URLhaus Database

You are currently viewing the URLhaus database entry for https://baitulhikmah.org/oeas/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2633591
URL: https://baitulhikmah.org/oeas/?1
URL Status:Offline
Host: baitulhikmah.org
Date added:2023-05-16 11:25:29 UTC
Last online:2023-05-18 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-16 11:27:04 UTC to abuse{at}hostgator[dot]com)
Takedown time:2 days, 10 hours, 15 minutes Poor (down since 2023-05-18 21:42:57 UTC)
Tags:BB28 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-18Glzezy.jsjs 1cea0c4b1af9170b9ed2927f3b100d202bebd1b8e69ba1527336aaa6b2c0bffcVirustotal results 13.33%
2023-05-18Xfkhyyvv.jsjs 6016f12710a18923ed029eb1dc62882b5f1a032a7424e0169dd8c2228598f59dVirustotal results 28.81% 
2023-05-18Bgrffi.jsjs 76443e093ed6d6e3961cb5f9bbd546bab2d05f6bc2536c5744dc86f7a769bea8n/a 
2023-05-18Dxtfpgv.jsjs c6acb46e483e7792474a50acd3a7ad70626f538da57050c7153b3061376b4f02n/a Quakbot
2023-05-18Yxpzkz.jsjs 256b5693dd43ba9ac782255a11f52251481f5d72c27042d4b6f9bb05aed317f2Virustotal results 24.14% Quakbot
2023-05-18Xken.jsjs e83bd9c4b21fcd0dac063c512259b7310762d0f7b923cba778206403e5314398n/a Quakbot
2023-05-18Yirsxu.jsjs 7e29b555dd10291e663446073640ea5519a3e38a3655264511bf14299c86dccbVirustotal results 24.14% Quakbot
2023-05-18Bhntdz.jsjs 356f8c2ebf3f6ab97ed37e1195e6ccc8d5441e37c038c0c09c7f481b5aa205den/a Quakbot
2023-05-18Rwpofsbm.jsjs c936abc12d461d92641e807274f5df2fb3c02f2e568920845092ed9547299bafVirustotal results 8.47% 
2023-05-18Cjwum.jsjs e21d7ce5a24617b4a823482fea8b703cee1f434028f5ee807b3d77bcb4197988Virustotal results 14.29% Quakbot
2023-05-18Tyjru.jsjs ad3a510115f62b2cdabc978db56cb5d93c372bcf45b52fa39d4d125e1cae3caen/a Quakbot
2023-05-18Mesic.jsjs 8a9af030d5759e428811a44e1582012c64fdef7059286c4c1693f13566e2d3b1n/a Quakbot
2023-05-17Synasmjs.jsjs e1f86c377a5fb822c6704735ae1fc4f80bddbea822ee597fe99762e575e05ba2Virustotal results 25.86% Quakbot
2023-05-17Bcpze.jsjs f744aaa7347e22e22b0047605341e57c431a9dbcdd028ca5713a221c51107aa1n/a Quakbot
2023-05-17Rewy.jsjs 53b3144d6c4d4163d5317d32d6bfcc11069a721edc167234c3599a6e2aae5274Virustotal results 25.42% Quakbot
2023-05-17Bcaw.jsjs 246f0936618439433071e920bc87c631f7506091006fb43ae80612f430c0846aVirustotal results 26.32% 
2023-05-17Vatetwmr.jsjs 479435405ce11b58fbf16a8d7d4f3f1b2d8952718a2dd79f8c0e4ecb91176be8Virustotal results 32.20% Quakbot
2023-05-17Plbsr.jsjs 7b0e64b5b88495d402a11b16ad7776cc5e0d44a07992e8b9cf9c7006a92ac8bcn/a Quakbot
2023-05-17Phqdsa.jsjs 5e1581b1da5a05a5baee064cf15334c7199e5808fcb9b16decf62e6cb66940c5n/a Quakbot
2023-05-17Wvdvhzp.jsjs 7dc14c011adaa2df81c035b43222c113266bfc77d568441ff85096100920b84cn/a Quakbot
2023-05-17Hzgy.jsjs b2e45ec05f6794f35b2651614e907a2bfa3e5e2f6e5acb14e6729923ce132f94n/a Quakbot
2023-05-17Drenwiy.jsjs 6f5f637ea9aa8561e8b9cb7ab9734762cba029bfe6bfbad438df2202f79a2869n/a Quakbot
2023-05-17Vdpwof.jsjs 2d135dc9c66d8754e0699f63f088326a9c8126c637ffaa04b2796b940ae29832n/a Quakbot
2023-05-17Cgwb.jsjs 65f76e92f470d178bcf20715fbe8ece2e6065d8e61a2e4d1953c2e6b7ab508e9n/a Quakbot
2023-05-17Xcmlxqh.jsjs 55de962ff1828b600e372cda7a7eee0524faf06a319e58251d6a27dbf5baf862n/a Quakbot
2023-05-17Dphljoc.jsjs 5fc2e9d53c4381ebfe2c8281839a45a428019470e928764dcdd7ab89d93f1af4n/a Quakbot
2023-05-16Idnaau.jsjs 174ad687f5962c5c1ac9762f15433b3dc5c042a4caab3aef26df5c2b2e354551n/a Quakbot
2023-05-16Rbgk.jsjs cd0e800e8e486df0d7277837c0182264342eef3920dfd37e7ed4bc0289184b03n/a Quakbot
2023-05-16Baltfesv.jsjs e9d3901f228ab5ac7eb7adb5b9b083430b7a680a9eaaefbe0c27018807c375b3n/a Quakbot
2023-05-16Obgto.jsjs 5a069581c5877983aff57b4771504443903c3cdd8e3b64c3223849b83f0ac6e0n/a 
2023-05-16Hayxrct.jsjs 755c0f93a410a01b7281751f2c741634038b35c35fa57b6f0f93b256372ed83bn/a 
2023-05-16Ducqkq.jsjs eff5f04ed6dc77be624a9e8f915703eef910f2e49f0cf069f59823f45ce9d082n/a Quakbot
2023-05-16Zhdlylgf.jsjs 443b41dbad6c4c4be2c34084ec983ca974466511b74065de0a5fa7a7760926e0n/a Quakbot
2023-05-16Rccimra.jsjs 7a8503c19e06cc665959794fc9bdfd50fa88cf42e049d790b678b9ee4cffaafen/a