URLhaus Database

You are currently viewing the URLhaus database entry for https://flaviaadvogadaprev.com.br/mi/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2659395
URL: https://flaviaadvogadaprev.com.br/mi/
URL Status:Offline
Host: flaviaadvogadaprev.com.br
Date added:2023-06-13 17:52:29 UTC
Last online:2023-06-15 17:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-06-13 17:54:15 UTC to abuse{at}bluehost[dot]com)
Takedown time:1 day, 23 hours, 40 minutes Poor (down since 2023-06-15 17:34:59 UTC)
Tags:BB32 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-06-15document_CD280_Jun_15.zipzip e0c46fec7d65e2dca7ababf81d84f16cfd65bd48e5f7e8fa205ba277e0960d4cVirustotal results 6.45% Quakbot
2023-06-15document_AD839_Jun_15.zipzip 3a0696900843ea94b789994ff7051d6c23b579e2573132d9a6510daca473420eVirustotal results 6.45% Quakbot
2023-06-15document_DC254_Jun_15.zipzip 6d928d83f6afa82004e9dfde7b2ad48e3492dd689b86b449075c803ec7c25440Virustotal results 8.06% Quakbot
2023-06-15document_FA150_Jun_15.zipzip 14e9c81da179530c2e064a4d54d1b79496840cfafc206acbd6352c72301af347n/a Quakbot
2023-06-15hi2MI9LhvkpyE.jsjs de7067db8e5babb5c454e04ffa7cf328b5679be30e35c382a0f17be93e9d4439n/a Quakbot
2023-06-15T27708GjmgPzZ.jsjs a06ca91da842b678009bdadae7519f2f75562f7d55c7e8b42f8c6a9b92777aecVirustotal results 16.95% Quakbot
2023-06-152jNr8TMWd1aeF.jsjs e9299ac72d71201aeaec4c5d2a71c41d3c3b45c0a1d79bb75c55cfbfdba45ca3Virustotal results 5.36% 
2023-06-15AGh22H0F74X2CQ.jsjs 9610ae56180c42a15ef2b2795ddc9ca68ab8f7cd1077ac626b5c062557293454Virustotal results 15.25% Quakbot
2023-06-15uS5IFH1rvhCn2.jsjs b6d4b574087db12840c43ec7813408d628fc5db1c342b2ac0a6fd0fca80df469n/a Quakbot
2023-06-147ylRTpYiDZYy.jsjs 8622c77ba8f5ac8b260eaabb614135e929a67e0bdebf5880151a2e2c09958bc4n/a Quakbot
2023-06-14YWSZdY45d4bn.jsjs 69b9f3255229db9f0d269c6aa895dad445d40649e46bb399cede37963feefc0an/a 
2023-06-148Jn4N3yKaHSDWV.jsjs 99338db26522c1be0c39a2ecf5287c6b0f0132c0dc6fafef535fadbcf6b926fdVirustotal results 16.95% Quakbot
2023-06-14rnm8UcCo1IhpB.jsjs 69b80b67a6c963fa6d00d4fe7ba7d280cf4c16753fca11691d917a50bffe9ad6Virustotal results 0.00% Quakbot
2023-06-14Oak15HKksczt7O.jsjs dcbb1de18c706dca894ce39fa5c0e6ec4956955cd2e0e48dd2787d8e46747b3eVirustotal results 15.25%Quakbot
2023-06-14FHdwBW8K8dyF.jsjs 0bc7bc660d3416887b5b85abf92b6f7800489500b972086d6f97e8a6efe422b2Virustotal results 15.25% Quakbot
2023-06-14p6Qyi723hMWX.jsjs 56e5d6b72e197e9cef7b8d42b87f8e79bed17613daa4acfe8f8fcf3260733cbaVirustotal results 16.95% Quakbot
2023-06-14Ykx2d2RHL3Ckeb.jsjs 518bd813c077206e330fe7abf815319c60311bee93ab5a5ed776f1fefa9ff8d1Virustotal results 0.00% Quakbot
2023-06-14AlEVJ9ZGBQdVr.jsjs ad89128882cc5045364c6ec03dd8bffd34f16bbfd341d0dd13fdce7a706e64b5Virustotal results 0.00% 
2023-06-14rmojKhr5DzyE.jsjs 18bc700ae4cb6fcdad8a07ee9a3dac5d23802799aa651e43a4ab31c3074aa69cVirustotal results 0.00% Quakbot
2023-06-142wy2Jk7KLOfz.jsjs 055dc4c4ee27b80abbee11617724554d34acbb425aceae1c31083118dbaff67dVirustotal results 1.69% Quakbot
2023-06-14YtwAqoWz18aYX4.jsjs 8ee6d32025b0548e4ed6e55479f139e1fc07b9934ca1f80c870d8f714c7883a8Virustotal results 15.25%
2023-06-14tbzDKn7mRpEE.jsjs 344a1e9b38709ad5b49622515847a46e9097620d10cd2ef55242fb68263b518bVirustotal results 16.95% 
2023-06-13AxRwQ0w307yAs.jsjs c4e16cbe8bcb1066d85844e23bad6796cbbd4a68bc00ce9d63ee4201f63d88d9Virustotal results 15.25% Quakbot
2023-06-13FgRwAInxIhktrU.jsjs 4ec6229a224c6050d9132980954acf8e230f2409a506eef5c3678a00774006b2Virustotal results 15.25% Quakbot
2023-06-13M23l4ylm8Nu9.jsjs 02583a853790764033b5696278dbaa6bf113b59d727050e4b11a63f5fc060da7Virustotal results 0.00% 
2023-06-132G5oZwVmC4vBJa.jsjs 50ecc004c17dfdf0cfd97c571e3f51c8e79e0502a93203a3bd86ac7ec51611f6Virustotal results 0.00% Quakbot
2023-06-13edwpQBRQvmzhLp.jsjs 67a46e1abc05ae69934c409625634ad82d9964d9ab9fde45f3d44744b319d83bn/a Quakbot
2023-06-13IhcAwi6yaFyuk.jsjs 199f8075ae65ab51a377fc39b0009f4d371d893da6d4e66bbb2cbec5219d05cen/a Quakbot