef3ae731c08fad9f4d996661a51225n/a Quakbot
2023-06-146h459f8N6J4jS0.jsjs 43afb4bd253fd9d1ffa42144eee4495e871bd9112db17c6d4f544fe8cc8b7c0eVirustotal results 0.00% Quakbot
2023-06-14N3E018uwqEpmDC.jsjs 5eadbaf9a14ce37156d68b2a4068c573dcde1a0051b22ace7bcf46c3b849c856Virustotal results 17.24% 
2023-06-14HY3IpdZj7TXhkE.jsjs d5f421958a886120250e24c76c85bb73298c77778130eeb5b72341566f98bdd0Virustotal results 0.00% Quakbot
2023-06-14NaxSTqUp7VGOCo.jsjs cf511c31b333d8e91a5fbde65fe820f6343954ee168d177476664a9aa8000721Virustotal results 0.00% 
2023-06-14AG5qVSxDcQngz.jsjs ae9f96d6e35a283ab4dd464a5da384ee0689ae0ce3a0cffaf1c416061a916a63Virustotal results 0.00% Quakbot
2023-06-14Jc6j95kpgy14v.jsjs 8a2264eb520ad6bfcfab82f4a8611828f08d57ad1919193a5baa9b1b1b0f395bVirustotal results 0.00% 
2023-06-14INqV1l3nrTCH.jsjs 7d32715f3f8dc44578cb8ead94479208f0c0128cdcf337880d47a1dc5d1fc023Virustotal results 15.25% Quakbot
2023-06-14s1NfTAmDebpj.jsjs 95457be8feee9346b40e59bdfbd3ca4865ab5ca6ea51e613caf6661fe9abd3daVirustotal results 0.00% Quakbot
2023-06-14fzktU0iAcshF.jsjs 15966c2356779bce20cfd45c8d665871a77e6b8605ecf7d494daa4cb3c87ad47Virustotal results 0.00%Quakbot
2023-06-14089EWTG2CDCG.jsjs 736e0ed4202c664aa70ce797a8800b6b002775b06a4d2ae03d2c0ae9838027c0n/a Quakbot
2023-06-14VZlOWTozFKxw.jsjs f15771d14560b9cc2cc06beda3450490511675c488d61bc9249ea076d703ef08n/a Quakbot
2023-06-14VQcIIfuRUCWi.jsjs 8ded2bf481dcb500a9a9b7bf938df6aed877f9d4bfe2566a4539198bf56ff3ddVirustotal results 0.00% Quakbot
2023-06-13ji8hu0P9O2axz.jsjs 9ba74cdfcf6e2d03b7f89e6544307abaf18691cebdac6f90c483d3c53a75d7c3Virustotal results 0.00%Quakbot
2023-06-13s6FXEVTgxn9TFG.jsjs 224cde5d40c057cb06344feb844c2ec18762ea9970111b5ae50d4a66fcb438a8n/a Quakbot
2023-06-13LBnQr38Tvr6LYT.jsjs 570774e9bd1a8f8eae9a1943d1e3fc537ef304460db22a989261d9201d1d2206Virustotal results 15.25% Quakbot
2023-06-13bowsVUIhXG6l2.jsjs b296d88723b0ed5eae18eb8544dd9a4422c5c9944e6a7f386f8768e8fb373e43Virustotal results 8.16% Quakbot
2023-06-136QGOOAWSX7xY.jsjs d9356659d982f76bec2de2275094323b1cb96f6e8febae198b9bf6727124f143n/a Quakbot
2023-06-134ngaavsGew9ep.jsjs 9f254a99c8f47a850e92e8198602d17bff5202ad9baa1fe39877c2e36db17d9bn/a Quakbot