URLhaus Database

You are currently viewing the URLhaus database entry for https://engenharialda.com.br/toro/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2659425
URL: https://engenharialda.com.br/toro/
URL Status:Offline
Host: engenharialda.com.br
Date added:2023-06-13 17:52:38 UTC
Last online:2023-06-15 16:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-06-13 17:54:47 UTC to abuse{at}bluehost[dot]com)
Takedown time:1 day, 22 hours, 6 minutes Poor (down since 2023-06-15 16:01:25 UTC)
Tags:BB32 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-06-15document_CA109_Jun_15.zipzip d57ca37b6219390110344d4797c5d33aef44ca82d7d652946cfd6a9f8bd63998n/a Quakbot
2023-06-15document_AC645_Jun_15.zipzip f809e9d5b1257b8a2bd29a10e4e5f1e4a72fd9d47052cc390e9e6e2c8403735fn/a 
2023-06-15qzflYg9JxWlnJ9.jsjs 43a518cda69b0a2aa612fe35b41c147f945f497cb6a94fdb9dc73d1c1b907171n/a 
2023-06-15ClGp9iXaVuwy.jsjs c5c50b3a7c3fcacd521bdb227c710f8e48d6900910505976689c972bd47f83e6n/a Quakbot
2023-06-15ij2e49XoYXR6.jsjs 6d59b65e8f901b4d5bc531b33899eff95d49c58d787acbb81fe141e890ecaeb4n/a Quakbot
2023-06-15UJyStrtIy7jmff.jsjs 95f906e704a0fc52ff27d3b59841fd98b015507d23d615b90e3e4923c8d79c40Virustotal results 15.25% Quakbot
2023-06-14QQJbJV73mTMXlQ.jsjs 845f30ed0b65863dd10576279a8adf2c7e89ef62ab94cb1b8cbb6684f27cad85n/a Quakbot
2023-06-14QNYVJHSwaVtf5z.jsjs 9aab71105e973fc0120fbf4ba1599483039809aafe1f649bf867701d6c68beccVirustotal results 0.00% Quakbot
2023-06-14gwyEa3JpgyKHV.jsjs e1e8b43fdc48e47142839e3c99cac23d7b5704b4fdec7273dbaa98f2cff623c1n/a 
2023-06-14VyeFyqbdz8mx.jsjs 4ea2b569e5dc6389a3bb81ff4f84d75f4f818162238b1c9844a487674dd44157Virustotal results 15.25%Quakbot
2023-06-143wGX03nKPreYM.jsjs 2189fc7d4919821aa3397ee92a9388a0c68cb5e9609bb6e5bba88da219126306Virustotal results 15.25% Quakbot
2023-06-14tar2RVaiYU22ZJ.jsjs 62356922472019adcfac4e233a2aabc0eca414f713a656412ee5b5a77dcb4658Virustotal results 0.00% Quakbot
2023-06-14gp1FuHgeRHPbxY.jsjs 3e1667b0ade50d60845228578f60a6540cdbd21bb0bf6a52bc186a239d809409Virustotal results 15.25%Quakbot
2023-06-14mKvVAoOVS2TZ5n.jsjs e1278a6ca91d3112345095ef66d152f0aea42bd2438d23f7565a3a90e01942b2Virustotal results 15.25% Quakbot
2023-06-14WHtlC60PAY5NvF.jsjs 7074ff624519388df3fce38a20a1ce34aad2d8b620c5e61c13b7443ebd572b7eVirustotal results 0.00%Quakbot
2023-06-14Dh9v9O2mzuCX.jsjs 184197d57ce5cb830933f2eb4ddef420b90bd6943cfc7e727dadba04cb620386Virustotal results 1.69% Quakbot
2023-06-14KWRmJMWN4geR.jsjs 990fcc25de370c8b28fcd7dd0c37eedff5aac1fa3c53d892528aed63d3e46499Virustotal results 0.00% Quakbot
2023-06-14fv82YKCx4m5IMT.jsjs d9c252bff6eda77d590cc25382534d315921058f11abf5fd8cede81804f89ec9Virustotal results 0.00% 
2023-06-149fcLufB1LVWoj8.jsjs 6e9a243e03c14c6bf4a1eb893cefc20b2399519d2c7185f2ce0f99c28916a25eVirustotal results 15.25% Quakbot
2023-06-14s1pWQPx4hMXJ.jsjs 24d9537d3b8010f7ca4629170de02d72a16212bfb3eb11348c80aedfcdfaea87n/a 
2023-06-14QP7xDOXB413d.jsjs a479fa5413202ad33301a761f0ed4c239ce08a430a5068b3495f9975e83d39b3Virustotal results 16.00% Quakbot
2023-06-13QBS1j3HXRwkf.jsjs 52d7a3eb1a87e1844d40bddb7c30f0a99000d0e5aa997c8e2b458821bc79f123Virustotal results 0.00%Quakbot
2023-06-13ltFP49RtVuvj.jsjs 451498b188ecb6bab94beeeb7c5147abc4814073f2c90058544fc3ce28c82bfen/a Quakbot
2023-06-13ZOoLAEZKkybj.jsjs 905af047345addcf40ced0d92bc5164fad2cc99dead0c067e5b5f091d2e9c24dVirustotal results 0.00%Quakbot
2023-06-13LFAotk6pLsJq4z.jsjs 8b2b5ab2f87cee54c8cc50586169b8759ffe94753cdf9084e2f12cd58cadcfc7Virustotal results 0.00% Quakbot
2023-06-13L3TVHKpg6yfhD.jsjs 7fb0d0d006fb2d1a05576482a1acdfdd21d674d14f989933f67a5d2f594c7b30n/a