URLhaus Database

You are currently viewing the URLhaus database entry for https://noidacityguide.com/ua/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2632708
URL: https://noidacityguide.com/ua/?1
URL Status:Offline
Host: noidacityguide.com
Date added:2023-05-15 15:14:55 UTC
Last online:2023-05-17 22:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?):mail Yes (Ticket DCU100115910 created on 2023-05-15 15:15:27 UTC)
Takedown time:2 days, 7 hours, 5 minutes Poor (down since 2023-05-17 22:20:53 UTC)
Tags:BB28 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-17Ibre.jsjs a87f72f4479c91e3e36a8b6a204a7d9169c1e604389f6818744f3bcca14fd959Virustotal results 21.43% Quakbot
2023-05-17Hbfshes.jsjs 4cfd3cea6e5aacf340993648b46bbd6628953021cc5148be665b68de39755e98Virustotal results 27.12% 
2023-05-17Yixcghs.jsjs c56be3ec9c7d01ede485ea9edabc332ef3aa01f6ab679c4eb6231e1db79db675n/a Quakbot
2023-05-17Hvdg.jsjs cc3f6d63f84cc1a94c7b2a3942b9e0df2af0f247cf2a81b2ba18f33ce401310dVirustotal results 27.12% Quakbot
2023-05-17Vkhjp.jsjs f2a2ace114103a041e79ed5165b96ac32d3595aaa0c8f1ff92533be7728179a4n/a 
2023-05-17Xqufsj.jsjs 0eb7615075853fea63154c3bbd2be5b4bb724f0717a67082633fe348e45b49ebn/a Quakbot
2023-05-17Rtwthrge.jsjs 22e7eee8a0316b40d763fbaf06e7d288db72dbfb7c6f8080c98595351100f136n/a Quakbot
2023-05-17Ymnnjke.jsjs a004de6b76cbafbbb6994e48fe657f06f6fdf6a91033155a0aec133cedcf56a0n/a Quakbot
2023-05-17Lwwnc.jsjs ffb72875d8acc9c8933498178e0c54f30637483ba1eeaeb4169073688ddfbf4en/a Quakbot
2023-05-17Pwkvrec.jsjs 17813e5b76f1c87a1af87683f58e8ced3eac4ecf682e8c8f172b4c996021356an/a 
2023-05-17Jjqujhv.jsjs 5f58181ed1431e3dc698ad8d965555c510e26fee8afcd9aed6ab074e34f53915n/a Quakbot
2023-05-17Movkmrb.jsjs ddf23badead0ed840e19434a7b18015886cf9d4d359c88e7ad0765eaa180b382n/a 
2023-05-17Evlofcxy.jsjs dcc389fcaa654c2cfcb22a078e0adf33e38fce1d767631156dac3d2e83975239n/a Quakbot
2023-05-17Wltg.jsjs ae9a457c15b353b0c6949ecc3182a3e83846c1c534eedb7211c2c53449c21894n/a Quakbot
2023-05-16Mbxjo.jsjs 8282d17d7142cc03dd96b8ae5b41f1b08bf8541bc870e7895e762f8925c5a8d8n/a Quakbot
2023-05-16Kejo.jsjs 1e322803f613e226ab708dc00516c56680c7fbd4cbc3c89174b03e861787240fn/a Quakbot
2023-05-16Bnwyra.jsjs d5d1b8ccf0c36ca785c5d29f050140e9cb58d26e4b322c70892b29221df95c94n/a Quakbot
2023-05-16Thdmtyvd.jsjs f6aa03b53567bf9d97f219ac7f8a3989cf236146e6b8f4c9b45e9d8f7cee0b0cn/a Quakbot
2023-05-16Uzyja.jsjs 5606e619ca3d3a7cf61e3be8e7f724e990f9a20a5d2845b4405793f039421705n/a Quakbot
2023-05-16Udiyzee.jsjs ff532f63ebd413f0ddeae9a20df1462cf0937ebf3a30fa24f3d627dffe152329n/a Quakbot
2023-05-16Xgsiv.jsjs 7fba36ef9d20fbcfe1df186aa84903846d5ea235a7146859f3d82f4bf79469e5n/a Quakbot
2023-05-16Tkcw.jsjs ef24b676b933133f252addc1d08bc19dd4dbd8a02544998b7a8d383a252b4a61n/a Quakbot
2023-05-16Pqexi.jsjs 7ee4b599593847fbbd667f6daefca0f4e9820b264b74f45d9e527a1ad71d5324n/a Quakbot
2023-05-16Jnvbsmg.jsjs 74ec0522fa95365c941045643b452558672dfac5fa8d662f2daab05af03a278dn/a 
2023-05-16Isswoblx.jsjs 4a86db029a7eb9b23bcb9c37a2cb4a50bcf06fe782de028ec3c06d337ad2035fn/a Quakbot
2023-05-16Mcmrj.jsjs 277e9f2a89b814d69789fec7c44e7c766083f45bd328c1b41ebb332ee587577bn/a Quakbot
2023-05-15Fewgdgj.jsjs a7997f0fd8b7c8b1e69562b7a8ab8be3272d4fc4e8b10f4fae6c435b3c8c32efn/a Quakbot
2023-05-15Ywwnow.jsjs 517339fa0fb2fcd7d492a91e87f35df8455ecf3d268512dacc87d497cea8a75bn/a Quakbot
2023-05-15Nmlu.jsjs 22b5dd138fe7f1bd3b48dce6ecbe9fbadca1649d3ba6f0508da771a7576c4e10n/a 
2023-05-15Akjzbti.jsjs 7bebba4f00ea988a09053aa995c3189f310d92b7edfb7116b15541d37dddffe1n/a Quakbot
2023-05-15Peuit.jsjs c393e599c4e93e496a3997ecd2e4d945665bec4a2347e966d62e6c6f0c78b568n/a Quakbot
2023-05-15Mytixr.jsjs 180cd95070e494d55ed7f23a6b485193c9dfd639fc8bbefaa7c906acf8b7e48an/a Quakbot
2023-05-15Hllcn.jsjs 3e70950221bd74394801bc631a354cca47588327c01f671c65bd5d2006500308n/a Quakbot