URLhaus Database

You are currently viewing the URLhaus database entry for https://lesdeuxpalmiers.com/tum/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2629772
URL: https://lesdeuxpalmiers.com/tum/
URL Status:Offline
Host: lesdeuxpalmiers.com
Date added:2023-05-11 11:58:27 UTC
Last online:2023-05-13 22:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-11 12:00:47 UTC to abuse{at}godaddy[dot]com)
Takedown time:2 days, 10 hours, 45 minutes Poor (down since 2023-05-13 22:46:30 UTC)
Tags:BB27 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-13Ggasc.jsjs 9963742a9e0dad4b163fe7e296db54b371251398d26719c2cde54f9a85a83c5bn/a Quakbot
2023-05-13Pxqjfvl.jsjs cf961d558395ae8a087c2ad754f529ddc5ce4c89546f115e77785bf0dc938280n/a Quakbot
2023-05-13Tkxff.jsjs b8db8a0fa9a7eb96c985dd7caaf9ec60e593c6157ee7af0c37716d6ea0eeabd9n/a Quakbot
2023-05-13Lllmvdfr.jsjs 628fe578066bbb41b2b96e2ecedd759a88ac4d893a8ac5d8d66ea688f3c30a6dn/a Quakbot
2023-05-13Ouunbw.jsjs cb74151b063a27629ce52c5bcb7fcb5cfd1c87e8358a4dcf56abb79973922542n/a Quakbot
2023-05-13Ceqdv.jsjs 87c4efaffe192f0746c432bd9c58da2a6975a4b55925b18fb42fa8b66fcf05dfn/a 
2023-05-13Oknxbn.jsjs b9a283074f14ced149b8eef935c7a8fa4c54facfa76c067e3d6be080b1b4a275n/a Quakbot
2023-05-13Ymlqmke.jsjs 04e798a3113fd99dbfe71280aa29f26bb1cfa9e0f8ee8a67fd29113b4495df77n/a Quakbot
2023-05-13Eooxnu.jsjs 3b753131952a13d172715db295b25e56bca51041ce6f7327a1c38d9833890deen/a Quakbot
2023-05-13Sgtzl.jsjs 741667cd72cc540d42aa8d58610e6b20043bdeba01c4f04d437bdec767cf4a26n/a Quakbot
2023-05-13Rmxrqft.jsjs 08ff2a77482da28f27d3e33238657490afb87af2522cb01fe1a0dee62745c255n/a Quakbot
2023-05-13Yrwwlqa.jsjs 4a413a91ca937d8c4c74e656118cf280543e500b00bbf265f40660fcc12e147bn/a 
2023-05-13Ruot.jsjs 42947af0c46af83205c23cc10197d726eab266ba463a7611e73a43a1e1068fb8n/a Quakbot
2023-05-12Arevhby.jsjs 9433e6c85bc790a9d97ed4b0aa27796f08983e75c5e74fca8f43e49a02988130n/a 
2023-05-12Pcot.jsjs fa0ad9ed76bfa854143d46803ab3f3528d5e78b62ac8f7c3b952948048c7eaa2n/a Quakbot
2023-05-12Twztjnxn.jsjs 58385c4ea0d7e2429292c13acdf20e8cc2bb1804ea4f1a46de4622e3db7f6c57n/a 
2023-05-12Uzwygqv.jsjs d8adb602ac1e54c978d7f1b61b7b6fa29d92e52171aed287956a23209cc198c3n/a Quakbot
2023-05-12Aqfo.jsjs e406e4e31ad8bc09be61bb370eb572215cce2af1c88b1ddb3f345b1875c6372fn/a Quakbot
2023-05-12Oeufkae.jsjs 1260a72177421dbb5b16c88ddf52b8a72f5cc8ef89d6b81b720539fc1fe51dd3n/a Quakbot
2023-05-12Fzkqppyu.jsjs d7f215548a1bed71fc2de45871e32e2598f7018f3e279167dc81c19179975552n/a Quakbot
2023-05-12Gauuf.jsjs 530d9dbc96f88b9c445e77024b94a994c145fe93045eeeec75aaad3c5aed1fa8n/a 
2023-05-12Wycweiex.jsjs 277d127dcd6d725637154f6f6ec273963be584644394b9e88a4d7c39adcc2d47n/a Quakbot
2023-05-12Dlhbld.jsjs 4bec44bff1877f1b3328069005c0aab6ca0d969cd6868bf98c6801d2a0b992c0n/a Quakbot
2023-05-12Momyvkv.jsjs 457ca6c9f831f123f1660f7b53920af8a9bb00b559a02198d6ac126743030feen/a Quakbot
2023-05-12Eekelwxm.jsjs d7024f3655ea300d416c97ff83cb0ad8854e655f0eee067a03f2491642eea421n/a 
2023-05-12Uwlt.jsjs e2083760d5c973b4a38cd8005f59dc45aaae096194ba5169dc2ee66f8a096c17n/a Quakbot
2023-05-12Dnsrh.jsjs 250dfeb08be51eba6baddecdfba1fd6be0ec4f0fac83f79edaac1badfbdc4e0bn/a Quakbot
2023-05-12Wqvnp.jsjs 5206689288e88c436060a4061f162e345037c3ff87047bb16209a75cc98f6fa5n/a Quakbot
2023-05-12Kmsg.jsjs d88be4e4d678d59b012d3e5e045e7f2b570b4a05537d7da0c6533ec4d3ca2444n/a Quakbot
2023-05-11Nozeswv.jsjs 748c833718a6bfb3d0d145977436ca2a311318fa7bc1be951e3a8c26f87a1f91n/a Quakbot
2023-05-11Immus.jsjs 96b5d8df7e752308787ee56386e1d40937bbaa210be89414a6756c5b2634fd7bn/a Quakbot
2023-05-11Tyfwbhky.jsjs c546d6e81a214f8a896569782df437ec350dd864ea966d3d30c0d82a69280c56n/a Quakbot
2023-05-11Bwirphha.jsjs cfe641919096ce42c9c62047061fc623ad3fa45b14b2211493551929eedb9cf0n/a Quakbot
2023-05-11Rdgcrlyv.jsjs 017fd2060162ffc0bb8cab74524bdec78105e27222dc48e76a72af7143db6a9bn/a Quakbot
2023-05-11Jwfugwer.jsjs 9af6514274794b0894b30d74f4e94827cf2600cec8205b33a002f26eb5a8818en/a