URLhaus Database

You are currently viewing the URLhaus database entry for https://capitalassests-recoup.agency/laa/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2659368
URL: https://capitalassests-recoup.agency/laa/
URL Status:Offline
Host: capitalassests-recoup.agency
Date added:2023-06-13 17:52:19 UTC
Last online:2023-06-15 15:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-06-13 17:53:44 UTC to abuse{at}namecheaphosting[dot]com)
Takedown time:1 day, 21 hours, 54 minutes Poor (down since 2023-06-15 15:47:45 UTC)
Tags:BB32 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-06-15document_AD507_Jun_15.zipzip 2e2c2ef3a1af42212888409f71ff25c4e48a259965f1686c4c830b7e18895a6dVirustotal results 6.45% Quakbot
2023-06-15document_CF581_Jun_15.zipzip 6a988b7d3e11382620b12d03085c86685fde1583677f91b1eb5bc8dc71ce8148n/a Quakbot
2023-06-159kTTJORvIP1Px.jsjs 11a1437c8d58a015e13e5601acd25c9cb921eb8efb6352c4253ec1919be607c0Virustotal results 15.25% Quakbot
2023-06-15IG9S0CoWz6nI.jsjs 4a601a44565de0664fdaa8aefbe89f4a0cb55a5d2d8b8a608633b87de492594dn/a Quakbot
2023-06-15ZJSkoWBfwVTK1.jsjs a7aa49a367813a08cf6b3240bc23fd931114668d7457174098b025f653d3975fn/a Quakbot
2023-06-15iKZCV4Yny3Jy5t.jsjs 8278e0d490a43e5a751816bb2a52674aa57bcf2d6e683275137576d7a4ebc652n/a Quakbot
2023-06-145qSP8iImz2PNp.jsjs 81e1be1bdc0f9d878e30123eb5544e5de86e0fa4df0cadfc988b8b9b62467a1bn/a Quakbot
2023-06-14fWkLqzUptp7t.jsjs d6dbe827303d2b70d8a2a87541ce26bd0771c9fab4bee148fe341040f587a506Virustotal results 0.00% Quakbot
2023-06-14RvT1wgspXJUF.jsjs 542660662aa79d64ba1373670d6c42df6a099ab026e3dc8b5b3f6b1887cad660n/a 
2023-06-14EeRzPQSHhoNZ.jsjs af0f9835658e14aa4ae19f6ef65ebf460667311b97f8f16759aba06dd990d737n/a 
2023-06-14docu_ED627_Jun_14.zipzip a8fa341a4092c92e4dc493a747766e8726c2c92d4c7a894a7044040df441d369n/a Quakbot
2023-06-14VQcIIfuRUCWi.jsjs 8ded2bf481dcb500a9a9b7bf938df6aed877f9d4bfe2566a4539198bf56ff3ddVirustotal results 0.00% Quakbot
2023-06-14QBS1j3HXRwkf.jsjs 52d7a3eb1a87e1844d40bddb7c30f0a99000d0e5aa997c8e2b458821bc79f123Virustotal results 0.00%Quakbot
2023-06-14L7goqq09rpaS5S.jsjs fe9b6bfe06ede6c4e531a5ea3b93934c4565c1fb4777862461e3a13bb3fcd263Virustotal results 0.00% Quakbot
2023-06-14gaNVzsb6EH1W.jsjs a86f7f0a7aef936e4ac1b4c673ce659817b0ba17a76be06236ee2fd64d88aa9cVirustotal results 0.00% Quakbot
2023-06-14Z2WWmqQVn7tb.jsjs 1b274b1ea61e38b4b5125e0ac36550da16f5ede11ccdb32eea5aea1fd24ecc17Virustotal results 1.69%Quakbot
2023-06-14oIcAZpyXBWTR.jsjs ed9e567f75b2292cbe3188606457ecba5295658cefdc14f02104de778ea16998Virustotal results 0.00% Quakbot
2023-06-14ytrogkaEsyx22g.jsjs cd92783315a2dd65518a32bd36fe2b33afc753223578d98f1ea106e531f0f2e0Virustotal results 0.00% Quakbot
2023-06-14wP3exsMu32XV.jsjs 2f70d614dfce45e13915d1f10b8a73bf31dd0484d11752675d96acbc7ef48d97Virustotal results 0.00% 
2023-06-14w3T5J32Yllk7h.jsjs 83be82e378dd748cecb0dea28355fe79c5ff4ce98045dc4022284dac40bcaf16Virustotal results 0.00% Quakbot
2023-06-139UbuqKBjOKwe.jsjs d95c0363fe9694d33c5ee6b7dc943332f933aaf4b6c221a64b9c35925ed70a61Virustotal results 0.00% Quakbot
2023-06-134ngaavsGew9ep.jsjs 9f254a99c8f47a850e92e8198602d17bff5202ad9baa1fe39877c2e36db17d9bVirustotal results 0.00% Quakbot
2023-06-13HiYLsDjAycE7eG.jsjs e9463170b553a9a93634d494cb40fa7cb1262eadac1d486ecee9acbee098cab6Virustotal results 0.00% Quakbot
2023-06-13052EdZ6QZW4CA9.jsjs ace189f15cf0a9d4524c9807a5c89842103e12be060ea33e270b0ae5c4c36d53n/a 
2023-06-13jjkER9Z7sl68j.jsjs 75a36411f623cb47e3babb26cf4c63f6f932c66611f9adc0bbdefbad2aff8fd7n/a Quakbot
2023-06-13Dw9oG90uWY4wL6.jsjs 8b6c27383170e8257c1b3dd1ea763aefbdc57087a182bb3684fdca4c6b99c404n/a Quakbot