URLhaus Database

You are currently viewing the URLhaus database entry for https://pleaful.com/etpu/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2659350
URL: https://pleaful.com/etpu/
URL Status:Offline
Host: pleaful.com
Date added:2023-06-13 17:52:15 UTC
Last online:2023-06-15 16:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Status unknown
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-06-13 17:53:28 UTC to abuse{at}namecheaphosting[dot]com)
Takedown time:1 day, 22 hours, 6 minutes Poor (down since 2023-06-15 16:00:00 UTC)
Tags:BB32 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-06-15document_DA478_Jun_15.zipzip 39f523c9f9eb461e5c640837b9f3efa16fe66aa44ce7b7fea772c01bb05044c9n/a 
2023-06-15document_AC689_Jun_15.zipzip ed76eaf7bb91a031196085e045a6613da93259220ea53cec067c53971f80a5d1n/a Quakbot
2023-06-15L0XOsDw2GDIR.jsjs 85aae601a2f0750d7cdbf3361e28aac0efdce11e9f7dfed6fd00a0313764f4e6Virustotal results 15.25% 
2023-06-15hm5KFshB52CE.jsjs d29d26ad6c6f4e41c67e00adf68f3a8591a9f2f25581825d67ce4b99ac5e49a7Virustotal results 15.25% Quakbot
2023-06-15dlwnDAMqw8B1v.jsjs 5bddcdb519f17d0fbdd3e60ceca8d7378e78c71b5cdc3f016aa2c1768c0873e1Virustotal results 16.95% 
2023-06-15HIEM7V1r2dVe.jsjs fefa07ab69856d65a65ec0720d4f5cce1bfbcacca770439bddb00aee6e266f20n/a Quakbot
2023-06-15D4T7kt6tbamwb.jsjs 761292bd5784a1e0043b8d3e189f301625b7ca36888744445f080f141f1c5c0aVirustotal results 0.00% 
2023-06-15lf4Ebxar9KCxo.jsjs 0628eec9b797c295a4f5f68d7ca73afd785458166c597aba0abdbc536dde821aVirustotal results 0.00% Quakbot
2023-06-14d79VjqtE7yl5VF.jsjs 340884666508b01e773895d59a8a3415707c6b0904e45fdd14c1f219c2e83aaaVirustotal results 0.00% Quakbot
2023-06-14docu_AB174_Jun_14.zipzip 108c83c7c410f71205ec28be3246d76cb563857407541372717d4891c0488b5aVirustotal results 1.64% 
2023-06-14docu_BF543_Jun_14.zipzip c673bfcb47ede45a743fd4f7a77f4191994558953aa9456806cb2fd6281a9031n/a Quakbot
2023-06-14eR1JzrZFCnY4V.jsjs 80f50469b54674eaf1fb7d4eb44bf603e3dc20084db713fc62d0042b557abbafVirustotal results 15.25% Quakbot
2023-06-14FHdwBW8K8dyF.jsjs 0bc7bc660d3416887b5b85abf92b6f7800489500b972086d6f97e8a6efe422b2Virustotal results 15.25% Quakbot
2023-06-14wPp9qkCLyekH.jsjs 464c74537ba1bd496d16ec9e88e01ca229415c26546def5b995060828da4e6bcVirustotal results 1.69% 
2023-06-14OU7DaQPhbRfj.jsjs 560a5ab4cce6e9d0734472d58f8bf3852a5298769bfed40509ac71dab225d411Virustotal results 15.25%Quakbot
2023-06-14VVeUNhHwbH3d.jsjs 5dcaf44cb684b3f97499442be32f7260097f59b2b4d35d1c0902cc43c45f3f90Virustotal results 0.00% 
2023-06-14Zf9XEL6Je2Vd.jsjs b0a4887bd2cc2532abbfc931767cd93fc025b0d06f89e99ff2dd90e48830dce6Virustotal results 0.00%Quakbot
2023-06-14plN8vhzXlLAw.jsjs 57ced807ed0b808f86d5038dfce4c393fda85af6b8ddd5b952608bff0cb90973Virustotal results 15.25% Quakbot
2023-06-14ERbvdDZCa5dve.jsjs d4daf2d217a0fcf8ff210461b5617f3591082c15dfadeb9c7dace10502243b45Virustotal results 15.25% Quakbot
2023-06-14ViRptsxg5xeV.jsjs 04b3c1ed5a507084fcb18a2f03ae35b8fb2fea012117103072deafe37285e520Virustotal results 0.00% Quakbot
2023-06-14VqwoObEnguUAB.jsjs 9699fb4b5a460c02d05f85377271191d39ea526f91add8dc6dc2acfb74daefbfVirustotal results 0.00%
2023-06-14YKGhWCPKleYeu8.jsjs 4e34eb94bc4d4b80cf3a777941e563a8485e25b958e3222f3ce32908b1b6dd1bVirustotal results 0.00%
2023-06-13mKbz2GZM6EC41.jsjs 0c9bd2cf68a473bf39a53f353fa5ac5f70995001cf388d4a410b49688713d3f7Virustotal results 0.00%Quakbot
2023-06-13Opz5RNVKnrS86.jsjs e68554a95cdf461f6691aa1c71be49677f938229e88a9f4e74b66fb04d81e6a0Virustotal results 15.25% Quakbot
2023-06-13jinomniXnpMr.jsjs 012d1532c189a10effbeccb33cf7525b79dabc14d760e1c42a956c6edb4454b2Virustotal results 0.00%
2023-06-134137oKQBObvRLD.jsjs 5839b8e0304683470209546b887a1345963f00881e1b33d87684fac22b1e9893Virustotal results 0.00% Quakbot
2023-06-13F586qB18I2jN.jsjs e74b9e82e22583477e942f2e1f99ffe7b954fc91b4d599756ee9fee1b739d4f3n/a Quakbot