URLhaus Database

You are currently viewing the URLhaus database entry for https://quadlandcorp.com/ari/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2659273
URL: https://quadlandcorp.com/ari/
URL Status:Offline
Host: quadlandcorp.com
Date added:2023-06-13 16:33:25 UTC
Last online:2023-06-15 17:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-06-13 16:34:14 UTC to abuse{at}cloudflare[dot]com)
Takedown time:2 days, 0 hours, 55 minutes Poor (down since 2023-06-15 17:29:53 UTC)
Tags:BB32 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-06-15document_CE089_Jun_15.zipzip 37f5d568aec5dbd18536e83240836c6de51b3db41a932fca85be24097e2e7f16n/a Quakbot
2023-06-15document_DE037_Jun_15.zipzip 5c391b63c8f012ee58af2adfdaaaf6ec0befb78fb8a64143a850409a6cdbdddan/a Quakbot
2023-06-15document_ED952_Jun_15.zipzip 3ad14257b5750ad4669ae6bbcb1934f0b25262c0caef0693db8924ae7e37e278n/a 
2023-06-15DBMKuPNujP7TeJ.jsjs 7f3e9d23f0437a13005af142416ba44f28fa18ae9992737f8def69401290d912Virustotal results 15.25% Quakbot
2023-06-15lzoitmvCTmtljO.jsjs e8b1b383e5222c5bb541a6597a0bcff8d017ff974cba385f0b7103467e4d1f19n/a Quakbot
2023-06-15LbY2KBi3SEQmOw.jsjs de4792a275b808a2e17037e4926f6e1b32fb1b5cc0c8d49c1adb6cb742920e4bn/a Quakbot
2023-06-15rBiaBovUoPrray.jsjs 7de140f981d1840692d86d7cbd6e338a672a9989d5e030e9cc2125892e73a227Virustotal results 15.25% Quakbot
2023-06-15z65I2xqmmaKEH.jsjs 417b3b55ecb71f2baf530d9c13c450b45aa53d951a655efef2de6bffc73d919eVirustotal results 3.39% Quakbot
2023-06-15AziocZ5oxQb2j.jsjs c93b7ade8c1a4e36cd58171085ed581a5d601b39b5e65740a0ab8f5260cb99b7Virustotal results 18.64% Quakbot
2023-06-14v0IkUtH4QwtFb.jsjs b57c566c4043bd031603dc58bc753a00370e94c5dbd275cc41185a4e4440a8e0n/a Quakbot
2023-06-14O4vqpwkS86eBt.jsjs fdde9605de5afbcbffaed8fbec0ba92542064bb2800fcf5e65421bb0f9071b73n/a Quakbot
2023-06-145UHv3zq8dE4BV.jsjs b0593303bb7068277f25a00e93266537b3e484f9222e3ec3820659d8b1d3c88an/a Quakbot
2023-06-14YabCFLVs3Wbx2.jsjs 7e61735403cf258fafd12ae3d3ff59a4263a605025533a7cb1a6715d82dc165bVirustotal results 15.25% 
2023-06-14VHVTc8Zzn6h5nv.jsjs 8ebeb73bb9599456b7df74f59012d9ec39925eef9252a12d59906a95e747b9d2Virustotal results 0.00%Quakbot
2023-06-14yyhLS7Pzot7Mo.jsjs 445232dfa198048f212429ecda6a8b9f6582c0212b7af5e377592d5e4748bb02n/a Quakbot
2023-06-14mu1UrjtD8Wp0.jsjs 102720722d9553626469767fa53c0f086b2f689942b7eac361205a46d108db49Virustotal results 1.75% Quakbot
2023-06-14oHltis5AFif45.jsjs fef05fedd338a31b2f0c5bfc73323aa703677c68487cccefeff98c72d5178edbVirustotal results 0.00% Quakbot
2023-06-148qYZb3L0SSRS.jsjs d292e690a899da501ac006d5c0f960cbc8dcd3c667702181c194440eabd87e69Virustotal results 1.72% Quakbot
2023-06-14OtfTqZ38L4qK.jsjs 1ab1b8718e6f930d3cba401c52e2765d9a40eae41f9f08c4fd62decb7973b6e2Virustotal results 0.00%
2023-06-147plQKTg9RSt4d.jsjs f46fd692eeb19fdfcbb9dbb153a19a5fb71c445fa1de792b9b6c47284ede37b2Virustotal results 0.00% Quakbot
2023-06-14usyuTygViiBwJ.jsjs 00d4915eb7f01787da40ef87d482c404927148b41bde64b88784eebf18da2c11n/a Quakbot
2023-06-14bZfEmjWWBWJ1.jsjs d7b1e48ae41a058f62dcb7265efb89aa1016ef57e1697ca1de31974b3a6d6473Virustotal results 0.00% Quakbot
2023-06-14OJhA8e6RpvSnt.jsjs a477b2667797fc95223d2951c23b834f80a725575693b82c2b9ce149ba6664f9Virustotal results 15.25% 
2023-06-139lLjCLAXtqGZ.jsjs f3362d5bc26897771075ff38a088b2f97f27e71df030c75dd1fa10f48abc6164n/a 
2023-06-13OjlNKAu8wvnA.jsjs 88285aeeb72a8951140bc0236c733ebec023b3eb03c55ba49979003c46300b11n/a
2023-06-136MMJNAIbIKAI3.jsjs 7c0f652e7998af74cc3e126f5d05ebe7c24e86b4551acad224934b06afe129c7Virustotal results 15.52% Quakbot
2023-06-137GxS5269hKg0o.jsjs 5dd98aa1f6ac0612d94036e46ff6f1fab80be4d1c4db9c1940bd5544e7b5ffd7Virustotal results 0.00% Quakbot
2023-06-13Cf9rEKBl42qT.jsjs 694f0963289ae8b08112f1caf3fb77bfb8ce802690d792c2de7a975340660f92n/a 
2023-06-134oxcd5yfI3Euv4.jsjs c20449224f8229856162f5b8ffaf14fd476809a38925ce1f32a6203c15c7304cn/a Quakbot