URLhaus Database

You are currently viewing the URLhaus database entry for https://elsassdestination.fr/oei/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2632666
URL: https://elsassdestination.fr/oei/?1
URL Status:Offline
Host: elsassdestination.fr
Date added:2023-05-15 15:14:44 UTC
Last online:2023-05-17 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-15 15:15:42 UTC to abuse{at}cloudflare[dot]com)
Takedown time:2 days, 5 hours, 58 minutes Poor (down since 2023-05-17 21:13:51 UTC)
Tags:BB28 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-17Xcjl.jsjs 020f938e3e5a80465883b947cf72e1604c794e693956eee1cc4707135129fd43n/a Quakbot
2023-05-17Rxtt.jsjs 09f9e4d8ef85ba407416a7d168207db81c2000eabea300624e17d81f58bd0b18n/a Quakbot
2023-05-17Uozh.jsjs b3455e378aa4106c5a643052bdcc324c67382149a5eb84a546fdc26f4b5f412en/a Quakbot
2023-05-17Dhyfa.jsjs 229271acfd7face73c4919f8ae74ec7e9e3d276810827e045c7ee12baf2e75bfn/a 
2023-05-17Ewkuuxc.jsjs a74b08fd8574636c900a77d9d50f0c7d91b058b6a82d501d33a366e1e7c3d343n/a Quakbot
2023-05-17Brvruizl.jsjs a99e141ab4732e71518c988280df0df3316f353a25175150e15541180ab37d4bn/a 
2023-05-17Ommvvbfa.jsjs 2b802b79428aa549a62bd0eb3456f88a06034eefb89d78e48682b374c507e689n/a Quakbot
2023-05-17Wuqnshfq.jsjs 9736c3190aeb8fb971611d9f77da45269438cdd1a6e72a06b249b1c3bb867d41n/a Quakbot
2023-05-17Vjlai.jsjs 327f6194e23b5231ac8a66d6364d96a1e61f716373bec0c31230e80211641c9fn/a Quakbot
2023-05-17Mhwi.jsjs 579063683d4231fa6a2784b8d8f77b808854f0bdef52a04e98183b47d5fe0343n/a Quakbot
2023-05-17Ybslbocz.jsjs 290263fc334c06e864576a5fbfdade964f1fcf6921f693ce94d94fc58fb13d43n/a Quakbot
2023-05-17Swoupkx.jsjs 855fb7c3f9a0cbaf1826a91667d734517b9eea5d6d595b26bc80b8518d463f14n/a Quakbot
2023-05-16Pgqauv.jsjs ec3bc8c4e3c3300bf17f4b2487c0941f1d1839e6fdbfd502b801e94c1b7e65a0n/a Quakbot
2023-05-16Dvsbvr.jsjs 7375d9944e53ef9e22ab5a0cfa492e4ac3fabe4bda78537b557d25441385b5dcn/a 
2023-05-16Cngo.jsjs 9fb27ca797093b77115dc6d0c4251a31f6bcfe9d59ff32897a19b235126cb924n/a Quakbot
2023-05-16Upiv.jsjs 17e4469e2b252513060ed5a5cf0062f56b8b4a92b3eb0ceba7e6fbcb3016cd85n/a Quakbot
2023-05-16Gnvyugb.jsjs 8e8fc4dd772370d33ca4f25387d4ddfa03712be6e991c7677fcf5400f8958e26n/a 
2023-05-16Woeiwhn.jsjs 4de614e4641025363db3133ff868e50cc3403d9027bbe3db63a81df1adffd834n/a Quakbot
2023-05-16Siutt.jsjs d07edaa177cf1c5b196aa448e06318ef4f186770d8ae5af013cbdebadf186be9n/a Quakbot
2023-05-16Izmiujg.jsjs 0e5c8c8cb77a6055dda615599f30f8721336878932d0971754a65d5a59f014c1n/a Quakbot
2023-05-16Erycivbo.jsjs b2e81a0f573125732daec58a1b0ed0de210684054effecd7f1028734b74be509n/a 
2023-05-16Xdgx.jsjs e69e539d40deeac83d98e809d3d65a58360120b1c2ff6b6f790f46f36783b2b7n/a Quakbot
2023-05-16Hztm.jsjs 58bcd6308c4adf99b62d01ea8715ec8525e96d5a26e360ce845c18546844507cn/a Quakbot
2023-05-16Ceyqovmw.jsjs 876600d6aa03beb26d6dcc6fc7886eadee6cc22c1fd5221329d67c682421abfbn/a Quakbot
2023-05-16Pqmr.jsjs 5918dd9108620f5f5da579f8d15793927174f16aff05b3beac0900b6a63ab6ddn/a Quakbot
2023-05-16Yqibs.jsjs 5b9efa9287e89909d5269383770a2719177a9f6326fadd9f27dcda714ff791a7n/a Quakbot
2023-05-15Ahcyscdo.jsjs c10729ccbc85be41c62c727ecf0b3fd8f7068b67a19c23ba3ccc6ec6e28dde26n/a Quakbot
2023-05-15Wzpa.jsjs f5462224e84a81cdf8185129c7c9f988f20b3b008cb78c8444ea30b7257ef8e0n/a Quakbot
2023-05-15Wgcc.jsjs bb4bd85c0822de2df5066398c04ceb374c1e7736db7b09604cd7064f2f7c4064n/a Quakbot
2023-05-15Ebbgz.jsjs 607b7b64cd6689a960ad92e746769667b250ab065477418ea8789341e331ae0bn/a Quakbot
2023-05-15Ujktxi.jsjs 482d59908ffff8df986c62c7f85c658cef69c807a0d1c0376aa407bb8cb24e1dn/a Quakbot
2023-05-15Wjokqi.jsjs b654c14248e23886be98d89161807c4dda996be51510d3b464d00213da5a3b28n/a Quakbot