URLhaus Database

You are currently viewing the URLhaus database entry for https://casaabierta.org/ssme/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2659358
URL: https://casaabierta.org/ssme/
URL Status:Offline
Host: casaabierta.org
Date added:2023-06-13 17:52:15 UTC
Last online:2023-06-15 16:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-06-13 17:53:35 UTC to abuse{at}bluehost[dot]com)
Takedown time:1 day, 22 hours, 36 minutes Poor (down since 2023-06-15 16:29:59 UTC)
Tags:BB32 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-06-15document_CE347_Jun_15.zipzip 6211498c51cc66c1aa7d7669d5176cb6f0a1628dfccb0464d84088c1ad81a4b7Virustotal results 6.45% 
2023-06-15document_DE108_Jun_15.zipzip a739645788a95ede796f883defd315ab0d3a931a9fafb31a265437abdb0e2030n/aQuakbot
2023-06-15YpLVLroTGDo05.jsjs e78cd86adc0e963f828f678421c138e4cb8acd21a1329ee450f8e8a5dd5c8827Virustotal results 13.56% 
2023-06-15Ljul1uOFySPalm.jsjs 070c74b75238ce6c03a813cf41ec3af7d710df738121a2e73273cfb2891749bcn/a Quakbot
2023-06-15Mf4O3qXgJacq5.jsjs 4bfb56426eb42f2197d1e2a94d19689082cc0c1a3bbf9c24deb9decbd0f37574n/a Quakbot
2023-06-15jBPnRPMgPKFc7W.jsjs 65f0027ea4e0ddbba70c6b7dee02564fb614575812ffc01e9996d737cb95f052n/a Quakbot
2023-06-15xViINxdLblZs4.jsjs c72f2277e13a04d715f683763c4d879e01e974fb660c86755730bbfb0dd780b2Virustotal results 0.00% Quakbot
2023-06-14WEfxC9BxkLjT6v.jsjs 01d1473dfa9cc30b82e86057c902e0a3e624c0946feaf932a735d1fb8c21d994n/a Quakbot
2023-06-14JqZ9to0Q6ar1i.jsjs 9fe3ae052e72be97fca1ec3141f6664d2915225e4850ed2f5974f0179e5a9031n/a Quakbot
2023-06-14YxEhJQLqVCdZ8p.jsjs eb6232f18bfc7fb2787d12e7a5b83c034e4b9c89cc7fa7fc44c8d37814cc7942n/a Quakbot
2023-06-14xKlPinZz80jE.jsjs b85737b7e85cce7bf9153ec5ffc49beb15300e23bf13108fd64be026e392ea8bn/a Quakbot
2023-06-14JpJEh5qP0QC0n.jsjs d578997e38238c6ced02ce0bb621168c2109002d185e063aaca9acbcac8e42cfVirustotal results 0.00% Quakbot
2023-06-14nofEy2brxrKo.jsjs 41f6cea57a81bfe9447bd9fa434d26dd6b485cb6ebce41a7f8dadbd305921effVirustotal results 0.00% Quakbot
2023-06-14wVl2vzSWIjY1.jsjs d62cdaaddda1026ab7d661773daf7ff00ebbc890486d0eae1f14600d65cd0f3bVirustotal results 0.00% Quakbot
2023-06-14Md175YlLRr2i.jsjs c72f9d4985280477c1b57234ed6fdb9d760060d765c03db312c206ea35e8cb98Virustotal results 1.69% Quakbot
2023-06-14VZlOWTozFKxw.jsjs f15771d14560b9cc2cc06beda3450490511675c488d61bc9249ea076d703ef08Virustotal results 1.69% Quakbot
2023-06-14EBuI1jMPXCi2C5.jsjs 25f87b525bf0bf9ffae58b1f2f8684f93079e2aa7f022fc4669f9eb4e498ee63Virustotal results 0.00% Quakbot
2023-06-14kZY6lJ46sXUs.jsjs 95d487e1b312dbd263a62467e955c7211aad480c4d77337a96f43ee18175c698n/a
2023-06-145Ma6Pz5ZBEGl.jsjs 89746e03f20213f3ca6a69b03d54b2a2594b12cefeec6aada6048430008b9443Virustotal results 15.25% Quakbot
2023-06-14WpHrc9c0kBC9.jsjs 0b2edbe7945b11330089f5878420c7e0ef42edcf1341bea57ee1c06913e98907Virustotal results 0.00%Quakbot
2023-06-14P4rBt0Bi7g84Wm.jsjs 0e2c3e6d62c9a7aa6af1ebe5f83d3fb9a5bfdbfb39fb17bbff0040137907ea2dVirustotal results 15.52%Quakbot
2023-06-14Ykx2d2RHL3Ckeb.jsjs 518bd813c077206e330fe7abf815319c60311bee93ab5a5ed776f1fefa9ff8d1Virustotal results 0.00% Quakbot
2023-06-13TK9VTRtW4eNz.jsjs 8bac1e1bc404a9d9bddd15d2807b739c8f9ba94d70dd28f92faf300a043ca784Virustotal results 0.00%Quakbot
2023-06-13uqKkBe0k6pa4.jsjs 18d40e0bed746dcbbba05fdce9b4872efd3ec5330d5b380d7ef163409ad826d1n/a Quakbot
2023-06-13gaNVzsb6EH1W.jsjs a86f7f0a7aef936e4ac1b4c673ce659817b0ba17a76be06236ee2fd64d88aa9cn/a Quakbot
2023-06-13JKvSMDoSgXtZSD.jsjs e9088ac1d69f81407081d6fe6298f07c0121eccc9f5156b1792837cb12b214fdVirustotal results 0.00% Quakbot
2023-06-13Ftqx5jyw9icLcr.jsjs 8a2dd98512402598992549ff209edc910eca09454686b9c0502d7e883e064509n/a Quakbot