URLhaus Database

You are currently viewing the URLhaus database entry for https://ar-albania.com/oao/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2628483
URL: https://ar-albania.com/oao/
URL Status:Offline
Host: ar-albania.com
Date added:2023-05-10 15:08:21 UTC
Last online:2023-05-12 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-10 15:10:07 UTC to abuse{at}cloudflare[dot]com)
Takedown time:2 days, 6 hours, 41 minutes Poor (down since 2023-05-12 21:51:43 UTC)
Tags:BB27 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-12Cmin.jsjs 6137a0fe99635103773d6ea41262b9f88ff3ff814fc51c409168bf53f39c3becn/a Quakbot
2023-05-12Lztvsdxm.jsjs e85a44257e10b2fac0175d9ea6b77dae0bcfee2022d45f361d13308d8d369316n/a Quakbot
2023-05-12Mxlro.jsjs dfaebd7d27eb4ccddc5d0f7c5eb2e158cedebdb96b5668ee55dfd6aad78f4c16n/a Quakbot
2023-05-12Zthsu.jsjs 9b46caaa42657b4b299c566ea28304e982e7c71ec6295f5393ec1efdcb48e76bn/a Quakbot
2023-05-12Ankauyqm.jsjs 38914ab809a151457b1560db58d0ea68a07968aea8de8d748904f1d109ee1536n/a Quakbot
2023-05-12Rcigr.jsjs dc21275d435203c49005ca7d2c00c267ed53e8a9fac88e9c7044483309ea14b0n/a Quakbot
2023-05-12Nekgvfeo.jsjs b72f61af07d4066ce27f3b43a581802db9a2f12acd061929631f69bee05c9e4an/a 
2023-05-12Ncxpgmc.jsjs c9e85f0b0ab64e06343dc6f48d3c177e455a1b9869aed6d9c0596b60cd51ee21n/a Quakbot
2023-05-12Hxoft.jsjs 9a0b79f92c8e56eb79c5ba88e3d5bad2640d42ad9346af73bd1a3086e3118effn/a Quakbot
2023-05-12Bslhoc.jsjs 618800136b0afed40106b7b6b1d54aae665bffca60f7872ad3a454a49bf3ef79n/a 
2023-05-12Qvqvzogp.jsjs 759e89f664c080d48e5ff38ceda20b52b56e8d6489f05d598a7ead4f319d94a9n/a Quakbot
2023-05-12Nloi.jsjs 6bf208ff707e969541c6651ba4dd4f9e91cf99b3625710e35a86f30358483656n/a Quakbot
2023-05-11Rtgvtht.jsjs 9e41ae328468a3fe7e27065890525e69bdd529c8b64328c24a41f1536b0e9359n/a Quakbot
2023-05-11Yrxw.jsjs 369b159a0cb9d9c6a5c9fe1d2fd93fe986c00b02a6473ca10dd9d25dbd296982n/a Quakbot
2023-05-11Yiwkbyy.jsjs ca44d96b7d0cb93fb62343064942db428a1db93292ae68a8066f68c78f97aa1an/a Quakbot
2023-05-11Mvggf.jsjs 62ba820a6931bef87baf69af037f18b25ed8ab96846db35deeef34dc96cd8bd8n/a Quakbot
2023-05-11Ywwp.jsjs 861e95fb3b55df2902ead7ed18f954aa768f3e184b6ac65ec5ce016a4d228aben/a Quakbot
2023-05-11Duwatr.jsjs fcbb8234df4a9759e278a14e47b96fe95825d8a55be2daec17ff180e92bbc38en/a 
2023-05-11Amcg.jsjs 0ba3bfcd1da73fc460d7703224fc7e72575c39b9bbd2848ff52b2d4fc0aa7b8dn/a Quakbot
2023-05-11Vdnhm.jsjs 16ef21084ce5b909f99fc3389d75b2cf23233a294de03f373e515e089a660d9cn/a Quakbot
2023-05-11Eutpq.jsjs 207497a1a1d5d98fcc586846b6fea8eda430d50b4c0ed6084f3f62bea9533dfdn/a Quakbot
2023-05-11Dbxacxe.jsjs 3c27bbc32096dcf0adb3f557b8c4b8ac317cf238a0c3fbd62354eee7a549b1e9n/a Quakbot
2023-05-11Hllxv.jsjs b681fa326d608fcd31d6b856ee9900d38c1dae3c7e44be88e83f730760f575a4n/a Quakbot
2023-05-11Dfgyoj.jsjs 1d7303617c3a8c5874c3939ce00cbb14773789e567771baf2fb4a2834d0c2f9dn/a Quakbot
2023-05-11Uxocqwbi.jsjs 07323f53d0519efd37677f42c9c67074ba8ceb1ad92292953755ecb447df4e37n/a Quakbot
2023-05-10Dunxwlgz.jsjs 503b4ad54950def6273254937abd323051590f061b5fae985ddd44f2b27f954cn/a Quakbot
2023-05-10Boyt.jsjs 68676ed8e7427d691889d920f0cfdc3f196264c177420411f350c4eb9073970en/a Quakbot
2023-05-10Lrgxqhc.jsjs 266cc1950b881bc8072469e84c4c390a955181dcf856030f6ba889d7914a7e90n/a Quakbot
2023-05-10Pkydamc.jsjs 3c00e51aff1af16a65b3e2399ba2188192520b177248523282d9efdd65639a6dn/a Quakbot
2023-05-10Tpqkopf.jsjs f00a34bcc0499c77e78d2ead9790db85e20f4252786b0489754956e7b561439dn/a Quakbot
2023-05-10Masbc.jsjs a32149092a66fbf35ba4a31d773bfd2abe75c49450d633de26ee8c5da444cea6n/a 
2023-05-10Bfsxul.jsjs 73ceb3c4134a81429d6a882d5193d13f3279d64dc4cb6f14d761b3de6200c519n/a Quakbot