URLhaus Database

You are currently viewing the URLhaus database entry for https://nutrivalegastronomia.com.br/pn/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2659396
URL: https://nutrivalegastronomia.com.br/pn/
URL Status:Offline
Host: nutrivalegastronomia.com.br
Date added:2023-06-13 17:52:29 UTC
Last online:2023-06-15 16:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-06-13 17:54:16 UTC to abuse{at}hostgator[dot]com,eig-net-team{at}endurance[dot]com,jayanathan[dot]muhunthan{at}endurance[dot]com)
Takedown time:1 day, 22 hours, 20 minutes Poor (down since 2023-06-15 16:14:50 UTC)
Tags:BB32 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-06-15document_CF024_Jun_15.zipzip 7048e8c33589d857f431478e25dda8f427ec2fc27e396e6c70cd11a8f4f58f81Virustotal results 6.45% Quakbot
2023-06-15document_AC035_Jun_15.zipzip 20fefa1ac5cad9693ddc98511e64961eba0eeaadb3cc9521b2351f9df988cc29n/a Quakbot
2023-06-15Uwhrrn7Up0XbCA.jsjs b7baa27aaccbc073c4968dda8ccb4f46ff77c4834414ffc023fd0a7ed7e94748Virustotal results 15.52% Quakbot
2023-06-15g49yhaShkaSum.jsjs 306b192aaa8fd752e0456f7fc9e1796cab52e85a2984cb8f41b182568812e448Virustotal results 18.64% 
2023-06-15MmXb28zhMwdOo2.jsjs 8f3bd4e17689d2b006f8a38efdc9b3adf04820765b4d256ece9afed2936a24b5Virustotal results 28.81% Quakbot
2023-06-152cSue9qQW8ZubR.jsjs 3f2ce1fa77ff965d10bce3bea9a68dfa3b4d6be8781cef0921ab92c606f54f21Virustotal results 15.25% Quakbot
2023-06-1578KFHlESDL5Y.jsjs 2590f18548aec35d2df98ce665fd09c11d1be9a34b6122c3635ecac17238533cVirustotal results 18.64% Quakbot
2023-06-141ssdvIHRhWL42.jsjs e0497594d4269e62a575a5305e1997eba146c899ca6f08ee59c2f6f862564ab7Virustotal results 0.00% Quakbot
2023-06-14PHQ0q7bcFtINe.jsjs b0d0104ab53364ae97bfad1cf7d7aa2d0ce16093dd2e27545cd8a7b1e2a03b66Virustotal results 0.00% Quakbot
2023-06-14dCJaHI3nz83l.jsjs c86b0d6aca6e60abf1330a5a34d784e00bc6b74e556752ae37fa49a7d96ef49fn/a Quakbot
2023-06-14docu_BA348_Jun_14.zipzip 2c33e109ba2eeaebe06463320fded9a92d7e052d4f8743fdd8e543ee0c364479n/a Quakbot
2023-06-140JqQdA8yvxy7t.jsjs 9fd3b77d7695ef59f90d70b317d46c19b077ba1cb380dc1e981ae073514af1d6Virustotal results 1.69% Quakbot
2023-06-14FXuoxGxnufIOmz.jsjs 0065c4b752d4ad2eadca283d889a5df13e6e2182b62e5700a55ae168fbb29b33Virustotal results 0.00% Quakbot
2023-06-14e1JX17pDt8UYTk.jsjs 95dcc193fb525ee98badcd4cef7d491bb44e80d4c770e638021c50615550d05cVirustotal results 0.00% Quakbot
2023-06-14Sjeq7vH8HEmx.jsjs 155edabd201cd66924836287c83f653e09c7ced1cbd3af8084eb9bfad9680d0cVirustotal results 15.25% Quakbot
2023-06-14Bid1OwAkL90aJ.jsjs eb3ba4b20d30bce05a31ca9780e5f0bc381ae20b8f931ec2429b0382c8cb1d27Virustotal results 0.00% Quakbot
2023-06-14ksNQG9YYRS6bQ2.jsjs 80182ebbd0226727615a05a922a28ff50f87cda46541fec803d3b07c90a9a142n/a Quakbot
2023-06-14RMdBoYMV4lt8.jsjs af421ce80f44c8aa9ee3baa364b9e4b541e48198fe96894b39f62297eebf1427Virustotal results 0.00% Quakbot
2023-06-14Qpc6kNoMf3FZO.jsjs b47346d6ccad24ac4dfd9109016c3c3c9035effb8092e3f7fae79935768f436fn/aQuakbot
2023-06-14Yy7EKlxmkcEj.jsjs 2dc927c46ac6cd140d42396e6735b2fd513aceaee58df8abce585028c78d98ebVirustotal results 1.69% Quakbot
2023-06-138qYZb3L0SSRS.jsjs d292e690a899da501ac006d5c0f960cbc8dcd3c667702181c194440eabd87e69n/a Quakbot
2023-06-13pwkY4sF5s8sU.jsjs 238902bace1022430ee259967c47d410e80f09b6d8365ddcc324146603f5a522n/a Quakbot
2023-06-13j9U9ng2aC3nk.jsjs 91ca0dd484a61948629b7b73ec89c55dd0431ee6bece9ee4d56d54b33dae0a5cn/aQuakbot
2023-06-13SDE6rwvn0gPlmh.jsjs 38366372c790cda6ca1c286ae922e290d34fc010d76004b18a9773f165e96b52Virustotal results 15.52%Quakbot
2023-06-13UT1hcionG3ul4U.jsjs 39812c0ab253e75f4835c0da4cb08db82f3c7954ccfc3d9a989944c1ae295f8eVirustotal results 15.25% Quakbot
2023-06-13Iu6ik1xLTFwtw.jsjs 4e7ae6670d4cfbf7eb507116ee2fe1dc7ff80eee0f1e442fa9453af1f4466514n/a Quakbot