URLhaus Database

You are currently viewing the URLhaus database entry for https://brianrjohnson.com/mqeq/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2659282
URL: https://brianrjohnson.com/mqeq/
URL Status:Offline
Host: brianrjohnson.com
Date added:2023-06-13 16:33:32 UTC
Last online:2023-06-15 15:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-06-13 16:34:51 UTC to abuse{at}hostgator[dot]com)
Takedown time:1 day, 23 hours, 18 minutes Poor (down since 2023-06-15 15:53:36 UTC)
Tags:BB32 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-06-15document_DF543_Jun_15.zipzip 3bea57b2f146414ba43a520df2c05e5097bc8e962a49dcfd00353234192ab6bbVirustotal results 6.45% Quakbot
2023-06-15document_AD041_Jun_15.zipzip 74cdece1ea9739dfaa3af0a4f8f42e3b3c5d75086ff71a4f007082e8f4b0592dn/a Quakbot
2023-06-15document_AC943_Jun_15.zipzip 4310a5dbea366f3be5fa1c733056da6ac20f51a00c7db5ba5bb6453cac346a91n/a Quakbot
2023-06-15JitSLSg8TicL.jsjs b34d458c54bdfbc1e087924fcb81763b5983968ed9a4115d9dbea19423333ab7n/a Quakbot
2023-06-150dh4r1ZV02rH.jsjs 1690bc67933d7133c9bf35e723b760e759dc5f16e4122ab4b34ea6a218f4aec6n/a Quakbot
2023-06-15MJEip8NMpqLe.jsjs 5dc7ae033c017ef9bc8ab73e7b660c4a07c1266df44232586170b0b67fcd9959Virustotal results 16.95% Quakbot
2023-06-15khsc2IxQkD4y.jsjs dfc353d943eb5416ec3d83e878c76a14b380eead5b5a96ecf098abe4cbc6c33dn/a Quakbot
2023-06-14xZvcSLnw5uX1ls.jsjs 5dc950dd27e8871417bea9f98214fbfb6225c9feda85ad68ed0a6103e66e466bVirustotal results 0.00% Quakbot
2023-06-14Ytcjf4tAlAXbvw.jsjs 18ced5e33ccf3ba82c31fcee5b32976e6693b6168307dc2193018f9dcb61f220n/a 
2023-06-14docu_AC320_Jun_14.zipzip 06b0af7bd3ff641a35d3f2335b795654db98523c461224559571f055f57f35ceVirustotal results 1.64% Quakbot
2023-06-14OtfTqZ38L4qK.jsjs 1ab1b8718e6f930d3cba401c52e2765d9a40eae41f9f08c4fd62decb7973b6e2Virustotal results 3.39%
2023-06-14toyYIEOOR5HbDU.jsjs 2e710862b1b5e4548bca3e5332dff71bdd903c25e09f08037f93deab4ed7f065Virustotal results 0.00% Quakbot
2023-06-14NkjEK3pV0gdSS.jsjs a29e6a9e9c53aa408ad61177a73547ecd467f52cc238367f9ad7f2ad5f5a9313Virustotal results 16.95% Quakbot
2023-06-14LUcwiYM001Zh.jsjs efeeb808b0d33e3d59239be9ec2817abd1222228aa7122d95c78061c06923ab3Virustotal results 0.00% Quakbot
2023-06-14aQ66Vbd4nPTH.jsjs ddbdf8827c8645e4d3c86f2a770adccaac5370409f0db46031078e56af9d71ebVirustotal results 0.00%
2023-06-14FHdwBW8K8dyF.jsjs 0bc7bc660d3416887b5b85abf92b6f7800489500b972086d6f97e8a6efe422b2Virustotal results 15.25% Quakbot
2023-06-14rjg3Jsr76OFV.jsjs 6da029743607bb22e88cb150fd7747cf0a8668764fb56332ac14509f3cdd6baeVirustotal results 0.00% Quakbot
2023-06-143OOhVGBfyaHnl.jsjs cc049dacdc64957bbf78ab648752227d2466c211ffd79afd2e121afa29679535Virustotal results 15.52% Quakbot
2023-06-140cABhtE7pvqx.jsjs cec0ff762769b3578567f50b5818adcca7f2bb66944cb9363f7e86970b50a052Virustotal results 15.25% Quakbot
2023-06-148Hy4GRT8VygY0N.jsjs a90e3655ad923e94563d2f3bac038f1d0c79da128374f7eb95ca36828f09f390Virustotal results 16.95% Quakbot
2023-06-13C8BjwFEsA642s5.jsjs 091015a3d67e93a8009cf99ef3279d4837e65d398f7fca3c35d4fee57394cb41n/a Quakbot
2023-06-13lZlIGLEkWMLJdO.jsjs 2c9753f3b2faf3e22fd3b6ef3be9c9edd4c22fbca372a9946b1fce7d7518c72bn/aQuakbot
2023-06-13ejFsYXhVNXm5Mx.jsjs 47e70a9888099efc5dd1fa01764f8755fcbd70964685c1eb686c784d980aea2fn/a Quakbot
2023-06-13nhxO7eoiXu9zQ7.jsjs 31d3d0685be4ee92838a6645510847a3c36241a12760a0d28ecfbca82f5332edVirustotal results 15.25% Quakbot
2023-06-13SLyRRCkPdUhEg5.jsjs 05a8a28abd779f12f77e00b446068d7e3eff9574dc53ae12289a37fa6cf6216dn/a Quakbot
2023-06-13cqAO3SAUlM2hrT.jsjs 57868e0242c976965cdcb9cf7496dac7f85889ceb0663ef6bcba7233169749c7n/a 
2023-06-134uoWND1aTm5m.jsjs 79f852901fe63b8b73f90e30afce13f0368759492fe58a61a50fa5ae6b3fd7ffn/a