URLhaus Database

You are currently viewing the URLhaus database entry for https://aestusco.com/onau/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2669063
URL: https://aestusco.com/onau/?1
URL Status:Offline
Host: aestusco.com
Date added:2023-06-22 06:46:15 UTC
Last online:2023-06-23 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-06-22 06:48:01 UTC to abuse{at}namecheaphosting[dot]com)
Takedown time:1 day, 14 hours, 43 minutes Poor (down since 2023-06-23 21:31:13 UTC)
Tags:BB33 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-06-23Tb.jsjs b779e4dd7070ba7b37946dfda1e1caf985ded3c03338d364dd0ac75046cba7d9Virustotal results 3.39% 
2023-06-23Oqdfr.jsjs be5c406f1206116dc548b8edd9772e47fe17aef15646dbf0558af6fc9e36f5f4Virustotal results 5.08% 
2023-06-23Poexa.jsjs 84612fed75eb5dff7f5f70d01731b7d2a6ed9786a33c3cfeb59cb4a13389e09eVirustotal results 22.03% 
2023-06-23Dpbu.jsjs 44e5353d334e4739a34189eef51400662e3e71707dab7520c627014be62e2f1bVirustotal results 5.17% 
2023-06-23Ox.jsjs b9ff187866bff03a912e30dd72943eb17ac38b9744c8aab6bd1b05c300354fc9Virustotal results 5.08% 
2023-06-23Aia.jsjs 70f8df476e92587bac21c518e33a363f26ec36efa154ea9b5236f43142592827Virustotal results 22.03% 
2023-06-23Qynfk.jsjs a52aaa68127a538ca9c8ef67ab0a3d1c2dbeb35f2670a81a6f60a2c731d080fbVirustotal results 23.73% 
2023-06-23St.jsjs 739c651bfe4ec21b5c5dc4c5744b4331be97ef339a6ef30afa221c9b49c6bcdcVirustotal results 6.78% 
2023-06-23Gne.jsjs bcab0f0faa898169648f064d7330c4d7ac65cc7c66d594b2704c6ccdeada463eVirustotal results 1.69% 
2023-06-23Gf.jsjs aeb755d3421c7028b847fa619f219205679bdd84fb60ad9827b1cf0cddee2919Virustotal results 1.69% 
2023-06-23Rmr.jsjs d5299a64b84312ccdf76f1a29e824d9da19bd8824d9ade306e6bea83c923154cVirustotal results 5.08% 
2023-06-23Svafe.jsjs 72f4440aca776325af0a506b70157142aea8f60c221a6cd15848bce5ec28ebd6Virustotal results 4.00% 
2023-06-23Pqcsb.jsjs 9f39786e4ac9030973b2b3090f55ccc143dbf529efbb16fb3298821220a9c8f1Virustotal results 3.39% 
2023-06-23Gtr.jsjs 19fae7a6293d9ddca3b849ec22f8fb5c794e0a0c1db2960a806545b07fdeb04aVirustotal results 1.69% 
2023-06-23Xew.jsjs d96d46c0b3f3387b2b3013e8baf96f2a6108b9a7af1ece6f5e9392a688d01218Virustotal results 6.78% 
2023-06-23Ysucp.jsjs 2e9bd35cfb4bd9c167f771b87d1c653f2856326d31343186e15cdf80069a0fbdVirustotal results 1.69% 
2023-06-23Lgdki.jsjs baa4f6737b3f8c4577cc24f671782a0642dbcd54c6001cd005a883ac2307a485Virustotal results 5.08% 
2023-06-23Uz.jsjs e7c065e52c5a69ae69a30d8881d1f3f5ab707eaa93572081e65e62140d10116fVirustotal results 22.03% 
2023-06-23Ala.jsjs cf3716d17ccdbc0e9386ba01ac4460ecfff21c17aaeca58aac2c0fbac9451511Virustotal results 5.08% 
2023-06-23Gyb.jsjs 7453d8ee043d61d9c4e0e33ef357f80a9c7bf4cf162de234e5d3f9c54f0a765cVirustotal results 1.69% 
2023-06-23Wjw.jsjs 185e08642b016ba1d77c1ea38f67d1d6db02c46a3de07981786d24ab8dbafda6Virustotal results 1.69% 
2023-06-23Ryt.jsjs cec51942a0291713fd142145608c589b9558ca4b36396306659cbfcfad18b3eeVirustotal results 1.69% 
2023-06-23Pgclk.jsjs 4b32afcf9f096c96ed9d73a9ab879bd48fb4e6e7c921a0f9da1b86fd55008df4Virustotal results 1.72% 
2023-06-23Isnlp.jsjs f72d8fe4fca0857452e37eae36ecd43ec8c98867d2c06249c514024c98aab638Virustotal results 5.08% 
2023-06-23Xo.jsjs 709d1f43f70a73fd3598249e0b8439f73dce3c99544d821953edb625f523a0afVirustotal results 0.00% 
2023-06-23Jskme.jsjs 814c93132e40a8c9d565149eba4a786df7f5e2d0399c400be3662c5512d9bb4bVirustotal results 30.51% 
2023-06-23Wr.jsjs f0c716b389bd53622e017eef1b7dad424c6d8a8ba4a45766d68a04a462b81104Virustotal results 1.69% 
2023-06-23Evpk.jsjs b5eeaadb95a58ebaad2aaae244c0ebd3f9ac5da15f48c688c263164be176c901Virustotal results 1.69% 
