URLhaus Database

You are currently viewing the URLhaus database entry for https://singulartrip.com.br/tq/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2667285
URL: https://singulartrip.com.br/tq/?1
URL Status:Offline
Host: singulartrip.com.br
Date added:2023-06-20 11:49:01 UTC
Last online:2023-06-22 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-06-21 12:07:06 UTC to abuse{at}hostgator[dot]com)
Takedown time:1 day, 9 hours, 0 minutes Poor (down since 2023-06-22 21:07:08 UTC)
Tags:BB33 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-06-22Dew.jsjs f6fa7d0cf41639c2b4a83ed67df458a1c28448e78bb4842b0185f06d572835e6Virustotal results 5.08% 
2023-06-22Tcqhl.jsjs 7d326c3ab00b26b1d48b8d4af53f22caac7c19c7359f45697ba0f7df9a72d819Virustotal results 13.56% 
2023-06-22Fvyz.jsjs 400dd51a3329eb12e37ec0fadd2191ec2489efbab8b97846a4ddc2c325d7a255Virustotal results 5.08% 
2023-06-22Dcymn.jsjs f9d21c69f3e35374d4a4aae49b94a0bc3452b7f0e8cb70eae6a1f070ba75d1daVirustotal results 1.72% 
2023-06-22Hf.jsjs c7ce998d0e4285f31fba5de0760107056b7e07b9dda90299bd209c5ff5617c1dVirustotal results 5.08% 
2023-06-22Il.jsjs e69ed21d343481cd4a7f93b4140fe27fafc44c7de8f3000b2f3fbc027042a431Virustotal results 1.69% 
2023-06-22Gbc.jsjs b2cd66c82679032b963aa8fca53e04d8133811f607a189b32c8c4a396e4a1ff5Virustotal results 6.78% 
2023-06-22Gls.jsjs 33f58efd6e6c7bd7f292121837f67372e40e9011b5b4159d08a40de6ac5db847Virustotal results 1.69% 
2023-06-22Yv.jsjs 365030c8cd4bfad4a1e04f765b89b15e6dd45d891d855c9d562c693b55f606b9Virustotal results 3.39% 
2023-06-22Wd.jsjs 2db43e6ec1360761e740197cf2cf9ff8222f7110813cd12ede8a9cfd00ca2eddVirustotal results 3.39% 
2023-06-22Lrexl.jsjs 1471e292c0f0516a01c32a06ae100381688696d538822eaabceac5ba1ee5855fVirustotal results 1.69% 
2023-06-22Ljpp.jsjs 6e8d75b5e2f746fbe6e67c8054a220bd2d202a565af258be18bca665d1f56dd4Virustotal results 3.39% 
2023-06-22Nddap.jsjs 2381748da2577cf6cb916b8a11c34e82f35b7091122bf85695496031111bfe8bVirustotal results 5.45% 
2023-06-22Sk.jsjs c652a92c11e2e4b2f0dc2d5276f1f714280eadef81cfab4cbd617718dc205922Virustotal results 1.69% 
2023-06-22Ycook.jsjs 9eade21e51bdcfb8e067531a7336e4f88d6046556f2502a4b24c275e16bf42fcVirustotal results 5.08% 
2023-06-22Fl.jsjs d7d3280dc1a7e9e6d4eabfd2851ae30243a83b3dfb15a9c87fe467736507395eVirustotal results 27.12%Quakbot
2023-06-22Utb.jsjs 70f8df476e92587bac21c518e33a363f26ec36efa154ea9b5236f43142592827Virustotal results 1.69% 
2023-06-22Ybiyv.jsjs 31122b31a8281e89ea52f25f2ceac5a5b8d1e9e58746ab1bdaf3bc33353a1ed2n/a 
2023-06-22Qzyrq.jsjs c3bf2ca06c7f1d2b93e495869a9a427691bbe3636de2cc4169c6e8e23a4354ddVirustotal results 5.08% 
2023-06-22Ttmey.jsjs 0b4f5ed9115817e9a7ca87199b516622ee46abc065b70cc9ff53124e7c50ea5fVirustotal results 3.39% 
2023-06-22Ut.jsjs f38d7a98cdbfd69050a5652528e452e12db76830cc2c751d182a9088b2493ab3Virustotal results 1.82% 
2023-06-22Pkwt.jsjs 6745d3b40608f8d2769851da8fb7298c03a43939b990ed3df56db4b8023dc558n/a 
2023-06-21Avxb.jsjs cfde224a5bbd3d7a826f16a13813ba5ba7150fb71338c70c9cd4fbd60f151d8fVirustotal results 1.72% 
2023-06-21Mqan.jsjs d2346519a6ef3fcdbc1c60470a6006067f4f039ec0b7d370e4619245a9e54c0cn/a