URLhaus Database

You are currently viewing the URLhaus database entry for https://dpgmayorista.cl/onis/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2660015
URL: https://dpgmayorista.cl/onis/
URL Status:Offline
Host: dpgmayorista.cl
Date added:2023-06-14 09:02:17 UTC
Last online:2023-06-15 17:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-06-14 09:04:08 UTC to cmunoz{at}databytechile[dot]com)
Takedown time:1 day, 8 hours, 28 minutes Poor (down since 2023-06-15 17:33:01 UTC)
Tags:BB32 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-06-15document_AE637_Jun_15.zipzip 68024f3a0f3327957b823c3de9415207804e77b731c69632a7b0bdc1905addbbVirustotal results 6.45% Quakbot
2023-06-15document_AD182_Jun_15.zipzip da60db983ff2ecc93c729e80a2753fc2792aa350fe35a2a9dd60d97757624211Virustotal results 6.45% Quakbot
2023-06-15ldg1S57I1OLH.jsjs bb2c55099f6f89275e6e1704207220375d41d62afabdc87ec2cb06a7dc2623d7Virustotal results 15.52% Quakbot
2023-06-1528wQdDXVJoC49O.jsjs 6d706abba5d5cc9e43d8580b5eaec131094c53d3de6b5e137e2dfb4cbf5f5bbfn/a 
2023-06-156zqG5RAi7Pra.jsjs 19a52c956de62318dd680694862f331ca160f2709f834d7b61352208a6e9e983n/a Quakbot
2023-06-159aerxl4rV9p1s.jsjs 25b6b090ade8292b494a725c441a1e13c9c9c9331135f5e07ecff18f36069bc6n/a Quakbot
2023-06-15sp2JUomOFwa8Y9.jsjs 09049aea2937d2ba01855e6c921eaa8c032beaee09e8eca4ee1f0b77ea7c03adn/a Quakbot
2023-06-153dj5Uz1mdEZw6.jsjs a650d434832bdb65d710d0a91b4570dd5a466221db9970a26059558ca234170dn/a Quakbot
2023-06-15AGh22H0F74X2CQ.jsjs 9610ae56180c42a15ef2b2795ddc9ca68ab8f7cd1077ac626b5c062557293454Virustotal results 0.00% Quakbot
2023-06-146nkooz3iTJmIM.jsjs f63d581c53eec83f5001d1d64be841bd6e16c239de79d317801969a7fb824110n/a Quakbot
2023-06-143hhcSkfu8hAcJ.jsjs f2ef2c16c1cd4757e51a53b06ddee0df90fe5148c05bf6358ad0ad1e30d383d2n/a Quakbot
2023-06-14docu_CB260_Jun_14.zipzip d5042b283db69d3e3dc67c956c9b2d35346d3f3073557fd854f82930514917f9n/a Quakbot
2023-06-14LJkb4R9DC4nCdi.jsjs ec4d518f7c858f290ff5ffa938d22da0bc0955f86782578ce4e92c8526e019d7Virustotal results 0.00% Quakbot
2023-06-14SQpYg9aMcNQvc.jsjs e918e17a0a639c0f284a76059249a8398b71eb09bb54e4409fe6ae526a332431Virustotal results 0.00%Quakbot