2023-06-23Yhz.jsjs 5f590be468919c9767d9272b78ad3ac8719bc1b8e1f56777ea2c09bbb0b2c100Virustotal results 1.69% 
2023-06-23Yknnq.jsjs cce44f19f8d4b05b1f745f64389becc362d48b4bcb7db1a5cd555306fd06fba3Virustotal results 1.69% 
2023-06-23Fuflb.jsjs 59ed9c6dd614d65ca706643e688a38b725a57d481c23e3dd4db577e9f552980eVirustotal results 5.08% 
2023-06-23Tkt.jsjs 19949a94d6c9a2bedf734286f55452449294a55c7e5cdf1cb455d70968871f40Virustotal results 3.39% 
2023-06-23Rz.jsjs 5dcf870eaa8abfa746bcbace006bff23378d15c689a25263c7965808d0eb5984Virustotal results 5.08% 
2023-06-23Fcs.jsjs 0b7ab61b3d1e84e6c2829d9fb171954f0cdc93e10a2de9943c431ee82a010286Virustotal results 3.39% 
2023-06-23Uhvg.jsjs 4740d956ec441f9e28860d762d4151b5b4bb24c4868cead154a83a6af50f58f8Virustotal results 5.08% 
2023-06-23Zyzyd.jsjs bc6bd57e127ce6e6dbe011a4cc4447c23b40e906df371ae973d2430ba8f858feVirustotal results 1.69% 
2023-06-22Nvseo.jsjs caccc3af6a81fb46a1f2f43192392436d2ae1c8236a7ee4770221e81e6f570bbVirustotal results 5.08% 
2023-06-22Pxsj.jsjs b7e858703b2419b930726cd98c6567ae323de829c3064ffc5f48970ca052fc2fVirustotal results 5.08% 
2023-06-22Vd.jsjs ad2756f577ba4e5bdf0068d8c9970afc2294df17a978361bdd161660c6feb309Virustotal results 1.69% 
2023-06-22Agjzt.jsjs 7e2e89db8715efe645a85392121e93c9b9f761bb675cda3465c269fb4c5a9978Virustotal results 1.69% 
2023-06-22Kqh.jsjs 51e22edf122e19af0f4755279773bc60854baac6cfa6b174af6fb79889a6a65bVirustotal results 1.69% 
2023-06-22Mu.jsjs d30e429e9a4e89851b0421596ac32209b65fa2175e68cbf90683fc76ec14affdVirustotal results 6.78% 
2023-06-22Pffhm.jsjs f5c3d7d7eeb696dcb9a3c961767d7853a709ea079f13ceaced48d72727f57687Virustotal results 1.69% 
2023-06-22Nywl.jsjs 1ea189f4c1a5f3337d42388d23a9bfdd8e00a00732fb4e6cb077244cff0fe146Virustotal results 1.69% 
2023-06-22Mhk.jsjs 6e3f10e676b70606d1e93188eae04682e3f2c6d7fc04e653d7e0135628637b7bVirustotal results 1.69% 
2023-06-22Qh.jsjs 00b5230850dd00e33860ec0adec0e6044fe309cb402d01c3514c4824c46f543fVirustotal results 1.72% 
2023-06-22Tnf.jsjs 01e5c596747ef3b9dd50a6e2b35e4c93fb797990999a8617ece39c27e3bb1b6dVirustotal results 5.08% 
2023-06-22Pf.jsjs 6c74b967cc4c8535cd30ef24af8ed1e310cd67650790f39780cf31fac22af8dfVirustotal results 3.45% 
2023-06-22Bthd.jsjs 55ba694bd9ff5b117160874258ea915b234aea346feb47d053025beccf7f149cVirustotal results 1.69% 
2023-06-22Ksbt.jsjs aa4b3c7599df6ba3be8fbedd0c69cbf77372af8a5dfc3ae186adf681602a98b7Virustotal results 5.08% 
2023-06-22Md.jsjs 96ba6489b3ca2291f1b8644e754bbff236786b2a1b2c2f21e91845468ba2eab7Virustotal results 5.08% 
2023-06-22Kpbb.jsjs 975812668f7442e495f90160219d3cdf9868bb0395c15604fcd7b18c16589446Virustotal results 3.45% 
2023-06-22Uw.jsjs 46caaa17c5063b62076970c6a7fe075d0be460f021bdd9ef611940182a6bb048Virustotal results 1.69% 
2023-06-22Lrb.jsjs f9d21c69f3e35374d4a4aae49b94a0bc3452b7f0e8cb70eae6a1f070ba75d1daVirustotal results 1.72% 
2023-06-22Bhyy.jsjs 9f1ef78b110e9b6bcc59a176afb05757e7438384d61884d3831b46404c3c5905Virustotal results 0.00% 
2023-06-22Swv.jsjs 22055e013894f664c675e871a69cbef7b18323ae15453d3185e1cc05d8ecb401Virustotal results 5.08% 
2023-06-22Yp.jsjs c5fdb15d780606a48bc4b19b81241e8240dc1d1ca6248d2ec53c05ec25d7987fVirustotal results 5.17% 
2023-06-22Ht.jsjs 84b89064de2f26481027a74ab4db297f0b4a04f128413ca08e1473ed7c423939Virustotal results 5.08% 
2023-06-22Kdhsn.jsjs d7d3280dc1a7e9e6d4eabfd2851ae30243a83b3dfb15a9c87fe467736507395eVirustotal results 27.12%Quakbot
2023-06-22Sh.jsjs 3192adfb489e09d8c68848d76602b76955b4aee0bd27be3f83380cc86501c717Virustotal results 1.69% 
2023-06-22Vu.jsjs 8098778f8e1134c30636576d246ad984b70083802ffdf8312ea473804e3ed662Virustotal results 1.82% 
2023-06-22Rmmau.jsjs 40b5f8c70fb10f643a5992466bacff3f38cd3e2bb2340120035815f7178c5bd3Virustotal results 5.08%