URLhaus Database

You are currently viewing the URLhaus database entry for https://mbr-soluciones.com/na/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2659274
URL: https://mbr-soluciones.com/na/
URL Status:Offline
Host: mbr-soluciones.com
Date added:2023-06-13 16:33:26 UTC
Last online:2023-06-14 04:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-06-13 16:34:44 UTC to abuse{at}dimenoc[dot]com)
Takedown time:11 hours, 56 minutes Good (down since 2023-06-14 04:31:11 UTC)
Tags:BB32 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-06-14Rmg2vNmk1E0Og.jsjs 049aa20cd3665454320fc273d518cb89bfc984a9662ba6e5207407953f5cbdcdVirustotal results 0.00% Quakbot
2023-06-14aAyf1WfaEuuOls.jsjs e714da740ce10e0eb10626a90132e6a85d82a9c468dcc8c855b9e5911886511cn/a Quakbot
2023-06-14rVNc2yCSNK3lJ.jsjs 00a3ce829e295075d36114ef3b4399e755d12bbaee0cc6619c7b028bc3449acdn/a Quakbot
2023-06-14XCeCT9FMcM9g.jsjs 1b3e3c12210767938b8b0574c31c17ac4246fefce53d0a34080a685946e8f4a8Virustotal results 0.00%Quakbot
2023-06-13FqDIMAWYgKbB.jsjs 0662f2e0e377b02e676e6a5a82ab0992d5aa2dcf46a99213872c8370333b8f0bVirustotal results 15.52% Quakbot
2023-06-13RF6RkjbXoHHSH.jsjs cb3e1f933184aa926916c16ca694a0999fe40084d1e5c337e8701a14e1945398Virustotal results 0.00%Quakbot
2023-06-13AlEVJ9ZGBQdVr.jsjs ad89128882cc5045364c6ec03dd8bffd34f16bbfd341d0dd13fdce7a706e64b5Virustotal results 0.00% 
2023-06-13WMXKTSYYUcv2Y.jsjs f78c1d478c74c5e8ba107eaa636933f7419351ece3fc7db8dd2dccbc493c07bfn/a Quakbot
2023-06-13t2n2ODUHk7Lr.jsjs 10fc5f940ccf6de1541568b1e647577528c326344c22363ac7fb2f97e964afd3n/a 
2023-06-13533fIC7jlWWs.jsjs d32c2f172486183930890d8456ec7b0179ad9858db7ff1f3cc9e742e11dfa0dbn/a