URLhaus Database

You are currently viewing the URLhaus database entry for https://holypsychic.com/ur/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2629849
URL: https://holypsychic.com/ur/
URL Status:Offline
Host: holypsychic.com
Date added:2023-05-11 11:58:48 UTC
Last online:2023-05-13 22:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?):mail Yes (Ticket DCU100113944 created on 2023-05-11 11:59:23 UTC)
Takedown time:2 days, 10 hours, 31 minutes Poor (down since 2023-05-13 22:31:21 UTC)
Tags:BB27 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-13Agqtrw.jsjs bc45e1e424d88013dad76e21ec00a3d3c3bd20f0337974b8ce9b8af847e7d7c1n/a Quakbot
2023-05-13Rhqpwyy.jsjs 423bbb83f24ec26b39d2d406a0f708b2abe26bfd85792695d11422f2750cf1d1n/a Quakbot
2023-05-13Yytehanf.jsjs 142030dfd4414a01e33da9f23c41c06add2ade0b7837d8c14026c7c9cb2ed4fbn/a Quakbot
2023-05-13Fhaoym.jsjs f3e2fe5caa6e2f6be023af5ef048c2953c3d1d68490644cffc9ebaa078c63bd6n/a Quakbot
2023-05-13Pxfm.jsjs 2505f286d670d295939ae42a4f7ed9a492f15069d16a8071b5c703c7b76d190fn/a Quakbot
2023-05-13Quhh.jsjs 19525c3128b1a7025d10a61e857460298ec223d43902944a1f3c730265e876c3n/a Quakbot
2023-05-13Kcswsk.jsjs 13aa9f3eb719e02f636059d81c4b2ce5b7865b52110b5d5465306eab3b991f45n/a Quakbot
2023-05-13Diaii.jsjs f1cace66fc10d7e361a7fa06694ea5e221453c0ea91b0443e962775b75ae48efn/a Quakbot
2023-05-13Zxkvyxt.jsjs 80afb3dea9b386659d91f1724e1a942ce08acf0046408ada3e4610ca5e051f49n/a Quakbot
2023-05-13Zhoksunq.jsjs 689c5f7fd13e54d2bae294076719882d6c2b5fd47adcc01cc529d7fba80bd240n/a Quakbot
2023-05-13Rqelg.jsjs b4c726ee453baac53f41edba5e2e3b5037cf58db855970fc92d0ef4f31689b07n/a Quakbot
2023-05-13Lyai.jsjs df65aa3495b4ee66951ac4efce920c8cea31ca1cccc2fde7a39c54ff1122a611n/a Quakbot
2023-05-13Mcrsqgf.jsjs 547d6c4f7dd286b6390d993988f1ead10cc3f105f5d1e552534ff72a74a6a407n/a Quakbot
2023-05-12Xsvk.jsjs fd7ba0428583cd7c7af42c5eccfdf99b204f14e839492b7bb4044e10a211d66fn/a Quakbot
2023-05-12Gvlcq.jsjs 9ef454cd1e9ef2a204dbceec171aef873f7ad6a69fe4b7e6870d0c0122620508n/a Quakbot
2023-05-12Iesdqmj.jsjs cf5205842c42c3b45cbe2780feeedb9813950e43689c0507ba29d0b737124071n/a Quakbot
2023-05-12Zitg.jsjs 75434b0e14e508a541df1288560455613042a6754c425cc1f774cd1e22d08ee5n/a Quakbot
2023-05-12Zvag.jsjs 1850d4bf028cbff7a1086c72566c003bb8e63ee91d2c80089acb9e49e8018329n/a 
2023-05-12Hvjt.jsjs 79e96dc9ab080036cd8f23b38d19ece29bfa8324bab54cc354ddfe556bb57da3n/a Quakbot
2023-05-12Ztudkjai.jsjs 3843d9e3e6792ae8f0b6f3e3a3cd49f509cab897ce6361a15e0ba72549323bfdn/a Quakbot
2023-05-12Vloeua.jsjs 23a1ac295a4de7ef69eedc2b401553ff84522fe751ffab4cc13c36f7067da14an/a Quakbot
2023-05-12Cdkcqf.jsjs 5b6d69c2217cf9ddde880edd552e82ee84c17032db54db334ad0eb538528a470n/a Quakbot
2023-05-12Cmetx.jsjs fbe34bae0cb89dfad54fca7f974386b8290e149b21d66b1923d719c11afe04a6n/a Quakbot
2023-05-12Pjazpilh.jsjs 2925a5ea00bc2ec9447e054f6e7a24d36025f18bc6815224bf3d3d0f193eea5fn/a 
2023-05-12Yyfx.jsjs b4b7a8a7cbff86d057090d284524f34c808e513200281519a5e872c6dc17b389n/a Quakbot
2023-05-12Nznagrl.jsjs c324c04025b003725f86591be37854525c871db2b972d58d7278ca9838c5e74fn/a Quakbot
2023-05-12Botoke.jsjs c3ac3a8b91ccfb6417c0bbfd930d61d64303c6c3a2217d76be6c912ff554e3c3n/a Quakbot
2023-05-12Kzgukgz.jsjs 776e988387bbb09a5714c259d243f44d4daf453ebe8ad5c61221a7e105b7939cn/a Quakbot
2023-05-11Qudxlypa.jsjs 5f5a9c5680001930bd6a5d03d978476350180e704bc6916abb017bdd7307a4c6n/a Quakbot
2023-05-11Wzry.jsjs 28d9451c1e86448e070b92fc0fd9d2f0904c195c6870ae445a6bc3bbfe2b278fn/a Quakbot
2023-05-11Amcbc.jsjs 15e27dbf6683e1b505b5f4df8b980fed9aa3c11e9d8361675999af6a1709a7edn/a Quakbot
2023-05-11Yqwexgz.jsjs a2105fd1fa8d2d2823f17222c068a5a4ed18906ab9f2040b43103499a1ad846en/a Quakbot
2023-05-11Auensw.jsjs 5522eedcf83d3c1590ecfd46f3d2a529cb20edd312692f8ae4060b86bc51db1an/a Quakbot
2023-05-11Rrxv.jsjs 29fe533773d0677d6e45917ff3567279587f5ab0f520852f6600f35b57a19a26n/a 
2023-05-11Oexfevs.jsjs cbed60d4711f199b9ee55f9d796fadf7451c6af06b62dde8e680b8b08f9e0f1cn/a Quakbot