URLhaus Database

You are currently viewing the URLhaus database entry for https://adelahostel.com/qnn/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2633575
URL: https://adelahostel.com/qnn/?1
URL Status:Offline
Host: adelahostel.com
Date added:2023-05-16 11:25:24 UTC
Last online:2023-05-18 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-16 11:26:48 UTC to abuse{at}hostgator[dot]com)
Takedown time:2 days, 10 hours, 1 minutes Poor (down since 2023-05-18 21:27:53 UTC)
Tags:BB28 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-18Uqckyd.jsjs 76443e093ed6d6e3961cb5f9bbd546bab2d05f6bc2536c5744dc86f7a769bea8Virustotal results 30.51% 
2023-05-18Kedg.jsjs 6016f12710a18923ed029eb1dc62882b5f1a032a7424e0169dd8c2228598f59dVirustotal results 28.81% 
2023-05-18Jgybpr.jsjs 1cea0c4b1af9170b9ed2927f3b100d202bebd1b8e69ba1527336aaa6b2c0bffcVirustotal results 13.33%
2023-05-18Slogdm.jsjs 51ffefa8a10b6da720a80cec4735fe173669e7c974946e46c8dda908e824d8a4Virustotal results 22.03%
2023-05-18Bvalygm.jsjs 94934ae30e52ec564dac1007c78697059face6e178a3e5ed3c42bfb6342a12e0n/a 
2023-05-18Bgncbbcs.jsjs dc0d873178c61dae13dac14d65611d4716e9c28ebfa216e32126dbdd1ac971beVirustotal results 28.81% Quakbot
2023-05-18Xbwiudwl.jsjs 3ac894a6a388d20bc81ae5f8474ee788079f5036842b1542150a55c8fed2059en/a 
2023-05-18Jgfbcj.jsjs 49636b8d67746ef7da6e75b7b961332aa2ec681c92060c1648c4a9730e0abf7eVirustotal results 23.73% Quakbot
2023-05-18Yljzr.jsjs e98ab08e4897807987344800297aa41a72fc207a57b0e89510243b3b8ad0e144n/a Quakbot
2023-05-18Iwingoz.jsjs 185a635c927d918ae74aea58092eb9ecedc06bed0129605f9c210f1a3ad2d63dn/a Quakbot
2023-05-18Lqcgudn.jsjs aa29c7434c1bdbe52fd461a295dac0931392a0852902d70bd91693bedfc48375Virustotal results 31.03% 
2023-05-18Xqvaddk.jsjs e4e514b57ab086485b47e1413c71a7e9bebc8c84c6615f90bf252d04c98fb5ebn/a Quakbot
2023-05-18Mhhrjtpp.jsjs 20336fdfef9d5684dd6055ff838104e334316b82122b0a12b809b529b1a66cefn/a Quakbot
2023-05-18Ynjpfker.jsjs 4763068a93fa58650c7a913bb253b59fb9f5f7da3d041d28302d9d1b4d301008Virustotal results 27.12% Quakbot
2023-05-17Whqzees.jsjs 9b57a0a1ea9fbea6fc63b1a41a52f5dc8e9fa5facdff20d031096a0075e9c715Virustotal results 30.51% Quakbot
2023-05-17Hhgsp.jsjs 9e158a8d22dc98e3ae057267f1f3abc2cabc910f829c052269762460d602479aVirustotal results 25.86% Quakbot
2023-05-17Gpjdtof.jsjs ff50e9d6bada1c148165cd94d8242cd7c0651692a508bbec763046c0ad17be90Virustotal results 32.20% Quakbot
2023-05-17Inxakda.jsjs e7b23f3002dffd67a5026b9ae031fe92c033bd7c37c6bb15323d3bb075275d89n/a 
2023-05-17Mgozpoxw.jsjs 02736e3801e700601d6212804b2d824ae4771d32fb369044887fdc9f2076ddfdn/a 
2023-05-17Fumri.jsjs 213ee67765673cf53e5f361c49a1bfe40187ecfa07f72bd5a77d13e1f437edf4Virustotal results 27.12% Quakbot
2023-05-17Avenjmcl.jsjs e097747aa43ca0c5787d98ebdab3ab67fda12444d287a4a0702a670f0b2494d3n/a Quakbot
2023-05-17Cbytj.jsjs c2cb5152f24cb15e6e4fc208048ae08a25284b88243281e70963fbf4b64e0dcan/a Quakbot
2023-05-17Dyfdyij.jsjs 38af231bb2ad1f4960af3b69e2faaceb277d138bbfad8938c5bb107d7a8f7d35n/a Quakbot
2023-05-17Cbab.jsjs c928ef942e71ecb30ba0f1a67bfda8e42bd31342e08d959b966f358ffb9727can/a Quakbot
2023-05-17Tzth.jsjs 9189447c50e0bb15cdaa804d28b73a2b26f48e3817d75701fd074255bd2bbecan/a 
2023-05-17Itwkj.jsjs c9de72a47e040b62e6dd9da60f5dea2e2be3292eed81938ba6c1210157d3f13bn/a Quakbot
2023-05-17Dqgela.jsjs 61ca1b796564199728d5dcc8352c81f0e1064b79f2dc1c4cf55dfb4df66acab3n/a Quakbot
2023-05-17Wayx.jsjs 092267c9a9d22b9bdd4a6c7574d68ed8d19005c65c5675c74a7525d837cd1f7an/a 
2023-05-17Dkuhxqbm.jsjs 84fb55e344ea7646c996a9348ca8e28975685802849a7625b2407e7f4ed324a6n/a 
2023-05-16Breuihld.jsjs 2e6fef25b7d77320c1d7b82a85deced3850b77b1321ae2a9727bc0907f244e21n/a 
2023-05-16Vkef.jsjs 5e5e78427d7dcee54d1df3bed8730468d9a54978a40456a7270bddbbb4d99646n/a Quakbot
2023-05-16Hcph.jsjs 30be5958f8a4cd89986d17521f2e86b83abb0b76eeb76d022c5af86ebe57bdf3n/a Quakbot
2023-05-16Iljky.jsjs e34d8321b762084be520ff46361c999efe5185b705e76ffa19a970ee9ba53e3dn/a Quakbot
2023-05-16Zhbboxa.jsjs 65459ba5724d119dd36c148e5a5c393c5f5abd3c42b303ceb94b7daf88890e8en/a Quakbot
2023-05-16Razw.jsjs 2b0563bbb30e1059f683331c6ab61d0d7492bb0460eafd29d7ffff29bb69f960n/a Quakbot
2023-05-16Plyimf.jsjs 43b87209dd4e766b625ae2d6dc35f773c6939c23f20d35d3bc448f213b197722n/a Quakbot