URLhaus Database

You are currently viewing the URLhaus database entry for https://localuaenews.com/hl/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2633592
URL: https://localuaenews.com/hl/?1
URL Status:Offline
Host: localuaenews.com
Date added:2023-05-16 11:25:29 UTC
Last online:2023-05-18 22:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-16 11:27:05 UTC to abuse{at}namecheaphosting[dot]com)
Takedown time:2 days, 11 hours, 6 minutes Poor (down since 2023-05-18 22:33:57 UTC)
Tags:BB28 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-18Drkazrum.jsjs bbcdb87a842c5157acea98f0cedd358f764e2613b6a635e4f9f5946de8c07780Virustotal results 13.56% 
2023-05-18Npaxvo.jsjs 1cea0c4b1af9170b9ed2927f3b100d202bebd1b8e69ba1527336aaa6b2c0bffcVirustotal results 13.33%
2023-05-18Gilrobes.jsjs 6016f12710a18923ed029eb1dc62882b5f1a032a7424e0169dd8c2228598f59dVirustotal results 28.81% 
2023-05-18Jxeaicr.jsjs a7906e51fbf998026902f06ec854057957c14f43bb3c83ad7a7ec73116773439n/a 
2023-05-18Yecjrs.jsjs 3c4d813af231229cc2b961a17a923de449a9f8d67439dd976effea73360ff766n/a 
2023-05-18Wllm.jsjs fdf950ea03d008fe87c7f897e464c152d19d8f830013223033ceb1852f37ef5en/a Quakbot
2023-05-18Tlvrab.jsjs b243ce7f5b24e6eab35ff99fcc718064f5897388b337460b05226b50e50b7dfen/a Quakbot
2023-05-18Vrxvesni.jsjs ca99a531b2e34c4f23683a2cf2f4a2e81bcb2cc4975ba287d0bc6ef71563472cn/a Quakbot
2023-05-18Iifondrw.jsjs 714d6297effa9020249e19940853d50dcb2ba31d5301a716f34ddf73f9a58bf1Virustotal results 28.81% Quakbot
2023-05-18Gtce.jsjs 9024a49a844d092fb509a2d8e48a42cd4209b347497199616d579fa84a136fc5Virustotal results 25.00% Quakbot
2023-05-18Pcik.jsjs 2ffe30857db286ab5839fb47499480fff446371b3c1f8df2d8dde6853266f088n/a Quakbot
2023-05-18Lhbqob.jsjs 26e8f5245d3928df93af31946f3ff6dcf2291861ef4835e6b23e145cfcf9f8d5n/a 
2023-05-17Tigmxz.jsjs 3cc62e68f657fa870eabb640cd8e651d4ee69a242db9feadeecdbe6a0435ea99n/a Quakbot
2023-05-17Lkwzk.jsjs e90a83b63ded96ef671ed3692c8983df0d5845adeef9c03bbbacc8a34cc8db79n/a Quakbot
2023-05-17Wbnusf.jsjs 494e69eca209ceb575b3ad74ff164605bc99c57a7621108280f95412b64e0becn/a Quakbot
2023-05-17Cdbwdhv.jsjs 6b64266f2b4feb2f9f045a12882dd0a54819e4eb7d840e0c0c092944b0a8ef11n/a Quakbot
2023-05-17Ikmox.jsjs 8fe6b80c39f345411e663560d164edb44cbf0ad7ba4914ba79f02bb403348f27n/a Quakbot
2023-05-17Nrxjk.jsjs 5089e9979f6a45bba9ac940e1e725185230875623b2242cad8dfcf968141f073n/a Quakbot
2023-05-17Edpwyx.jsjs 66718c6f0ac9419d7f5bb30cef5272328e503b226e7ee6157072e26782f6421fVirustotal results 16.95% Quakbot
2023-05-17Desppr.jsjs 78fe92cb616a30ee401ebdc9ceeae3faf74bafb56db1683dc273a5635a4c9eban/a Quakbot
2023-05-17Fbraulvd.jsjs eddf970596dbd3b8d0471c2f55c3c7d73d280981272700cf0a72e772db6330e6n/a 
2023-05-17Dtskvmy.jsjs 275cf2992593f37b3937bb8476b91bd6099b275ba3fc27002a29d50cedaadb1bn/a Quakbot
2023-05-17Eiozjt.jsjs 6232f1efe523e69b610d3ad7aabbb22a083c6081ac301ba80fb419546e03a573n/a Quakbot
2023-05-17Vjwu.jsjs 558955a70957a69f4f5827d9bd38cdc6f4e7ce56a05d4d1f73539d010e27f031n/a Quakbot
2023-05-17Pvcpdlgk.jsjs 1e4943f63991f6ace4adbf22e1d6195ba436d00f2c898fa627b37adad8569495n/a 
2023-05-17Luomt.jsjs dceea751c950c91a4d03b97f3994065adfc19e9d5c036594caa2307d2f20453bn/a Quakbot
2023-05-16Oqxz.jsjs e9d23a23e8b45f9147a9b969bceff7afb35d46022f67a75c868bcfd505a8280en/a Quakbot
2023-05-16Vvvdfo.jsjs a5f3efb85fc6ba0ae1f3f3816c1aba3a0acc53481b0438737d3257d09a70da5en/a Quakbot
2023-05-16Fvxy.jsjs d818f94c5cf435ef776a6cb382fd6056b035d13b502ffda9e4f23ab241471b15n/a Quakbot
2023-05-16Whjok.jsjs 861f393e645904d3617196f45b8a40296326f440ab1296a8f68aacb490caa32en/a Quakbot
2023-05-16Uosqu.jsjs 1f9e83088106614d8f3966d3a820bdba9dbdebc467888705280cd679b45788c1n/a Quakbot
2023-05-16Taaxb.jsjs 7c2a04dd3f938e6d53e49103a1875f8844629fcef89ca72514f4fdb92b59abbcn/a 
2023-05-16Sywplix.jsjs a1bb40b5b98ae803f909d4a33b1e67d16c538affe5091f4903c69b836d140e0an/a Quakbot
2023-05-16Rctkob.jsjs 0dff018009ec4a397fb83d93e5ff8e1259f3edff5b1ca72c44cc7e02f7fa595bn/a 
2023-05-16Krwa.jsjs 103e519556e7ecbc01326da7141517bbd694a14136313bc93e35304957807bbcn/a Quakbot