URLhaus Database

You are currently viewing the URLhaus database entry for https://ghadmoshrek.com/tr/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2628651
URL: https://ghadmoshrek.com/tr/
URL Status:Offline
Host: ghadmoshrek.com
Date added:2023-05-10 15:37:13 UTC
Last online:2023-05-12 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-10 15:38:47 UTC to abuse{at}cloudflare[dot]com)
Takedown time:2 days, 6 hours, 1 minutes Poor (down since 2023-05-12 21:40:19 UTC)
Tags:BB27 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-12Qukoxb.jsjs b1b5b6c908445568bd8cfe837c5b5ccc6d94c86cebbdce0e181f72a4f7a1a164n/a Quakbot
2023-05-12Gohruxz.jsjs c830f8503ee592d9c2a3b402c670fc38ee2d406c76c3e017b3af8e7047eb7348n/a Quakbot
2023-05-12Kbkrpl.jsjs dfa97efb5313d3d8141d50362b5ec9de2ec9fc1a2d7fe6c989c328546239311fn/a Quakbot
2023-05-12Zrkm.jsjs c4ba855b59432e23f40dd4c2b5550a42530c78169f35936badc3b61b41176153n/a Quakbot
2023-05-12Rpiu.jsjs 6edee333d05c31fa89ebb4edffa53b6db3f8e6131bd6d7b939bb712d0c331e75n/a Quakbot
2023-05-12Rwtp.jsjs 1579b337d11849fe3f42396bcd361080ad2818cdf19d63c87dfa4b59e51be436n/a Quakbot
2023-05-12Bdievozi.jsjs 0a87e55e01f42e8cf75d3bc27e7f56a3f4d1defa91532e272a9fa9151d670032n/a Quakbot
2023-05-12Almpbkv.jsjs ec5a96db4512cd05d6a4f441157fe807a099286c6133ebf26ccac20792ad1614n/a Quakbot
2023-05-12Jhacwtsy.jsjs 85a825afeb86b2c35d9ca2b13b5af6515266c76259f4322a5c4439e02656c434n/a Quakbot
2023-05-12Jotoqrb.jsjs 7e4776a885d153739d0801b086133e674153ee20f5d5b0a5648a0555c5e39440n/a Quakbot
2023-05-12Abxipph.jsjs a88d02bc4f7f3c4861c59a370be0f097bb5f5507146f776e71d7126477571531n/a Quakbot
2023-05-12Mnohjtpj.jsjs 138437d42290bf7b10c516dd392edb8e80986dc16b83ed6df58d9a4d576b3f61n/a Quakbot
2023-05-11Ylvs.jsjs edc285cf5a02b7274fcfda6ceb35fdc6316d6130f8b581eb63bfadc087563f9an/a Quakbot
2023-05-11Onpy.jsjs e57764c87d72dd70a3ce1556ee397508db9b2bf77da74f6ee96a0bed8942f323n/a Quakbot
2023-05-11Uaezaq.jsjs 1675da21a00bd768c46e2a21817efe2384b08db837fcdea19a19b9aded124823n/a Quakbot
2023-05-11Mswal.jsjs dfbcf9dd7643b3f01d4d15ea13f500cbc076c2d8067d9488c233725de2ede64cn/a Quakbot
2023-05-11Eenlvbtv.jsjs 8dd294f9db4d2e00924cff4b8e4fcfe982f8ff6b5392bdf6ccd3b1ce4a1b3cb9n/a Quakbot
2023-05-11Fuugrlxm.jsjs df2c83ddc363d3a2ca5195d307e6040ccba8d7cd9e03328a9a8e01f454b92150n/a Quakbot
2023-05-11Juiyzxes.jsjs a2eb28aa9886c5eabc42aa41a43ba84e7a63deef7faf9a062e8b0fbe39264cbcn/a Quakbot
2023-05-11Chfs.jsjs 93d06dbd070ac6c9552688788e6052c17b1bb3639998833cd11e838bab804b8dn/a Quakbot
2023-05-11Haqtdttn.jsjs 4025047cff292b4f5a6d299fc7095ddaa05c0352efbc8c7cf14d67cec9489378n/a 
2023-05-11Omap.jsjs c500cffdf4769db17a9e7a9709c7871cffb7fd24c7b3471fe33ee17853405416n/a Quakbot
2023-05-11Zgqwxyf.jsjs d3f15ba771ddb4ded4ddc0148d7bbeb492566d5cd95be04e35939624ba028cabn/a Quakbot
2023-05-11Nlwt.jsjs 303c7ee3a01280cc39cbf238d5e00a4936c26d5e233e4e2f5c1a367bf828f2c6n/a Quakbot
2023-05-11Axvfp.jsjs af3e8c46cd4cb88eacd64e887e5f1b22503ae5564f2e8a3dff5adc9a0811f451n/a Quakbot
2023-05-11Nhbhdvqq.jsjs ac6b293ae9f2736d69f7ca6f6ab9fbb1a055c50390bc02ab5567e8cf695a4b1dn/a Quakbot
2023-05-11Jmxt.jsjs 737c7ac7615bdab3c340b1fbea7cd05096625fe0c5714f6025c7cf703c23a37dn/a Quakbot
2023-05-10Xelmu.jsjs f92faa75f226b0ffcc3f9c02f68a407dbdf842d2f5223e7bb94aa913a206f077n/a Quakbot
2023-05-10Mguk.jsjs 6d46c2c5009f8c60085e71b7e6c7a756810275d80900aad8865c3b172f8275c4n/a Quakbot
2023-05-10Wuukcd.jsjs c20db7ac04e121adba57ff5e430398d396ab2642358a6735aa151d723c4b20bdn/a 
2023-05-10Uuhcs.jsjs 02c4e5349e25a760d8586fe037aa09ec7190a0899f0e130151d22209533ae8cbn/a Quakbot
2023-05-10Uskgg.jsjs c736276f9f6cfcca7dcf2faa1b21c5c9ca2dfd2bc3c2dc86de27dd412cbbe295n/a Quakbot
2023-05-10Rfqic.jsjs 633bf5d7a4174ca669645e4428531cc87fe3400a14087017102c97cf81e404e6n/a