URLhaus Database

You are currently viewing the URLhaus database entry for https://camelliaspices.com/aeu/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2659300
URL: https://camelliaspices.com/aeu/?1
URL Status:Offline
Host: camelliaspices.com
Date added:2023-06-13 16:37:14 UTC
Last online:2023-06-15 15:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-06-13 16:38:18 UTC to abuse{at}namecheaphosting[dot]com)
Takedown time:1 day, 23 hours, 17 minutes Poor (down since 2023-06-15 15:55:49 UTC)
Tags:BB32 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-06-15document_AC894_Jun_15.zipzip 9d1a422eacd3df9e7f223831dc7d63d7a4bc87eea12d157ac13c52597cb08fcan/a Quakbot
2023-06-15document_DE058_Jun_15.zipzip 1a0eb4903845ae378717f9a8860fa3acbfdbc3ed6a07cb0635f546577ce761c4n/a Quakbot
2023-06-15ykJK5YnsAUco1x.jsjs f1470b32d094e714bd0319e1dc69688d424b02aeca40e5e597b4be31f224596bn/a Quakbot
2023-06-15Iua8t4VtnORCrr.jsjs d26ceb3c7c027e6d362889f1134e948a9ca451b2d4d0135b0de35257cb3d1512n/a Quakbot
2023-06-15r7N0slHm1F4qi4.jsjs d5ed6e1b410bcd47b67c9563a7477ddffb75a5d131d1e19078b1bd1f9a3db08cn/a 
2023-06-15olk8D1qSDBxBlB.jsjs 31206a53920545efaebfdc7d6a0e7252c425020f477d4b1a92365facdd840ad1Virustotal results 17.24% Quakbot
2023-06-151lmYqFBQUx0W9k.jsjs ed64d33b56912ad534e8eee0b97ded799f9740ef0cb8e8c8c2687364a0ca0134Virustotal results 15.52% Quakbot
2023-06-14BZKoqAx0cki3lX.jsjs 1839cf7b6a951ac99fda184bdd94d5cd09e6dcaf4929b56aff81257f29e30843n/a Quakbot
2023-06-14docu_BD729_Jun_14.zipzip f8f161c134801f3af15d22830d7207e40cbd9beaca682d8d145ad5f39e4e9dfcn/a 
2023-06-14docu_AB640_Jun_14.zipzip b650a92cbd441a298c1bb2c81f810e920fa5e2d7a044defb366cf171cfebb19cn/a 
2023-06-14T6uLNJLhYsIH.jsjs 1b51b8063a026dbefcdb1f41c988303956a34ca1bfe8b09e9f8eb8a8bd2b0905Virustotal results 0.00%Quakbot
2023-06-14ia1PXomRcyyS1f.jsjs 022a002f99460822964864476d3d9de4dabc165556d9cc242d6bd7037e02e4beVirustotal results 0.00% Quakbot
2023-06-14bJQrQIPQrhCO.jsjs f3c89b57ec700157818293b4ab3cc6998e1cc99bce9e06431180baed8e8f8333Virustotal results 0.00%Quakbot
2023-06-14qjyYassKw6Qn.jsjs e552985ff266e1634976236fad4ea1b67d242a95399d255c9b984d18e93fb934Virustotal results 0.00% Quakbot
2023-06-14Mz5YtIPKt2Nhf.jsjs e2f71a4ceeb433fb027d86f843db40cf5cf642b51945904bb7f2fb186de93405Virustotal results 3.39% Quakbot
2023-06-14BFk9P0LBZmYV.jsjs 5c61cb82e432f98032294ab7998ee2b885d52773c24c29c12750ac7ba75f78f3Virustotal results 15.25% 
2023-06-14o6J4ni3Vw8VU.jsjs f500f8c4fa0d5c6a32fb058c2934384cf20c94f8ab36fd9e28a177efa41ab4e1n/a 
2023-06-14Qpc6kNoMf3FZO.jsjs b47346d6ccad24ac4dfd9109016c3c3c9035effb8092e3f7fae79935768f436fVirustotal results 18.52%Quakbot
2023-06-14Xzzt1z1QPK74.jsjs d4fd807d3e0143d21c92c708cf9d6b19e0b421a31f9679f12fe34e0a7354633aVirustotal results 15.25%Quakbot
2023-06-14tVyIxBtasmID.jsjs 810fa023cdb19da4cf83092f3a429559fc8dbe01d15b3d476ec8be0822b3b4e7Virustotal results 0.00% 
2023-06-14Gt2NB2RuAWvR.jsjs 40ae0a5f29fc9b0a2efc8e843fe5532991b1a2286f4afbd85a89dd512377e77cVirustotal results 0.00% Quakbot
2023-06-13Cf9rEKBl42qT.jsjs 694f0963289ae8b08112f1caf3fb77bfb8ce802690d792c2de7a975340660f92Virustotal results 0.00% 
2023-06-13uxRIFAgje21o.jsjs 8670dee51f9e9588f77e0da71d324085bd9f779001244b568f807e6e24782340Virustotal results 15.25% Quakbot
2023-06-13nofEy2brxrKo.jsjs 41f6cea57a81bfe9447bd9fa434d26dd6b485cb6ebce41a7f8dadbd305921effVirustotal results 0.00% Quakbot
2023-06-13IWeFpbg2cPCqN5.jsjs 2f3ece6b454cda59647a1b24dd54a71fb05b8c2bda0f67f676e0431f0e6b546dn/a 
2023-06-13U0LpsMzh3qD0y.jsjs a0825685c4f9d782fbe5f04b55d7345e0313296072883d2234a0f593e76e25d7n/a 
2023-06-13Kn5POAHxspUO.jsjs 036d120e9fbf006e89f4a5d3f49322dff3d652c459b2d387be7ae8cf4909991an/a Quakbot