URLhaus Database

You are currently viewing the URLhaus database entry for https://afrodite.mg/lin/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2659498
URL: https://afrodite.mg/lin/
URL Status:Offline
Host: afrodite.mg
Date added:2023-06-13 18:39:10 UTC
Last online:2023-06-15 16:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-06-13 18:40:17 UTC to abuse-ripe{at}hosteur[dot]com)
Takedown time:1 day, 21 hours, 25 minutes Poor (down since 2023-06-15 16:05:18 UTC)
Tags:BB32 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-06-15document_AC719_Jun_15.zipzip d859081594a7c6af98527f03ed20ac8dc7f09f4fbb9165223a5c5ba69f2b5b09n/a Quakbot
2023-06-15document_DF548_Jun_15.zipzip e487d271057809728f96a45b14791d79fc8bee23614b06487f1ae019114901c5n/a Quakbot
2023-06-15cMV87gm93qpzdE.jsjs 6104932adfff6d73756c11c551cf6e18f4b108c4b1c966f72453a0eee24436b7Virustotal results 13.56% 
2023-06-15Lod75OrF4LmG.jsjs fafc2763294bda04da7f990b811999a9b893c8e6ecd7f458e0e80e569871a190Virustotal results 16.95% Quakbot
2023-06-151kxsaM18GjQAq.jsjs b88ea07274c02c746894fca87e6cab5854ef691f072671cb64e151707c418bddVirustotal results 17.24% Quakbot
2023-06-15HE9DytFNWMHgf.jsjs 325012415a7958eb55dc96271777af82614ea684d0e8b5b3ef634c0780c804d8Virustotal results 15.25% 
2023-06-15bRvOhT1wir2Ji.jsjs 79268da4a5ea7a22a84558e2f0d0b704ed1c08642585162aee8430ebffabc08dVirustotal results 3.39% Quakbot
2023-06-1463Cl2DsiJQeW.jsjs d6e0a2d40ea5d7bfb8608b620a9202d5d2693f71e9c8b21ee916d24752fa224aVirustotal results 0.00% Quakbot
2023-06-14OO64Oom1CBb0.jsjs 9e5a7f8231eda8e3a14cbf3b2146bd6b0d43679b61a0cc9a01a36ce30a197547n/a Quakbot
2023-06-14bowsVUIhXG6l2.jsjs b296d88723b0ed5eae18eb8544dd9a4422c5c9944e6a7f386f8768e8fb373e43Virustotal results 8.16% Quakbot
2023-06-147P3A1uXcoEOn.jsjs cec34314e80d9666121d8a98c843c3c0b95148b2a25ff8796701443bcbf90f0en/a Quakbot
2023-06-14LSN6mvp5DISVw.jsjs 011c46b580421e8680614d86ff33170e0eba2a8e1c98e6f2d87f779fa987ef3cVirustotal results 15.25% 
2023-06-14vDL6teN4VlbTYq.jsjs aaf94ddc2eb26c8160e8b0da2419b1d74b3e1528ff553e8db465403f595ed2d2Virustotal results 1.69% Quakbot
2023-06-14buwxkh6tcFh7iq.jsjs 1921a9b34e0f70f6cd73ef0a99e7dc401f82e4505e70dd373dadcb3252beb81eVirustotal results 0.00%Quakbot
2023-06-14W1Ga4SZuuY982v.jsjs ff31f3f315d1b88637d95129cfff075d737e697766188d8b72a39a806058f069Virustotal results 0.00%Quakbot
2023-06-14JuIKmXNHO3V2.jsjs adcae1d1fb482479d82631cc80ba134245ec8123c2e45d10c82639e058783e2fVirustotal results 0.00% Quakbot
2023-06-14LZJPLhTUOl0dZ.jsjs 5cd15a5947d6feb4ebe67137cdec8600bc585ff8c1343034bb040df86a0eb3c3Virustotal results 0.00% Quakbot
2023-06-14G0b66yOa9kD3v.jsjs b963868d82f7d86824006963e689109a63d9a98c5531e84a90bb2d25071b15e8Virustotal results 0.00% Quakbot
2023-06-14VZfL5g7DMW1dB.jsjs b0cb831be2fba7c1e18dc93eabf1349f35e31cc4121678cb52996e95b6cc8e79Virustotal results 0.00%Quakbot
2023-06-14sN77z2Vsi7NLO1.jsjs 2b757992953dc78a8cd94a4828cfc9b734dbcca978d5e59ee74bde198c9913ccVirustotal results 15.25% 
2023-06-136AmHaDXUqiaVGd.jsjs 4fd6d7196ec1f6ebb1db965e9686d97755ae593d149e9ea55c6187bc8b895e01n/a Quakbot
2023-06-13Pmp48RAtNdcvRK.jsjs b0234d241c2e2947f7b6e107c8a00868e98cfa15f4dc4cb91dcba8122c3520cbVirustotal results 15.25% 
2023-06-13ViRptsxg5xeV.jsjs 04b3c1ed5a507084fcb18a2f03ae35b8fb2fea012117103072deafe37285e520n/a Quakbot
2023-06-139H41PQ0U6tJZP.jsjs 0bb3a8ce8febe836b6c0be4b0a1548ce1f0d2035ef37538493e65c5562c2aac1Virustotal results 15.25% Quakbot
2023-06-133wGX03nKPreYM.jsjs 2189fc7d4919821aa3397ee92a9388a0c68cb5e9609bb6e5bba88da219126306Virustotal results 15.25% Quakbot
2023-06-13HY3IpdZj7TXhkE.jsjs d5f421958a886120250e24c76c85bb73298c77778130eeb5b72341566f98bdd0Virustotal results 0.00% Quakbot