URLhaus Database

You are currently viewing the URLhaus database entry for https://dpclassicnews.com.ng/ru/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2660076
URL: https://dpclassicnews.com.ng/ru/
URL Status:Offline
Host: dpclassicnews.com.ng
Date added:2023-06-14 09:02:50 UTC
Last online:2023-06-15 11:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-06-14 10:56:05 UTC to abuse{at}whogohost[dot]com)
Takedown time:1 day, 0 hours, 47 minutes Poor (down since 2023-06-15 11:43:28 UTC)
Tags:BB32 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-06-155yzI4BCxXqbfDX.jsjs 2116642856a860811a1c50ae4e9b157326e560a413eb78eadbd5fa0fcecfad35Virustotal results 0.00% Quakbot
2023-06-15pMsg7LC6BHPc.jsjs cfbdb67c737d31e7a5007431784c5cfb5020bebf8477f0d56f8808a9fad4ed60Virustotal results 0.00% Quakbot
2023-06-15CcmD4UEm4W58RE.jsjs eff02f7320bdf1d2effc76da9f8143162b37e632459d366bcbed8863208cb4a3Virustotal results 0.00% Quakbot
2023-06-15Et6lTI95pIYYk.jsjs 61bbca2bbabd589e27651cdb081dabffd83f36c367dd9229e0415b61e5d098caVirustotal results 0.00% 
2023-06-14IzaL0IFZrEwYg.jsjs 9790d513364db22c7716d1eb6a94d38bbdfdd00777cd38f12622122cf7223da7Virustotal results 0.00% Quakbot
2023-06-14docu_EA031_Jun_14.zipzip 5a93432f24268c23355746b659efcf656801d9163f65c5c454f7da0198bf03b8n/a Quakbot
2023-06-14buwxkh6tcFh7iq.jsjs 1921a9b34e0f70f6cd73ef0a99e7dc401f82e4505e70dd373dadcb3252beb81eVirustotal results 0.00%Quakbot
2023-06-14wX8YzA3MEIgk5.jsjs a8fc21aa186eb51d6c4d2ffc36dd86d82ce67d009e4c8ff93221eabce48136f5Virustotal results 15.25% Quakbot