URLhaus Database

You are currently viewing the URLhaus database entry for https://cqfdpuno.org/etiq/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2633552
URL: https://cqfdpuno.org/etiq/?1
URL Status:Offline
Host: cqfdpuno.org
Date added:2023-05-16 11:25:17 UTC
Last online:2023-05-18 22:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?):mail Yes (Ticket DCU100116405 created on 2023-05-16 11:26:03 UTC)
Takedown time:2 days, 11 hours, 24 minutes Poor (down since 2023-05-18 22:50:23 UTC)
Tags:BB28 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-18Odoqlp.jsjs 1cea0c4b1af9170b9ed2927f3b100d202bebd1b8e69ba1527336aaa6b2c0bffcVirustotal results 13.33%
2023-05-18Ovpmzr.jsjs d3c6e06204212c1aeeef29809460056535cba3beca8cf163b7c8719671ef0c9fVirustotal results 22.03% 
2023-05-18Bzpkvbya.jsjs 18bc04176f89d93558a971e97e70d64742625640ef84e7f7bc8274a4f8f7b6dfn/a 
2023-05-18Obyl.jsjs 1a3fc3e2d336f6c024b0a452cf6eab7b5521bd6591f7ff15ac80caf4af268c3aVirustotal results 32.20% Quakbot
2023-05-18Ijsubb.jsjs 0b7fccf63d874ff825b5a3e790311b7dd0923c82b142520db78f43a8191e9216Virustotal results 22.41% Quakbot
2023-05-18Fdqr.jsjs 0eb36df6ac7e73e53c148166b06b5c1bc80d6a92c1718e19711dfd219c02ffd2Virustotal results 25.42% Quakbot
2023-05-18Bmmc.jsjs 88e1c48885e6e3ca5b9336e4c427b393b3ed8d986289d640404abb2cdf869689Virustotal results 22.81% Quakbot
2023-05-18Otktmq.jsjs a957652292b9f2b69f858cd1f3221d9c4ae8b165a295b91459fd2bf2eedce715Virustotal results 25.86% Quakbot
2023-05-18Ibyo.jsjs 023250d4f9af49d2f7968647280c712aff55b6146a5a06b7b302bab288a405baVirustotal results 29.31% Quakbot
2023-05-18Ojauwbz.jsjs 4aa5f66645ca2168af894232b630df6e88077c51f4fa33cbe2efd094e057fd02n/a 
2023-05-18Geycr.jsjs 576d767be1b5ee880a56263521aef9366435f9ff583a68aebc426d7da2c02e2aVirustotal results 29.82% Quakbot
2023-05-18Xhjq.jsjs cb296a47f490cbc70541030b87a0b2d9eb6c1253da849e9e37e7912f2fff796dVirustotal results 35.59% 
2023-05-17Oiygfn.jsjs efc10c85b0f60f774980c7250e0358ab61ded2a4d2f8fed854bf14d05af6908eVirustotal results 6.90% Quakbot
2023-05-17Hceqli.jsjs c183dc69a6e054260b5800df8cb1bdcf33338ca9f2d92f1b6d2161ca1fa1b850n/a Quakbot
2023-05-17Wplm.jsjs d4d054686a5e084363a71c69d138897e7b35fe3a4008cdd377ef2a2121799d11n/a Quakbot
2023-05-17Leat.jsjs 56e1630e4d5a2e6b1c2e4e5494d4f0934129788140e2bb2894da4d50c48ece66Virustotal results 27.12% Quakbot
2023-05-17Otuuwq.jsjs 43a19d17453fa7c2633186d340c06a3b0b794b8cfe7e6ce0adf02f44713c5e25Virustotal results 23.21% Quakbot
2023-05-17Pbmosml.jsjs 4a5bb0d1af42aabd643a23c518cbc77c4a2931fab8d180bbad1c0ea815f5954an/a Quakbot
2023-05-17Dpshy.jsjs 928455b0e6b3a04da2d4fc9cc17de42c52ae2a640937dcbc9a048f76050c138en/a Quakbot
2023-05-17Yvbjh.jsjs 98cdcdcb624c476decaea84dc9e7ec812dff36fb6cd4145362d91a7261e7f690n/a 
2023-05-17Oxseyuxh.jsjs 6079eb911a652e1a864ac5ccdbf5aa911e2a2d84c51bfe423c89b9952e96cb3bn/a Quakbot
2023-05-17Druourt.jsjs c727812522b8c5b866763bbb0c4891a152b35f775e1f8c7629b26e3aa4be50fan/a Quakbot
2023-05-17Owfxsg.jsjs a5ee49e726c92c859248ff9a1ca6888a2946b78e1338a518fb53c02494397bean/a Quakbot
2023-05-17Xxlm.jsjs 7eaf4ae57c67bc9b26c013db515e616693a2f0c4d2c11adddeb05f782d743e53n/a Quakbot
2023-05-17Bujzfft.jsjs 3e8f2059c6207d6ca0ac1ded4b55490b18300a4996b7e37a9c216a15e92db2afn/a Quakbot
2023-05-16Phbgkfx.jsjs 0304de131974ec80e4fe1ec222817312b00e1c9252c7e5f3980c1c44942a7c46n/a Quakbot
2023-05-16Frimu.jsjs 2d5f79ff16f15b1288e57cfb1a956c419c34774bf5b038a03f0dae579da0ed3dn/a Quakbot
2023-05-16Duvw.jsjs 4c93331bb0bcf921179b26edec30cfd4edeea52f21af480fd5cd23faf32d256cn/a Quakbot
2023-05-16Wxam.jsjs 59a5c4bd92d64c36138c0e3b6e4fac23cf9f36c9940da8de8a39e40b21235949n/a Quakbot
2023-05-16Ruoe.jsjs 681a63bc87d3e45387ca6ae56ed3c04203211c8510a021cbd80244374f345921n/a Quakbot
2023-05-16Nlcaevhy.jsjs 9dc122a2d885e4c40ca6ac2e7c6041d31bafbbedbe819b31d01ce39ac9b3ce05n/a Quakbot
2023-05-16Bssigl.jsjs d19741a525697ff08c8de986f282e3e8327f9f00605af6f9fea9ac9410c83751n/a Quakbot
2023-05-16Ntjzton.jsjs 8762cd6197ee1f5424353c3c775ef23a39b880868f293f52ef1a5c912354e176n/a Quakbot
2023-05-16Dbffhol.jsjs eebbe8cfee364d0f9e88dd06748fed43747fe1c36f8011d09488e16df031e83an/a Quakbot