URLhaus Database

You are currently viewing the URLhaus database entry for https://treetheworld.co.zw/mirv/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2659458
URL: https://treetheworld.co.zw/mirv/
URL Status:Offline
Host: treetheworld.co.zw
Date added:2023-06-13 17:52:49 UTC
Last online:2023-06-15 16:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-06-13 17:55:25 UTC to ocloud{at}stablepoint[dot]com)
Takedown time:1 day, 22 hours, 19 minutes Poor (down since 2023-06-15 16:15:22 UTC)
Tags:BB32 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-06-15document_EC249_Jun_15.zipzip 95856e147326707ce1f6d3a1db48f4cba8dbeb3810352cccafdba7f090a06bf4Virustotal results 6.45% Quakbot
2023-06-15document_BC754_Jun_15.zipzip 7b721296526bbe5531bda04c60c20860995b90b2c226d80ac4bfff59e7ac9e96n/a Quakbot
2023-06-15Ic5sk55bswpE.jsjs 4e53baeee9465c82be93fb2b57d6c1794c41f7450d9841325add5f11673104d1Virustotal results 13.56% Quakbot
2023-06-15e03qb4awq8Wk.jsjs 846149d81fe8d03e400f7fe89c83769472834ff0862d912fae3afbd915e5344bVirustotal results 13.56% Quakbot
2023-06-15beRkmaTjri1F.jsjs d917732814aed0b4a70f57c61a7684b02417bf4e23b7981e8e63c8d83bc42fb2n/a Quakbot
2023-06-15N6dz8us5bgHYJP.jsjs 8be29bbbefd0e3d39814919d7fa7085b809058b636e2aa2ea03ac8145e91064cVirustotal results 3.39% Quakbot
2023-06-15CUIGwOMRAuYgst.jsjs b98f50aadf4f6fc02d17c95f6e75cb86b38b9a69a507ed5971a8ba7085074469n/a Quakbot
2023-06-15hNXXJP8znago.jsjs 6ffbe7aa89979facf5684c8363f26dcb26833e8c99e03f41500630a7621f5b05Virustotal results 5.08% Quakbot
2023-06-14in7Xcx8nHKXnm3.jsjs f91842261b6521e1e0e061b7e64fd5cf924b14934849b1874a5b8124bf91f863n/a Quakbot
2023-06-14gicjk9PAzqWnA.jsjs b6d59e8d1342a4bd01c301d8f02ff26c01f4a7a33e876fb3612d97efa98c5946n/a Quakbot
2023-06-14docu_BA301_Jun_14.zipzip 197c2db0857bc2cd2b24856ea3966173990489709337aa4a3bce6ce17e9e9b22n/a Quakbot
2023-06-142wy2Jk7KLOfz.jsjs 055dc4c4ee27b80abbee11617724554d34acbb425aceae1c31083118dbaff67dVirustotal results 1.69% Quakbot
2023-06-14R8ephkEUcWjal.jsjs 25ae3e1501445de4378eafc511e7ccc1ce8097bf4ca20e7faa59afb364c3b236Virustotal results 0.00% Quakbot
2023-06-14GWUBoiY6MFbss.jsjs 1228dcae8982bb3a8c2978af61a7368aa51cf155b7dd0a41281db56fe7042e71Virustotal results 0.00% Quakbot
2023-06-14XMxEMIYY49oF.jsjs 000aa5ed2b757af805ba8809fe96f679a4571ea36875eaa5e5edd586488c9438Virustotal results 1.75% Quakbot
2023-06-14WpHrc9c0kBC9.jsjs 0b2edbe7945b11330089f5878420c7e0ef42edcf1341bea57ee1c06913e98907Virustotal results 0.00%Quakbot
2023-06-14RKv4qulgOvL2Bc.jsjs f7aadefbf7cc408c6373246ab33ec57792774ba4c5edb7f1d61b265148e01698Virustotal results 1.69% Quakbot
2023-06-14LBwdkF3na7Y2.jsjs 978259ac07ee66dcc817ab3d39ba82672a31ad51ebdfcf56024bba26859dbaeeVirustotal results 1.72% Quakbot
2023-06-14FeOOI4lwr6Nxo5.jsjs 050bd382d14228cf927379f1cf81e022711bff4fd3b55e31872f46a31d78dbf0Virustotal results 15.25% Quakbot
2023-06-144IvxQxO2IfcP.jsjs 7925ad09738164468bba03f2540cb53fb9642c59a589549a26bc7838cf55cf5dVirustotal results 0.00% Quakbot
2023-06-14toyYIEOOR5HbDU.jsjs 2e710862b1b5e4548bca3e5332dff71bdd903c25e09f08037f93deab4ed7f065Virustotal results 0.00% Quakbot
2023-06-14YXNz2mhU2naQPU.jsjs ac94d856ded83661ea8a458aaed1e73c774a277378415d00eb27d6d5f0ea844dn/a 
2023-06-13jgpBAvoF9bOl.jsjs 8e4598055189595b7b04c58a778f02457973e353989ab022f6029ad27c0b2f7fVirustotal results 15.25%Quakbot
2023-06-13dF24jdIjfW3g.jsjs 1e567b4015164976fee603e26a6bff005f1d0bee5c66f2b55c5a715d318a3699Virustotal results 0.00%
2023-06-13LJkb4R9DC4nCdi.jsjs ec4d518f7c858f290ff5ffa938d22da0bc0955f86782578ce4e92c8526e019d7Virustotal results 0.00% Quakbot
2023-06-132DCxkYC8wSAVH.jsjs fd17cd463af9bf449d3eb07975e3ec381c8a7608011d1e56b64d01ce8c363dbbVirustotal results 0.00% Quakbot
2023-06-13NF2Fo6lKpUX7.jsjs 2ff6eba685ebb85d9466139fc98c88cf644548599ca89d202a5a6f0b0a0af591n/a Quakbot