URLhaus Database

You are currently viewing the URLhaus database entry for https://altaknyia.com/buo/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2628688
URL: https://altaknyia.com/buo/
URL Status:Offline
Host: altaknyia.com
Date added:2023-05-10 15:37:23 UTC
Last online:2023-05-11 12:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?):mail Yes (Ticket DCU100113341 created on 2023-05-10 15:38:14 UTC)
Takedown time:20 hours, 25 minutes Good (down since 2023-05-11 12:03:29 UTC)
Tags:BB27 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-11Rvxpwucg.jsjs 21c231b6234abb6a24fa83596f31f8d61f66d3ed8427e4a550a975edcf118eadn/a Quakbot
2023-05-11Mmfcpd.jsjs e096adabcc704aa2e2bb0abbbc239b9c765b50beeb6f245888e42c16a4a37a8an/a 
2023-05-11Fltmma.jsjs a8025311ae3c8d9aed5f7d7d37e24080e91d60abdee7bf1e6a42e7205f2f05c8n/a Quakbot
2023-05-11Ywezjlz.jsjs f8db752a8d781304452b43691d036caf27d458d8c727a2e7945841c18a9c0b26n/a Quakbot
2023-05-11Rqnguzzx.jsjs c584db2f73285e5725aec8cdd4bbcc18f4006e25e8c81d8e67b68e14b784f8f9n/a Quakbot
2023-05-11Qdpc.jsjs 41f330ac9b6ccc9407b6e02b1cdd5927082cf6a15ed1b7f680cc1c8c053d0d3fn/a 
2023-05-11Inxs.jsjs fb120433f2d133b210eb622def04b7d33a41309647ec15b9f3ea8c5e7fa1b4d7n/a Quakbot
2023-05-10Ipewuuui.jsjs 7e62c6fe85b36f4ba7d02f122ece6c36a0e18f0cfbb849234bb0abc2aadc5154n/a Quakbot
2023-05-10Rqfdhd.jsjs 888267492abfd8e6345d62803d12ec785a210fa32ab5c71ec9f17c34cf455439n/a Quakbot
2023-05-10Xxjulno.jsjs 9926cb0c5f4b8a870a2e12578927023bf70875beb41cef665f4f69a276e3fbd7n/a 
2023-05-10Oapvczwa.jsjs 81117eb9945f2533911850bd8bc98b7db96fdb98faea6e552abbead327a9278dn/a Quakbot
2023-05-10Maqnz.jsjs 3624a40e40e7de950ac0fcf3232499a26eac9850bc9b1585236a0b26b8ae7fd4n/a Quakbot
2023-05-10Urxigo.jsjs 713c9def1b41b6891ae7a9e2c74fc0f626e97e6d98322787386cf12e97b5308bn/a Quakbot