URLhaus Database

You are currently viewing the URLhaus database entry for https://academiavirtual.ac.mz/eu/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2659472
URL: https://academiavirtual.ac.mz/eu/
URL Status:Offline
Host: academiavirtual.ac.mz
Date added:2023-06-13 17:53:00 UTC
Last online:2023-06-15 16:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-06-13 17:55:38 UTC to abusepoc{at}afrinic[dot]net)
Takedown time:1 day, 22 hours, 6 minutes Poor (down since 2023-06-15 16:02:00 UTC)
Tags:BB32 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-06-15document_BE839_Jun_15.zipzip 67abadab929355ee0f267a68bb4fbfdb0d4a7483cd1c79569687b36b0c420637n/a Quakbot
2023-06-15document_FB759_Jun_15.zipzip 3dfeb6231162f5265209622dfa7d577e12cd351945ef90e96afb96f33f86aa23n/a Quakbot
2023-06-15ezHlsqn4Hd8GAw.jsjs 04d39445ae5ddfcc127a68d360ee175f8306de2c980c6ef4271ee8390a89693cn/a Quakbot
2023-06-15N1jx4XJnHuerw5.jsjs 1fa498be9b764433f2f9dec0214c7b63e8d633e4ed98cccfaeb9e605901e4f56n/a Quakbot
2023-06-15BRrKvdFlYuAM.jsjs c18d345c3bc268f9c89f4433de494633707ce8de6854d71ab91b93e234ce6209Virustotal results 0.00% Quakbot
2023-06-156bZozGOQViKFf.jsjs 272acee0c134459cd0f99cbfba3593a075d607fe2267924f5d1ca02243cec8a7n/a Quakbot
2023-06-14EPBGtib0HfKh.jsjs 244b3270205c272f0204cceb9b7b8a195eec646157e3b2571c28fea84329fbc4n/a 
2023-06-148aDplrlVkTp8nk.jsjs 6bde622b6b31617f03f66ff885132ba60d757a4d89ecbb1cf7b29260c205a954n/a Quakbot
2023-06-14aHZxy4iICjnvA.jsjs 0d077ac4bbed418af96cda6d82e86a80150ab2d06d93297efb5aec54e474e8cdn/a Quakbot
2023-06-14docu_ED627_Jun_14.zipzip a8fa341a4092c92e4dc493a747766e8726c2c92d4c7a894a7044040df441d369n/a Quakbot
2023-06-14hau7AToIbdSy.jsjs 062edfbf6d57086795b7bf9a676e1b132149f1671fb001b110186a73c1a911fcVirustotal results 1.85% Quakbot
2023-06-14s1NfTAmDebpj.jsjs 95457be8feee9346b40e59bdfbd3ca4865ab5ca6ea51e613caf6661fe9abd3daVirustotal results 0.00% Quakbot
2023-06-14binXc16M8S5V.jsjs e12e5b537b921372bfac86698f429a452e6640ff9713afb9e242d8918badac0fVirustotal results 1.69% 
2023-06-14JpUbz1c5K4kRGu.jsjs a75d4911f9135db8370de6b6904ba6d01523785d91f8c3469eb0d9f2654d1aa9Virustotal results 0.00% Quakbot
2023-06-14FqDIMAWYgKbB.jsjs 0662f2e0e377b02e676e6a5a82ab0992d5aa2dcf46a99213872c8370333b8f0bVirustotal results 15.52% Quakbot
2023-06-14NxBtyBpf8adSsM.jsjs acc87abca60c6b4010ae430b062bb07d5002072011c413fddd91f8bc55dbfd07Virustotal results 15.25% 
2023-06-14FmdlfRNledGNT5.jsjs 7f6436c40c2b2d104add09034d693f6871edd26b6798e272e5e4a3894ef5bc65Virustotal results 15.25% Quakbot
2023-06-14XJuc9g6CiRXIVm.jsjs f4d6d0cbb49030eaa5d641467d627325c68f6eb4bf43dbffba27d74fff101acaVirustotal results 0.00%
2023-06-142z0ZJYUzlA9f3.jsjs c8f0b1f2194bab090f59c0d0da75d754d49318b91d592ab56ea730b09590b888Virustotal results 15.25% Quakbot
2023-06-14v9r9uYCeoTe1.jsjs b4a8b583d41a21ff7972851dd6f0f38096101909cba59db3f204f0b9a19cf146Virustotal results 0.00% Quakbot
2023-06-14Z1bIYGxQcas5RI.jsjs 1b47d55fe6a8cf401ea08c28473c2c24938b7148b8e0e6e2970f56b9281451ddVirustotal results 0.00% Quakbot
2023-06-13lGdsJjpxkhFY1d.jsjs 94623dba99508c10b256941b3006589996c4d2acf099a8ddbc711f35e71bd56eVirustotal results 0.00% Quakbot
2023-06-13ja91Jyk1AdtMKs.jsjs 33cd588c4ebfa4a6ba76143306d7e61cda9250ddba43c215bd05c71dcbe42e3dn/a Quakbot
2023-06-13W1Ga4SZuuY982v.jsjs ff31f3f315d1b88637d95129cfff075d737e697766188d8b72a39a806058f069n/aQuakbot
2023-06-13uxRIFAgje21o.jsjs 8670dee51f9e9588f77e0da71d324085bd9f779001244b568f807e6e24782340n/a Quakbot
2023-06-13NlEyVR9lY1Wr.jsjs 759ddb59654de37cb3dcb7bd281a2e6ebd99d4b74987d6723dcd224db39dc879n/a Quakbot