URLhaus Database

You are currently viewing the URLhaus database entry for https://thekingflix.com/upde/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2632498
URL: https://thekingflix.com/upde/?1
URL Status:Offline
Host: thekingflix.com
Date added:2023-05-15 14:49:08 UTC
Last online:2023-05-17 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-15 14:50:34 UTC to abuse{at}namecheaphosting[dot]com)
Takedown time:2 days, 6 hours, 18 minutes Poor (down since 2023-05-17 21:08:44 UTC)
Tags:BB28 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-17Gcdtsgbq.jsjs e05738fc1b53657500ed0ce0448f562aeb6e465927ca8d763f76dc97f3a2150dn/a 
2023-05-17Jylcx.jsjs 4a91fb2765da3056fe04bf5254fac9eb72f1fb4f8026845d71ffe672d4daac8cn/a Quakbot
2023-05-17Rzwe.jsjs 62f72a40ec519cd843b1c38ebe9ee2be23628961bffc952c1da59c3687a87466Virustotal results 24.14% Quakbot
2023-05-17Xmgoww.jsjs d1a4226b93ce7e197a1d0a500323d097493998ae6d92816b4793bac2150218f2Virustotal results 27.12% Quakbot
2023-05-17Icgwxoyc.jsjs 47f14a8b9c04f43e700eff818ff6490f28ae0bcba08118d1af9f0b06c96779a1n/a 
2023-05-17Qwngz.jsjs 6bdf597bc508934c8541d1b52f1f75092a3520181f89d59dfc70aebac1899d7an/a Quakbot
2023-05-17Gqwlvxl.jsjs ab0206e44990dd507e6cffeb3dbbb9315b15df1a81617b166e32adf26586eb99n/a Quakbot
2023-05-17Rrahrpzb.jsjs 1d85ffd4c7857cae5bda3a8bce7b664e5b5a4ae4c6d8b201c6ac52b62091f881n/a Quakbot
2023-05-17Pokdbtmw.jsjs 717eb9b9813c128f4a53cb28706eafbd7672208e53bea4c7d048f3d59e816a39n/a Quakbot
2023-05-17Tabkf.jsjs 9947412280f1aac11214bef158f088e5d6bd6b30ffbd75c178aea0b33471dad4n/a Quakbot
2023-05-17Rzfsi.jsjs b632279dc721b3a05335ef3333eaffc6edaec014edea16e5b1c2b56c37aa23e4n/a Quakbot
2023-05-17Qbueanr.jsjs ea09ff6339bfc9a8d08db1532947827b4d162d9e77a49c7c609d41c2ba4fb0d7n/a Quakbot
2023-05-16Ylqzy.jsjs 2231e1a6647b3c289edf60c7f56bdca7c2d7eb023736ee945ff6acb3d83e9165n/a Quakbot
2023-05-16Seoey.jsjs 0b12d978cc601f79be7d9400e5a873838af00468f4b91936fa7df4bf36a4ebd5n/a Quakbot
2023-05-16Nwxnlnas.jsjs c072ee068781db64b9024bcb9a794b4f26f0f0b771157690e35643e4b273204cn/a Quakbot
2023-05-16Kqcnt.jsjs 1fb1385ada190303ddaba83102c4e717eab605a941a19ed4213653db1b79e3d4n/a Quakbot
2023-05-16Fzvq.jsjs a9d6800d697734de8be05908ac7b4a46e6bce85662fb2717eb81b9d8eb411058n/a Quakbot
2023-05-16Ouwjxh.jsjs 593cb84f8a2878c340664eeb7eec37a4f959070ff31c830ed7e5bab78d7bbab0n/a Quakbot
2023-05-16Hmsmqp.jsjs e53a6a24871613e568d035e5f8f8dd2ff5ed19454a5a78a794b4a5c8b083a9cfn/a Quakbot
2023-05-16Bsxrd.jsjs a04f675bcecf97f81bdb60cabb90b22334b40c46a7b66a0bc2695ae8bd121c40n/a Quakbot
2023-05-16Sgbsdo.jsjs 2dded2bd8267b1749bf0c106b3b1e5b375892fab663ea70af66f84e51ad7f560n/a Quakbot
2023-05-16Uukin.jsjs e7d46b5e79dba82c4b719619574c0a1ce2c8d041b2422c9a195284f397a70f78n/a Quakbot
2023-05-16Qgih.jsjs 23fcc0c5b04d04e19994a4c839fd25590cab7f35064117b78d90d5e9cd3a7f37n/a Quakbot
2023-05-16Ifjp.jsjs 1503c7c9fd6c610a64f7ea214b732ba558b35703b100a8e1b28bb52583d6179en/a Quakbot
2023-05-16Sakp.jsjs 8a34244190d173c52b9e281a6909ac366022beb24c926448ca7649fe4f5fa779n/a Quakbot
2023-05-15Jgqgzm.jsjs 2e6f19999a384249bd5af6b3ccf2f193abeda6b79f67f8eef58b88f02da68251n/a Quakbot
2023-05-15Xvvq.jsjs 77eba0b0ef5c9d840b601f7b5d638eb3e085e53462d059b363adaa2156c7c7a1n/a Quakbot
2023-05-15Aaxnasge.jsjs c22048ef08fc8239b0b10702b9d837d7f6ce128891531d2257d2e22d2a86ca52n/a Quakbot
2023-05-15Vfvgu.jsjs abfa9fd1898c507324c1d3d574497c909d75638b19186c520aa522736e80fb54n/a Quakbot
2023-05-15Punhcrq.jsjs a4b19b69adbb6ae3b5aeec36a6a61247fd14bcd086cfdec6797d305c680b1ef3n/a Quakbot
2023-05-15Myiwic.jsjs bf4dca802c0077a3b4965eb7308d3073f47f01b54a896ebfbd5e3e881c0010a5n/a Quakbot
2023-05-15Ywhkoqbq.jsjs 6f398029b7d745c34a92a01a54235ac0df94f22a55c87c1cccd1a343fa17c8fdn/a Quakbot