URLhaus Database

You are currently viewing the URLhaus database entry for https://divinggacor.xyz/de/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2660012
URL: https://divinggacor.xyz/de/
URL Status:Offline
Host: divinggacor.xyz
Date added:2023-06-14 09:02:17 UTC
Last online:2023-06-15 16:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-06-14 09:04:04 UTC to abuse{at}namecheaphosting[dot]com)
Takedown time:1 day, 7 hours, 22 minutes Poor (down since 2023-06-15 16:26:20 UTC)
Tags:BB32 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-06-15document_FE741_Jun_15.zipzip 29fbd66e229730df0582fe50970ff91b368ad418205ef99988fc8b4d40b0cc73Virustotal results 6.45% Quakbot
2023-06-15document_AB485_Jun_15.zipzip 4971fe4eb9041c1f1160164b7cfb8ac0d30bd3ae0844f8656d7f2d172071a321n/a Quakbot
2023-06-15JhSjg6izcZgo.jsjs 92987f68f94dca67396d6987e81490ce0b0f603e8ec8ee61d9653ac11895e399Virustotal results 15.09% Quakbot
2023-06-15DNbDmr6NzuNk.jsjs 83b1e73241dcb060f3397a63143ea2f10687b44241beac3971a6c99b40bcb5c8n/a Quakbot
2023-06-15II30cBZ6tLkO.jsjs 809d7a5a3c6cd7bbce02fcc0970fd90e1aeee00478a4127c57d3b3ed7673afe7Virustotal results 3.39% Quakbot
2023-06-15XpMKk20YvvE7.jsjs 0bb8740b86bca34586dd940d297eace0fc4608080732a846a702246d458512e0Virustotal results 0.00% Quakbot
2023-06-14JGpKH9sbvw1b.jsjs 8ad2e86d2f5888fbcdc73fde481563c01410646f92efa3b72e927515af9217den/a Quakbot
2023-06-14akJx13withYG.jsjs 1de07f1ffad1a424220dfc5839bfdc1e224a87bd3fd63db9d0e3994dadc8e58en/a Quakbot
2023-06-142Hvx7AlbgVoD.jsjs a3ce9146f2fd9da2bd6cb4eb067f0c7ba9e75455090184d3bccdba8b7c567e02n/a Quakbot
2023-06-14docu_ED627_Jun_14.zipzip a8fa341a4092c92e4dc493a747766e8726c2c92d4c7a894a7044040df441d369n/a Quakbot
2023-06-14vASIJDHN0xbS.jsjs 6e68ba473d14899006b97362c0d8ceb9c8443e93b7ed48bec6fc1ad0f3302448Virustotal results 0.00% Quakbot
2023-06-14UQ46xmObp5dJgS.jsjs 9188f52e0786097d39407a4a95da624c737a2482bf2c891f9082d21e61f2e5eaVirustotal results 15.25%Quakbot