URLhaus Database

You are currently viewing the URLhaus database entry for https://allkinkshop.com/pmet/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2633580
URL: https://allkinkshop.com/pmet/?1
URL Status:Offline
Host: allkinkshop.com
Date added:2023-05-16 11:25:26 UTC
Last online:2023-05-18 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-16 11:26:54 UTC to abuse{at}namecheaphosting[dot]com)
Takedown time:2 days, 9 hours, 45 minutes Poor (down since 2023-05-18 21:12:18 UTC)
Tags:BB28 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-18Tsey.jsjs 1cea0c4b1af9170b9ed2927f3b100d202bebd1b8e69ba1527336aaa6b2c0bffcVirustotal results 13.33%
2023-05-18Qizarm.jsjs bbcdb87a842c5157acea98f0cedd358f764e2613b6a635e4f9f5946de8c07780Virustotal results 13.56% 
2023-05-18Txquix.jsjs 1a2e818afb29521c8658d2a0643158af97370d69c32c0bd85cb900bd3e85b0eeVirustotal results 23.73% 
2023-05-18Gzcdwhd.jsjs 24579cbeb7c33196bff853d67ce422776e45c942b057519eb6a6c453ed30ac62Virustotal results 30.51% 
2023-05-18Azhllk.jsjs 215820e48ebfa9dbcba7260a2176ccbb21df119cff17a8389f165811c8e3664bVirustotal results 31.03% Quakbot
2023-05-18Zvxq.jsjs 9fb9192d902b2bec0253263ac7de12696284a3203d04c735faf491c94c94ed32n/a Quakbot
2023-05-18Dhakzx.jsjs e50886cba40b1a43e2a678f24566fd07c951a78a554670ec3b2f25a3866d0d57Virustotal results 22.41% Quakbot
2023-05-18Qsmu.jsjs 906e50a48250213ff6fa64b72219e204e4f47e919757a5b1214a5e7682a44da1n/a 
2023-05-18Revjp.jsjs 17da932080db984c8594c50184bd0cfde690ed29cc7cd73f3136474e2cae191cVirustotal results 32.20% Quakbot
2023-05-18Fckyfvy.jsjs 13429cf0cc28ad9378b2b6c46f7c85f5356150262bfc598353fc15c0530e893aVirustotal results 23.73% Quakbot
2023-05-18Dxezai.jsjs c97e0d75191c3cd583de9edf9cef56be0b4b4bb3e072a64e3fd6133eef6ea96dVirustotal results 25.86% Quakbot
2023-05-17Uuhu.jsjs 42b8297467af3118af88bc8bd71bc4b1cff09e2fdd17dd631cda319c5c4cf592Virustotal results 24.56% Quakbot
2023-05-17Kcrf.jsjs 61ef6ef0f9ddc3b6d4b8201a85d35c7ce79058c5ccbb5ccb51e68f15898a3bf9n/a Quakbot
2023-05-17Vaij.jsjs 0d025c1350cd713034b5b581118f5b7a71d0ba2551cc2321adbd286c8493fa25n/a Quakbot
2023-05-17Zcjqfi.jsjs 89ddd75a9d671f30070d8ed74468e507a72e5ca5699855296beb959dae2b71b3Virustotal results 11.86% Quakbot
2023-05-17Abkfia.jsjs 74e7f951fe5dcd84fa5c570a1b2e27991662022a85a90f8f38cff80d462e8541n/a 
2023-05-17Icyszg.jsjs c321a1664d74da4f73b983c793c4059b38202d4116be2e9f53f9aa1d4320d830Virustotal results 24.14% Quakbot
2023-05-17Jrsk.jsjs 9459a0cb6bc3dff0f7972ac6852fb2f11dace3df33eded8be946a0ca5f1160d7n/a Quakbot
2023-05-17Swyf.jsjs 2971e245d875fcb96bbbbcff59e1a34e0490ae85f5e8abd688b28772bca0b30fn/a Quakbot
2023-05-17Gzexf.jsjs 8703d0f80cfa1a56619ae3e43e114c5476d1f8712c3bd993c4b738f6d8ca1639n/a Quakbot
2023-05-17Txmwojvu.jsjs d16ae7e6f5342c2562a6a6c44deddaef1122126e19f27f1b0351296223416635n/a Quakbot
2023-05-17Anhvd.jsjs 96b799e6167315a58548ef99a97004ecbf0b9bdf6f5f5fb3e12027a15beba5e3n/a Quakbot
2023-05-17Albqz.jsjs a058a93ee475277a41a74e20eabf958709b9817fb6869c8300496fffac1aa739n/a Quakbot
2023-05-17Mmsflym.jsjs 462ba59582a998e59d232682b5f7070d16e775636177fc30a3bea8fb1c3005f7n/a 
2023-05-16Llctmh.jsjs f41b1de526953793f8d2e721b6609ccc8843b5d65832b07d15b23c7e53ee54c4n/a Quakbot
2023-05-16Qnvrnfs.jsjs 67ac41a7b2624fa07cbefcae203cfe2f10986435832829766f5cc02ee0c5f78bn/a Quakbot
2023-05-16Wgzmla.jsjs 9c826aa9df815dc96e6b11042e112247118b4180263b193b3ac48e9a58903b55n/a Quakbot
2023-05-16Kantqsh.jsjs 59a03e7e98799d4ac559dc6c2c128012b543d6d3905122cbcda818231b01db48n/a Quakbot
2023-05-16Idkxhjd.jsjs e5cf6adc3ab08c40bf963dd3bab1658dffdd82106bb5dcbdd22c2e1c97c31cf6n/a Quakbot
2023-05-16Ftnoa.jsjs 69378c93182a76a5da3493af181a7e6acba5efdb1046f2826f326ce6d7561e26n/a Quakbot
2023-05-16Qzoxgymj.jsjs bd3aebe2599f5caaef6ef4508f80ac69091876db28ccd6f1d8a82c39425ba6aen/a Quakbot
2023-05-16Wimyv.jsjs 2f760793cc25890f261bcd68c56014e6719b300caaf7a09dece521fe1cfcdd10n/a Quakbot
2023-05-16Juwggro.jsjs 50a2eee46ddde8c1754377266d5febc7788fadb7b13d5d4802f2b472d31d8f6fn/a Quakbot