URLhaus Database

You are currently viewing the URLhaus database entry for https://torunit.com/auqe/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2633012
URL: https://torunit.com/auqe/?1
URL Status:Offline
Host: torunit.com
Date added:2023-05-15 17:22:12 UTC
Last online:2023-05-17 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-15 17:23:40 UTC to abuse{at}hostgator[dot]com)
Takedown time:2 days, 4 hours, 32 minutes Poor (down since 2023-05-17 21:55:42 UTC)
Tags:BB28 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-17Bhwlak.jsjs 905a894ac3b18458a8372c05faec1cd015ea3d7f3a5d248f87684a3062f2ca5fn/a Quakbot
2023-05-17Vahu.jsjs 29d88d7a73d988b2b2c5ddc76ac150742366a2a8c379758bf47f13c2fcf01346Virustotal results 27.12% Quakbot
2023-05-17Ocric.jsjs 69d10bf1c18cc7df540de106a1056c5af79f8b60f1ffae762d06532cc84375d8n/a Quakbot
2023-05-17Hifckji.jsjs be782f3af4554ce0188bf903632e461191f0020d22f70c2760c1f9d32b21bfban/a 
2023-05-17Tmnac.jsjs 753569ed5b6539685798c9810e39b6c67eab5c08103e0c79d4cc2f1c16cd8ac4n/a 
2023-05-17Tfamf.jsjs 10db1f724b8a79a610e7f209eb3eb96f8495db7a54a0aa2d7c0cf81e246140e0n/a Quakbot
2023-05-17Eeqwdr.jsjs da8bf61255019eb95c91c36d27f1c7b5a8239b4f6f646b1162c11a9fbdb7e963n/a Quakbot
2023-05-17Mdyualue.jsjs b9d1c78fbf9fe849857d86ad439ad1c0b1ece6ffae5ecd251b16c5415763f46an/a Quakbot
2023-05-17Qgihdu.jsjs ad8f39539acc3d351144e3183ea21f5f312bcaf429c8bc80d68251dbe7502800n/a 
2023-05-17Uyyx.jsjs b37f901065373b811b9dbc5e79d8a4529786ceb60453e0728551f7a550d90f63n/a 
2023-05-17Krzy.jsjs e564bdad64843c6a1bfdf3340af824a341ca9b2bae53a837408c112c6a6ba18bn/a Quakbot
2023-05-17Advblqvc.jsjs d0955ca52d74ead881ec77ab4e07d45e6ec1d03cf1da1379ef55059481dab3dbn/a Quakbot
2023-05-17Nhhvnypp.jsjs 32fd4dfb9018237ca4ae897d2616b5d437a60e8396b791922e2100cc98f679f0n/a Quakbot
2023-05-16Eyswisik.jsjs bf3ab55b88154bf7c5401c7c5c96ebc10c911866d1a8238b7847a369e38c3248n/a Quakbot
2023-05-16Ukjxa.jsjs 676ca70678cec5b664ff72a3474ef3c6dc963207cf51326081d0abd916d56352n/a Quakbot
2023-05-16Hibj.jsjs c58023557d9a153295253c39e946f43d5a1dd7c291d5efd5569691ce3d44f9aan/a Quakbot
2023-05-16Ulpffiaq.jsjs 644f0f33f95a863684440af5c3b8d14fd9ee5bbbb9ed88202a168a3c0a30b2cen/a Quakbot
2023-05-16Utxu.jsjs dfe77c8fcb639704a164330954a60c3c13f0e77648094bd47cc8aef746c02eb5n/a Quakbot
2023-05-16Gxrcbnx.jsjs c1db05b96dbf95de60da70b395ee76d8a48643959f76503cadc7263f5490a6cbn/a Quakbot
2023-05-16Ryulhqdr.jsjs 65262f7282c2fe7acb6c953dda13f38fafc8b480f3cee1cca8857f88b1026c47n/a 
2023-05-16Dwuon.jsjs 513186786bd837b153ab792566b2e8f5e6ab99a075e294e300b7c2fa3e27e7c7n/a Quakbot
2023-05-16Nxszuna.jsjs cb80094de2b6e8b575dd944bb9c8e7f494fbd6f982e5d6c18b6a84a6b658c157n/a Quakbot
2023-05-16Bidnb.jsjs c91936256a0df3e8c8c68ec581bee9326755c763de149f77b4249e45547aa929n/a Quakbot
2023-05-16Jqsz.jsjs e740e22ea24cf273a2d0e8160880b2dfadff1961e6ab1869829e23ad0573cd26n/a Quakbot
2023-05-16Kkxqdtxk.jsjs 80cec41f0cc0423757aa14be8091a63a27aca27c32fd737632c53723f9a61e05n/a Quakbot
2023-05-16Qnyxjf.jsjs 5a31f9908dc717c0ea683c361d6c270bdd4d3dcb3ecd910e5edbd8d646fb9a7bn/a Quakbot
2023-05-16Fvqxtr.jsjs 28890e99aeedae302ffc4e8f494214bbcbdb208d4f65165ee4f2a8ea6995dd1en/a Quakbot
2023-05-16Pdqzfi.jsjs 297b5ca99f5a7427fc80755d8dab71882303d00eba6355544c7a0d58ee0fdda5n/a Quakbot
2023-05-15Mtmrgvx.jsjs 91b46ead0f16621a9def362966d931d285a5900c62c9e05b55c760eba12650d4n/a 
2023-05-15Anhcadmp.jsjs c3eac5f32c3813aa8fff849bbfb8123f7880d6f805dc8f43cedbf7430b6bf95fn/a 
2023-05-15Soszyzut.jsjs a2b1b291b17ae4a2ed1d139e2e9c96be0356a1ab65d32b50fa49854af8710961n/a Quakbot
2023-05-15Gbbtxdrl.jsjs badfa364f07e81443c88724e70f97c56f69ab4e631c9f63a2066490c7d50368cn/a Quakbot