URLhaus Database

You are currently viewing the URLhaus database entry for https://yample.com/oxae/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2633568
URL: https://yample.com/oxae/?1
URL Status:Offline
Host: yample.com
Date added:2023-05-16 11:25:18 UTC
Last online:2023-05-18 22:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-16 13:51:07 UTC to abuse{at}cloudflare[dot]com)
Takedown time:2 days, 11 hours, 15 minutes Poor (down since 2023-05-18 22:41:36 UTC)
Tags:BB28 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-18Quye.jsjs bbcdb87a842c5157acea98f0cedd358f764e2613b6a635e4f9f5946de8c07780Virustotal results 13.56% 
2023-05-18Utna.jsjs d76b1300fd995ec8def343df0450c11a58a217803fee3749db4afacebc64182eVirustotal results 22.03% 
2023-05-18Hxoo.jsjs 6016f12710a18923ed029eb1dc62882b5f1a032a7424e0169dd8c2228598f59dVirustotal results 28.81% 
2023-05-18Zrhacytu.jsjs 1cea0c4b1af9170b9ed2927f3b100d202bebd1b8e69ba1527336aaa6b2c0bffcn/a
2023-05-18Klwqe.jsjs 0f9975b760f5de0e55d98fc60e72802bcdbd786e193f73266f190799bbeb2fe6n/a 
2023-05-18Qlwcplf.jsjs 2bcfc438cf9c0a4f72832a134f6709c7596645ff3d738abe3b2fd53250ed50f9Virustotal results 22.41% Quakbot
2023-05-18Clsxzgc.jsjs 2570cf55120f499263bb8841172328a59101385bd1804bb919458e9bf167319bVirustotal results 25.86% Quakbot
2023-05-18Xdmxf.jsjs b7c08519c7c42c933959411b973cf0045693335de503ec8af7235576bf7ece66Virustotal results 28.81% 
2023-05-18Kfbx.jsjs 5155a314d6e44ed6eb4d65e80d368d8bcd4e8674e293bce8d712b03395d22f6fVirustotal results 11.86% Quakbot
2023-05-18Cgtg.jsjs d298331f4833111dff68336933087e322debd03460a21ee0d22d0d8e2b5f7ca1n/a Quakbot
2023-05-18Qynxtbti.jsjs 946d5e2c822a804863dd95b51f9cf5738b216cacbfd4e739d28af66952e4821cn/a Quakbot
2023-05-18Xxgkql.jsjs 0eb7615075853fea63154c3bbd2be5b4bb724f0717a67082633fe348e45b49ebn/a Quakbot
2023-05-17Rsfgbnx.jsjs 783e0a457afb1237e0956e6ff847bfcdb49ee23036f51b4621b534f54d67112cn/a Quakbot
2023-05-17Xgbyzl.jsjs 66718c6f0ac9419d7f5bb30cef5272328e503b226e7ee6157072e26782f6421fVirustotal results 16.95% Quakbot
2023-05-17Olvskzkb.jsjs 7e14e82b93e7a51daf3ab028772a41e20e60a31cc1a90985cf3598206b08805cVirustotal results 25.45% 
2023-05-17Ucntsjs.jsjs bf6a2013ee6092e2d291a06d2f69e617b318a1e842a0d559b91fa1b8f8ea1a1dVirustotal results 25.42% Quakbot
2023-05-17Yohyism.jsjs 320db1d64ed5a7a4ed401ebf9861a9776e220be46c59f4113bebf562f9e506f3n/a 
2023-05-17Xuqen.jsjs a2fee1f921c59d61590ed86bdd9e19a12b68d9722d228d0e5bef678bd31d461bVirustotal results 30.36% Quakbot
2023-05-17Wrpf.jsjs 2a893ca454c8da14c3b8682420a27dee70132a6fc3dc8975c4ff49a12a7c64d6Virustotal results 27.12% 
2023-05-17Flqykbbw.jsjs c6712a15900f7986ac9ad350dec34f50284b50e708bdeb42e320d99659f8d46fn/a Quakbot
2023-05-17Rrxkofjp.jsjs 6e50c9454939a5773b93234fa069e24ed0e191356833f71cab5d5610cef78fabn/a Quakbot
2023-05-17Tvqdcuux.jsjs 0913948317c92ad8a35636eeea4960a89402ac20bc2dd634b166743e12263453n/a Quakbot
2023-05-17Axcsq.jsjs 8c487543fac6be2277339970b2c2c236def61e3ca0b0386d72a11e9dece60922n/a Quakbot
2023-05-17Oitpz.jsjs cbfb10a0518ada0eddc18fb0f03f49c65ca3f9e546c0131079bbee54fc9266bcn/a 
2023-05-17Ycey.jsjs 54d46ff841a71853edf553115cd01846e2f1e5b15052459b90849e0335d07970n/a 
2023-05-17Iaxjpgvx.jsjs 790e7bb5c231d776f1f6dc1b09ecff794e9dc1daa5051cd0e6462e4d538a9bfcn/a 
2023-05-17Mzat.jsjs d57fcfd2aa9fe4fcb4f0f274373d12bbf5abf63563c0ec8e76b7016c9c670384n/a Quakbot
2023-05-16Vnlq.jsjs bd09ad3156724e0003db337440d9893f986f108b288bc1f81156aac1b67a20bbn/a Quakbot
2023-05-16Toonx.jsjs fe73999d8f7061e6d9592eb8747c98cd5ba6e0bd0a2fb4ac12321016bb155c43n/a 
2023-05-16Dnpadw.jsjs 0b2eb55eaa857ef82ef0f85160d681c617bdb0d0c317ce262dea6b9ade8f0690n/a Quakbot
2023-05-16Vxwourr.jsjs e351b3c49e507a8130829dae004be155078b9b0512a2c399e30bc59e8cfa04c3n/a Quakbot
2023-05-16Ajtb.jsjs 4e1f87576471311690d01c90f2e61326bb37acba9900e35479bb3b981140a7fan/a Quakbot
2023-05-16Klcipzn.jsjs 0c0ffbe9a1e892b0957f05aac52d2603169404344ed20dee40afe8b7dcac7597n/a 
2023-05-16Gisuqocd.jsjs 5c75672190997ec5a40398cecbf5aab4ee5ffc0dce0dad20cb21790aa85a57c0n/a Quakbot
2023-05-16Urwk.jsjs fd7a27494aca8f73025a4580cf1f9374be054a6319d928fb56893243760db53bn/a Quakbot