URLhaus Database

You are currently viewing the URLhaus database entry for https://lesdeuxpalmiers.com/cest/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2630040
URL: https://lesdeuxpalmiers.com/cest/
URL Status:Offline
Host: lesdeuxpalmiers.com
Date added:2023-05-11 16:31:08 UTC
Last online:2023-05-13 22:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-11 16:32:26 UTC to abuse{at}godaddy[dot]com)
Takedown time:2 days, 5 hours, 47 minutes Poor (down since 2023-05-13 22:20:00 UTC)
Tags:BB27 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-13Qalpu.jsjs c9902fcc6363eb045b7995027339d4a0438124ff3936257222320a8f53c5f34fn/a Quakbot
2023-05-13Xclqr.jsjs 337dceea7f86654a5a12a15bb10cc9ce7318fac3b39aa03a5b997ef5c191e5a2n/a Quakbot
2023-05-13Gxmxb.jsjs 913edbd2e98bbff3a4389752633f2864637f17ea454263e5d516077853fd1c5dn/a Quakbot
2023-05-13Umovczc.jsjs 24188f8ef06bf3c262c4963a8526130ab7dddaa637753a79a1724571a769e34en/a Quakbot
2023-05-13Tmaaln.jsjs ea6a112fbf832e8596edbc4713294903da0107588b210379880bc7f8ff0c8ba1n/a Quakbot
2023-05-13Hhsskcrv.jsjs fb4cb87ea5694329cacdb95a0f738d933647dc7e2cb9e14e87af4f6e57149f90n/a Quakbot
2023-05-13Pjwq.jsjs 060b981750ffb0382c8af7a1e67fe3483be1ebb62fc74292a4d829ef5f42fc4fn/a Quakbot
2023-05-13Pervwt.jsjs 6cd6fcef1143fa87898ca117b8010396a39db4e3b8c4ddf920b2266e1e62f44fn/a Quakbot
2023-05-13Hunohhv.jsjs eb87987742f2b37f2cd8d09c061877b6010a8f739658a34e268c2568a405bed1n/a Quakbot
2023-05-13Dyyzghw.jsjs 3f8ef20f8bd851c3c7f47087680c43498c64d1b326b6e381f40718ef236b7e26n/a Quakbot
2023-05-13Culbz.jsjs 7ea99ba9b50d29d4de57f7283b028db7bdefa22d5967f65295335eacc8b5e055n/a Quakbot
2023-05-13Qfjalg.jsjs 86227a213613fe9165092068cdd87c9dc080e603095cb2a02b19f974be98075dn/a Quakbot
2023-05-13Xuffhcg.jsjs 43282663e56ad759b88f3c451738a748271890dc20985255f47527ee5b0174e4n/a Quakbot
2023-05-12Atlmvqg.jsjs 7b5b3d38b0c5b67a09bf612807ffa183b13bf6b5e93e53e5ce1877ebe4568cb4n/a Quakbot
2023-05-12Lhjenhc.jsjs f391346b16e5818121730b474d9c44cc2311653edbcf457624f565b3982051c8n/a Quakbot
2023-05-12Zgraixv.jsjs 30dfd3ad2db17f43d3c5e8376b183824ad1b3c813163f7dc37e38bd9939a3c22n/a 
2023-05-12Lolog.jsjs 5b14711ac02adb70c350175e2c753083c4c7bbfc53fb1c9fc157046ee96331fdn/a Quakbot
2023-05-12Kwfsq.jsjs 25b9b1658444f109c11d3795bace0a3a626929a40f51b3916a2e75179964efc6n/a Quakbot
2023-05-12Pzcq.jsjs d326755fb94a34692e63af532297a5b59a2e7a880196ad32dcfe3094b89b274en/a Quakbot
2023-05-12Lhgj.jsjs 24b523b919323ad650a716acef65c76ecfb20057e7cb78e058324de037a2fbdan/a Quakbot
2023-05-12Gzzypc.jsjs b66ad1685cf54ff1cc020f7feb7084b6868d2ddd09ce2ae97cae171f8e2c1d3en/a 
2023-05-12Olbymj.jsjs 7bbc987bbb95739f2db4ea1e10704a93ac7d92849d48c0f7c46d577f2a179b9bn/a 
2023-05-12Zhpkgg.jsjs f2312810ccbea7d10b200b3ac43a0190150701bf709bb608659b703aec9428e2n/a Quakbot
2023-05-12Iipkmzs.jsjs f3ea18520868e79f0c5ab0fa3654962669a2614d7cf3f6ea2becce9ec0379db2n/a 
2023-05-12Ajdifu.jsjs 784f836e3fc06195e5c8c80a57de50c46266310795eb84d30755886a915b1b95n/a Quakbot
2023-05-12Ppdzpxim.jsjs b85328e463653dd9954f898f2ec79aafe6c75b6dc898dce0cae4cfa553720034n/a Quakbot
2023-05-12Nmhij.jsjs bd7d4848db9bb498950ce0d46a9901ebaf65a1a6947a32e343580cebe4abbb73n/a Quakbot
2023-05-11Hsuoauwi.jsjs f326a4e5e23a66fd2e112718329e9c532cf92051d47c98dbfa40b5556854aa85n/a Quakbot
2023-05-11Mkbpnmho.jsjs df3f4c3f49bff392f0582ce9c5a068e58e5b081441d7bcbd65dfb07831f483c7n/a Quakbot
2023-05-11Rpaqi.jsjs d224b3687bc7b28f502feccdc4bedacfdc656c4270fc9060150994e1f674e635n/a Quakbot
2023-05-11Pcuwzgf.jsjs 15017bfdbed0419536882ea84219917726aa29679e9886e5ef8119f391667c31n/a Quakbot
2023-05-11Gglxc.jsjs d9193e3347e70cc1806a9b62cc5e10df5ddcd347116217d1725ea4df534768c7n/a