URLhaus Database

You are currently viewing the URLhaus database entry for https://proveedoresdeconstruccion.pe/puea/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2659343
URL: https://proveedoresdeconstruccion.pe/puea/
URL Status:Offline
Host: proveedoresdeconstruccion.pe
Date added:2023-06-13 17:52:14 UTC
Last online:2023-06-15 16:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-06-13 17:53:18 UTC to abuse{at}hostgator[dot]com)
Takedown time:1 day, 22 hours, 24 minutes Poor (down since 2023-06-15 16:18:09 UTC)
Tags:BB32 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-06-15document_DA954_Jun_15.zipzip f4adaf3f16d72b4ae03d7a9ef5fe6de8ff309e7b9b31e812e2f3d70c00e29342Virustotal results 6.67% Quakbot
2023-06-15document_AD210_Jun_15.zipzip 106f041402ff896a97661d5ea1a2ffda03d9b64bbafc0dfb7ed74d90b2847839Virustotal results 6.45% Quakbot
2023-06-15B9F4qqqf5hvIIn.jsjs a8823f19e60867ad9902425c92904648750480a1be057741f7082c29e8b74009n/a Quakbot
2023-06-15YYuwym06zOwC.jsjs afd336de527dab108170f295f9f20021091dfa0aaf3c871282e6194a6602301dn/a 
2023-06-15NifbFHlgkqav8.jsjs 160db96f27aac60033a2b22c02412a1adb10c45aaf99690e629aa06b020ed6e6n/a Quakbot
2023-06-15741heM8x8zfK.jsjs 568c5131aa2d7a38f534a5d142c71d97642138c1df78f0faf6f78af6738f30d0Virustotal results 15.25% 
2023-06-14PaupQXIH5xUJ.jsjs 7815221f9fbe066a7ecc361ffca31ec4ceed05f51022958885470bad04b903fcn/a 
2023-06-144XvL0Ans1PFX8.jsjs f3a36b2caa32b9732ece59b93d2d2e8d39a4548c271c324e46f5c6560159f4d6n/a Quakbot
2023-06-14docu_ED925_Jun_14.zipzip 3ac4e538a62623bed1b2146236074678e6c8b353391497ed17d5acf4e6512c88n/a Quakbot
2023-06-14docu_AF526_Jun_14.zipzip 6750b1631d6536033bcf9d168980f9e9b7417285b841010b3cf531eeacd717b1n/a 
2023-06-14E263XupW7CT9m.jsjs c40520f70261e62c168b4cd47816b110db840917d8212fbe62c787a40ad159d8Virustotal results 0.00% Quakbot
2023-06-14zWEQlEw7WS2wy1.jsjs 2ecf8ad3e38853c6374d0727cac60b889e5e35bd8161a5106f70870be251998aVirustotal results 1.69% Quakbot
2023-06-14a8wU6f0MPcjYu.jsjs aa3b90a263a600deea80ebf948b7497631bd26618e5a626e3a54fbbd42c63e07Virustotal results 1.72%Quakbot
2023-06-14a4YQ6UxZhsp5tr.jsjs c1f1fbad43a84d906bfce43674da268bad184919e8ee6d7a1b903f4270576f79Virustotal results 0.00% 
2023-06-14aymRhNHRHLW6I.jsjs 65e6c60a3aa0274afa3e7efeae1bbe3265cd6cae71dea184c7c601833b4ace88Virustotal results 0.00% Quakbot
2023-06-14BRgKGOO16U1X.jsjs 51e82febd1b9fc22039281c562f79ac2b7798ad3b1b8a69ab57dc46a804e696en/a Quakbot
2023-06-14Opz5RNVKnrS86.jsjs e68554a95cdf461f6691aa1c71be49677f938229e88a9f4e74b66fb04d81e6a0Virustotal results 15.25% Quakbot
2023-06-14HoaONDTf10XZz.jsjs 99ce6d054dbab9f27faccd5f658d5dce6fa331a12f076e2153c851f49a44045aVirustotal results 15.25% Quakbot
2023-06-146PIIYTKmVUAq.jsjs 248f62597c9428bc5920ec40a1128e5954f688fb888e243ad6ff19496f2681beVirustotal results 15.25% Quakbot
2023-06-14uDe7C5lgLo0K.jsjs 8e742b604ce524f9dae969250e9d4fc193536863d6eea1a842e167b04a2f49fdn/a Quakbot
2023-06-14IVGA53E4C8y62.jsjs 2d43a56a449ddc34e368a2de42a57af3fe0a426065e6dd433625d4745b1a6d67Virustotal results 0.00% Quakbot
2023-06-13lGdsJjpxkhFY1d.jsjs 94623dba99508c10b256941b3006589996c4d2acf099a8ddbc711f35e71bd56eVirustotal results 0.00% Quakbot
2023-06-13zh4NTXPhz4aO.jsjs 54b75674a61ab2bfffe124af32a3ac3213972ae6ced8d4a9bb4d0b7286513257n/a Quakbot
2023-06-1361RHlT4Sc9eOj.jsjs b096db7252604d693e736146b7c6abe38ff0a22cfc5ae13ff00b0f6c6965e270n/a Quakbot
2023-06-13LtOIKPToz9AIJL.jsjs 50ac2ec75be6f544a2b9984c1943647d13007eceab1ffe7eaa36077b4fcbeddbVirustotal results 0.00% Quakbot
2023-06-13Em3U7860lOujQw.jsjs 3fc9358247ddf03b3ba91cd44c47b72dde88ab35e753d41d605b1e661b858f10n/a Quakbot