URLhaus Database

You are currently viewing the URLhaus database entry for https://thephoolmala.com/iqis/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2629887
URL: https://thephoolmala.com/iqis/
URL Status:Offline
Host: thephoolmala.com
Date added:2023-05-11 11:58:59 UTC
Last online:2023-05-13 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Status unknown
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-11 12:02:33 UTC to abuse{at}namecheap[dot]com)
Takedown time:2 days, 9 hours, 33 minutes Poor (down since 2023-05-13 21:36:10 UTC)
Tags:BB27 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-13Kclotf.jsjs ac85b7e99ad9f66e3af8a2ab4a69772c1f2256c6d9708133913dc37303df33c0n/a Quakbot
2023-05-13Sfplhx.jsjs 5471703da88295eb3e0652cdd28b9db05f5aedd04ab4690bc185f9e3b418f960n/a Quakbot
2023-05-13Svdptp.jsjs 59de9ed1906dfcc40fa9879bd20096af40e1062f4240bbcca8b0a41079da2a0an/a Quakbot
2023-05-13Geapt.jsjs bcdfca81b1b08e33981f8e0f0152d842fe78665d1ccb514daea074975f468674n/a 
2023-05-13Qlzzysu.jsjs 948859c6d8421f87711a837cf01d92f5e5582822ea9dab06bdcdffd7fcb55032n/a Quakbot
2023-05-13Wfyqbci.jsjs ac79e8429aa47b9d55d81363d070842218b6367e3d99f9cfcaaa1c81d6f5e713n/a Quakbot
2023-05-13Vhmu.jsjs 1f8c10420502d2be971c9194821f6a3edb235f34c7bb1cd56c67d85f6c9aeb3dn/a Quakbot
2023-05-13Bwfm.jsjs e74bccfe36dfef3a90e57be77316f386394a5b05d33d95585f617482c7628e9cn/a Quakbot
2023-05-13Aefhi.jsjs 49e917897c4aed80847361a172310671712820fca30ccc41fc8426198c3ab59cn/a Quakbot
2023-05-13Ivqoufxr.jsjs a4c676d7a9340aac5ef40efcac1b29b519e3e254b12c8868c2ca6c9d52cc8a3an/a 
2023-05-13Euki.jsjs 5cd71d5e1456a0940f29e94e080351add06bf8a50888bf8b92e4e5a4cb8b30bbn/a Quakbot
2023-05-13Oaxpw.jsjs 3053182b71e46e2e7eca41af26b67f9dcd1a31a6f495a5b9716c444b516925e1n/a Quakbot
2023-05-13Xhfrnm.jsjs ef05850d837d340505bd4736048407deac7602011889fb79305ddc560bda2404n/a Quakbot
2023-05-12Gbgywa.jsjs 87c96125ea0f27c9f0e66beb1b6fb2ea2390b45f8a09b8ecf40e7a2d97778d53n/a Quakbot
2023-05-12Cymk.jsjs 73aa754086c961441d1c3dd53f5e3ca43de0631f17ae5d33100a73d85b73cda7n/a Quakbot
2023-05-12Oshwzt.jsjs 42bf503d8a07cbc2468101b948cc567e327e1c5f729b50613f18c3f964d74186n/a Quakbot
2023-05-12Hpclkcpc.jsjs 67453dce452cdd8960533d41c4b4b9ed1981934854f109e559608f50520f401fn/a Quakbot
2023-05-12Iwqyrdq.jsjs 47faa9e293b4d41101a5638d5ae7cf800653d26860e6616902d5b993d87990cdn/a Quakbot
2023-05-12Zfmqw.jsjs 4081ab572566086e59a4ec7fe264b7936ad4da778d99e18d7e7f883ff0004248n/a Quakbot
2023-05-12Lwksdzpc.jsjs 7d09fbe69d69637787b9444952a5d019d7805a783276df0c49cd5fdb3aba2100n/a 
2023-05-12Osywz.jsjs e6930c2828629783ad08f769b713ba84a386028e0d3647d7b7c961ff0c936df9n/a Quakbot
2023-05-12Ohqjbusf.jsjs 86282a96f065ad01a2ec817854ae3a5aebfe66ee0ac5b91091435f93135b89fcn/a 
2023-05-12Pqvwkpcf.jsjs d4bb8853ad465c21beac1420466f277859d984db73ca1703e06f85214b2e6405n/a Quakbot
2023-05-12Cbpowjh.jsjs bf29dbe344a0c8ecab95974e66fc62621b3898ea997390cedc53b0aaf2068e01n/a Quakbot
2023-05-12Mpkwvdv.jsjs 77471913fbaa20ed937377b4241d2f1715add6ede3a4727288581ad4d41e6837n/a 
2023-05-12Jkxqn.jsjs dd0dca4e1571d441e7e065697743e4a57a40616c40c9ff8e5a39b97ff3bfc726n/a Quakbot
2023-05-12Glgv.jsjs cdeb49dc81ff70379293538d0e2cfa78eb694ebff51b2faba90aac89125cb938n/a Quakbot
2023-05-12Zcgy.jsjs dbfca5cd10944023dd466cfab16cd60c1acfe41c33b5084d8262a3fb7a80fa67n/a Quakbot
2023-05-12Gipkm.jsjs 0e83cdd1b89b4e9e802034338ab3fd2dc2bedd8cda589553fc9b7d529aff7481n/a Quakbot
2023-05-11Fzgcuu.jsjs 66bdeaf793bb55305d1371600268d1b09cd9a6e9c3e771aa4f61c305d8c31ca7n/a Quakbot
2023-05-11Aghvo.jsjs 8b860b109a00313f5a5fd65b6bb3590f76e0a7bfbca4292adf24ffa515bab493n/a Quakbot
2023-05-11Nkncr.jsjs b7987513760589a5f838f8e052136e9f09fdf8bc67d10979359b87b75940f405n/a Quakbot
2023-05-11Mffzn.jsjs 1bd393c4953468f0fb9508c9aed525097b163facf193fea25e65871743cb9375n/a Quakbot
2023-05-11Jakpxl.jsjs f857ca0361b01eb70fb50e46dc8ae4754c3b5fd710ce11b15443255c12ad98b4n/a Quakbot
2023-05-11Fhxp.jsjs 4e261ff7f6c8fe7c294de7eea47dc2a9d885c7cd82d6e859e4b00f2a06bbb227n/a Quakbot