URLhaus Database

You are currently viewing the URLhaus database entry for https://primesurgeenergy.com/que/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2633549
URL: https://primesurgeenergy.com/que/?1
URL Status:Offline
Host: primesurgeenergy.com
Date added:2023-05-16 11:25:15 UTC
Last online:2023-05-18 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-16 11:26:24 UTC to abuse{at}namecheaphosting[dot]com)
Takedown time:2 days, 9 hours, 47 minutes Poor (down since 2023-05-18 21:13:39 UTC)
Tags:BB28 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-18Pcclcpn.jsjs bbcdb87a842c5157acea98f0cedd358f764e2613b6a635e4f9f5946de8c07780Virustotal results 13.56% 
2023-05-18Whmkpqt.jsjs 1a2e818afb29521c8658d2a0643158af97370d69c32c0bd85cb900bd3e85b0eeVirustotal results 22.03% 
2023-05-18Fysz.jsjs 1cea0c4b1af9170b9ed2927f3b100d202bebd1b8e69ba1527336aaa6b2c0bffcVirustotal results 13.56%
2023-05-18Orniax.jsjs 8e2b4e2ef943250dfb4a3bb94f8d40d219a4fc4cab3974ff19c133254a13552fn/a 
2023-05-18Xzlsp.jsjs 798823d6f774c2380137f2e4d5c8a16ea4cec5e96284dfed0891528bdf512376Virustotal results 25.42% Quakbot
2023-05-18Dswmiq.jsjs c1064ed6356f294c6981938454ee3a3712e5e63930c1554a3c1602eacbd6554dVirustotal results 25.42% 
2023-05-18Gptile.jsjs 19add01de5eb9fa85d7bed9badc8daf24f0083faf06b7eaecd8b1efb21be5428Virustotal results 25.42% Quakbot
2023-05-18Sbse.jsjs c98276273a209f91c3e1637785f0f3e59d5724b05ee395f9f32ae11ee5e8679cn/a Quakbot
2023-05-18Zhzr.jsjs 5058b0ab18a174398413798e655e1f00408418493c371ea109decdfcde2e1608Virustotal results 32.20% Quakbot
2023-05-18Ijqn.jsjs b4b9340a057e2f27555df973e95af7d75b991cadbf943c5f48de2cbda1e3edcdVirustotal results 29.31% Quakbot
2023-05-18Omgjf.jsjs 1bff54d9504766a1b23df7d6c83ffbf3db9ac0d0cc9ded739c34a0f1114f5717n/a Quakbot
2023-05-18Mbckn.jsjs a3cc568085570fcadc8c808a54f2482fc606cfcc1e1ad374e88b6d8b8de6ae58Virustotal results 25.86% Quakbot
2023-05-18Zcegpey.jsjs b9a4b8691e7de63f6af1a61319d16827e3308ff248981ca1c9d815fee2a1b93bVirustotal results 32.20% Quakbot
2023-05-17Skwr.jsjs 9fc93269f064d50db15333e3dbcf15dccb35094dc51bedfc465ba99ce6a37953n/a Quakbot
2023-05-17Bvzd.jsjs 8c2547beb9fb406c4a16f82f423ebe7c1ad3223e438fa0b061c7cc13133a635an/a Quakbot
2023-05-17Ilsdfuwt.jsjs eecafdba553631375cb34761f4cf33cae100547238141bd641f76c3cb87700f7n/a 
2023-05-17Shcvkhn.jsjs 0259d5d40b143ebaaf60af05f38a325f660c922eb6201a18e664d949c3be13a3n/a Quakbot
2023-05-17Zywtvvv.jsjs 266bfb248bbfb5fafc879d0a26c731499ccb3de4c57b64ce4b3a3fc6f836b93bn/a Quakbot
2023-05-17Lkxl.jsjs 5cf5a460458dbbeb9dc56a1055cc11cf9105c55fae9b828a1884c3899001033en/a 
2023-05-17Jmhdpe.jsjs 160d854411f860f7b58c326af592c82647f42f7da75db334d60d415a810e69ban/a Quakbot
2023-05-17Wnvdtgy.jsjs 79c0b0d960b038f8aef7dcaa0963bd286e37a69be4f8fcc2a80e9991883aa8fen/a Quakbot
2023-05-17Zdqewh.jsjs 55b36e4afcc7b58c5e195623d1876aac446e0ff677e82a6582f7279fe276325bn/a Quakbot
2023-05-17Krbkdxxr.jsjs 8f4480c17cda587db8ba8269d3218272555560e2a5309116e46921d65dd5412an/a Quakbot
2023-05-17Zrfhlyt.jsjs a1e5110a99e90a671857e70bf14272963585608b20aab34980ec2db144db3721n/a Quakbot
2023-05-17Pcrc.jsjs 314083d0c1a851c6676ebb22c55439ec31c677df5803678ec2f4ecd741ee875en/a Quakbot
2023-05-17Lvynlkxx.jsjs 76f6f86d8c6beb3ffc002b4f9068543f1f710b0d4bc18f7ca8550d16e9929725n/a Quakbot
2023-05-17Yvabon.jsjs 83726ce69e71ed1b35faa28db4bddc81354dd0de2022149dc528d807824ccac1n/a Quakbot
2023-05-16Sgpbp.jsjs 2c7343e3eabdd477618f96727722f86255830a9021f0624c4d85b1e6ab8afefan/a Quakbot
2023-05-16Djpnvwm.jsjs 80663d64c6cc26e1242269eae60b2bbe07622fad6476ad4e80738c65f094f0d1n/a Quakbot
2023-05-16Vcnyfxxn.jsjs afc6537c72f7cccc0c43c9a9a76c6d5a802c9a76109b77071d6dd8dbd054fc07n/a Quakbot
2023-05-16Qlonsjrm.jsjs 409e36a8fd4b8092f7f032261a52914235bce4c4daf130518420e3875e5d6d38n/a 
2023-05-16Myscfbg.jsjs 976e111d01145e0095364c0b087700f9a8263131dd1d8d6816409fbf42945a86n/a Quakbot
2023-05-16Aybrtxf.jsjs 61634f88eb64dcfe26da4a7e219fb33db2cbd00beb62abac2ba0ac9e1056ad75n/a Quakbot
2023-05-16Buntja.jsjs f8ea36e6ebbbeef4617e633e1f346823cbd3abf60e3c0a72a17b4a6a15392fb5n/a 
2023-05-16Jqiymhv.jsjs a7279a939bcc37b60b577d39e1f044847a9c7e6c89dff323f851e76cb624456bn/a Quakbot