URLhaus Database

You are currently viewing the URLhaus database entry for https://re-shape.co.uk/it/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2632874
URL: https://re-shape.co.uk/it/?1
URL Status:Offline
Host: re-shape.co.uk
Date added:2023-05-15 15:15:44 UTC
Last online:2023-05-17 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-15 15:21:07 UTC to abuse{at}hostgator[dot]com)
Takedown time:2 days, 6 hours, 3 minutes Poor (down since 2023-05-17 21:24:50 UTC)
Tags:BB28 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-17Fkhxev.jsjs 8b5a063138d39c424fbf7ce7022dc972afa3c2df792b3a030272c1c77490dc96n/a Quakbot
2023-05-17Xklanmrw.jsjs 8116e7914df0a4fae9adad12da668660206754557fac016131c53fcd305d537fVirustotal results 32.69% Quakbot
2023-05-17Kdvfdri.jsjs ccfd3d544f060b0b45133acf8df8a753724ec29a916820e53f6e7692dd785c8dVirustotal results 21.67% Quakbot
2023-05-17Vulu.jsjs ef903a00f557175fbe1af9263796fbdaad81dc6578e948729821675219196f43n/a Quakbot
2023-05-17Ceuv.jsjs 4df2da0e1a60159c49866a7e3899e305f80766c9bae6b676bf18955d4e2ee8ecn/a Quakbot
2023-05-17Qgjdypg.jsjs 2810143d11f9ad7077972f807f2dc04a3f22746f81b7d8365d879e722c0b3551n/a Quakbot
2023-05-17Zwdw.jsjs 15cb1f4f4745b133971f889c1eb8250ca270ff045f3f5387edcffa8acb34a92bn/a Quakbot
2023-05-17Fsbspgue.jsjs 6eaabf15e795f360bc2e7eade215b14a6771cb1c7084cc7ce265eb7a6308d567n/a Quakbot
2023-05-17Wpadd.jsjs a578d0fba69410da1d0e0d03cdbed5795c668b9e45bc31ece7555639a4eddcb2n/a 
2023-05-17Jnebxxj.jsjs c43c4f19c370660bf32e2a15a0b1b07f8601832b8192e2a07a69751703ff1ccfn/a 
2023-05-17Pemhlyqd.jsjs edafc6d649bfea2b50d0fdc5b8b6836c764a6c2b2e7a9317ac67907118dc4f27n/a Quakbot
2023-05-17Vnvl.jsjs 66fa18b547e94915d6d3aac8513959767ab895af832683cba9ad7ca93127ad84n/a Quakbot
2023-05-16Sglqexo.jsjs bb2f6b2803b268b3e6c895e2ba2e6d52ac7006f234d8ee3c6b9ba9e7843bd30en/a Quakbot
2023-05-16Erotc.jsjs 7bc456ee406dbaa6d8cbbe5c753cb207452ac2643413a9561a8a37f6e5a5c024n/a Quakbot
2023-05-16Ljilaq.jsjs f823bcfbdf9784eeb0cd798a30d0b2f5923473ab5c48ed58d39ee4639eb42f75n/a 
2023-05-16Hdvh.jsjs 8351ae85ad19c3e0e291117d3ac3f8225e714ce05cb8adf0d5fe87555df43751n/a Quakbot
2023-05-16Wyso.jsjs c75535d659fee115f3f96f45f2264aba440df33a93896975b55024e2fc6963can/a Quakbot
2023-05-16Ofup.jsjs e3c3292f80b7bb33b22b4f1c665f7126321902a93f9d35a290b687a3cc171d08n/a Quakbot
2023-05-16Hjuzt.jsjs 171709a3e619800cfe075227b48feab5262798ebe1abacccbacc88525a2e459fn/a Quakbot
2023-05-16Cxqdunt.jsjs c44e95e7c807a8a0a9f24582621a397856d68f8addd0c3b1e56aa97a2fc3af54n/a Quakbot
2023-05-16Kuoo.jsjs 9720f9242d5b7315f31474416268179fd82c09d6e0a14e00e994b7835094d7b6n/a Quakbot
2023-05-16Epyrts.jsjs 8a48ca6bef37a8866089a2da92350940de0a223a57eac8178d6e21bfe6df8f28n/a Quakbot
2023-05-16Ozimmgq.jsjs 99e7c7a1bc2d326c41908666047f9affbf3818ec633c9c2ba832204400d94716n/a Quakbot
2023-05-16Jsaen.jsjs 0fc71b5a6a6e34c5aaafc8fd66d6eb977af98a710a755eac56017c6a1d83f72en/a 
2023-05-16Chnpmoy.jsjs 8fed4cff2ec67c88c7d367de6d3c89a8e4aee8d826ec1abdd5b8aacd1feb3c03n/a Quakbot
2023-05-16Tvfdadfr.jsjs c90c25ba8cda3c70f294582dc29b2ee980287b77c2998492c91f8341fef84f1an/a Quakbot
2023-05-15Klavfh.jsjs cf7f886d97cc484f8203f64eb32fb043bf2727a77f0bb5197ed451a80c5ad782n/a Quakbot
2023-05-15Xascikva.jsjs f094b7aa2aacb156103c77b083171e67014bdd0a7a262cda41cd70d9ef0c2b98n/a Quakbot
2023-05-15Lyidm.jsjs 8b45aa215a33fa9b3d07f6d4787c829fcb330dc9a92577989e021fb122ef852cn/a Quakbot
2023-05-15Xsfeji.jsjs ef48f3677c5d10e635e38911f09b112f684fe4e0e7229da4e0f716a02bccee46n/a Quakbot
2023-05-15Xiwvl.jsjs 3791889ecd815d9f2cbdd23d730e4b38f0e20cc5f9fa63c957b5641d9cc18802n/a Quakbot
2023-05-15Vdfpqwj.zipzip ec7d6751549e42a76e33c7d0245bd24533482c0b9030dfb94a2721011feaf300n/a Quakbot