URLhaus Database

You are currently viewing the URLhaus database entry for https://pricelala.com/slq/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2633640
URL: https://pricelala.com/slq/?1
URL Status:Offline
Host: pricelala.com
Date added:2023-05-16 11:25:41 UTC
Last online:2023-05-18 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-16 11:27:51 UTC to abuse{at}cloudflare[dot]com)
Takedown time:2 days, 9 hours, 58 minutes Poor (down since 2023-05-18 21:25:58 UTC)
Tags:BB28 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-18Nqzojmf.jsjs d7522ab4f64ae0950e24bb00df9157136bbcb900ace0c77bd1a46f06149bf37aVirustotal results 23.73% 
2023-05-18Qztsfvs.jsjs 51ffefa8a10b6da720a80cec4735fe173669e7c974946e46c8dda908e824d8a4Virustotal results 22.03%
2023-05-18Anwpxu.jsjs c74cf0cb7927a8438a84c9cedbdbab3e4815550813336043f39674a67b6a021aVirustotal results 28.07% 
2023-05-18Kons.jsjs d3c6e06204212c1aeeef29809460056535cba3beca8cf163b7c8719671ef0c9fVirustotal results 22.03% 
2023-05-18Qydsv.jsjs cab5b03ee09bfe0900e66af11a908c9d53b02c3a2d03a8ba61d78a8e6f1dcce3n/a 
2023-05-18Xacy.jsjs f0dbb6e29c6d7e8d5463a1e716423776b0aa2be9fedbdd957adf165559ca8a5dVirustotal results 32.20% 
2023-05-18Odphxz.jsjs d25526dc27feb5e67f938d4b403a9dad1250e9bad80e8f4d66a22d696dacc328Virustotal results 32.20% 
2023-05-18Pwyiznll.jsjs 2a38d5dd759f5e13e433429b8fbed42e9b1fa7de9f671bf87d0739862847c16aVirustotal results 26.67%Quakbot
2023-05-18Oudb.jsjs 08b43f87f3dd81d9be92cb99ab4547399f67348b7ffe33011b49947b98a44046n/a Quakbot
2023-05-18Vqoiq.jsjs 28e8b66452412d01288417d1253f85d6981dd1fe21d53dfb5cbd49822a60cdf0n/a Quakbot
2023-05-18Xkxii.jsjs 8f5bae7c3310650dc125b9223695f4a40a6d1394f6f6f9dff466a3e53099ba7en/a Quakbot
2023-05-18Lsqdypv.jsjs 0eb9fa07ffbdae465ca7afa7b68b6b38311315046844cd6ac97c9e3b77d5fe99n/a Quakbot
2023-05-18Fvbtkvva.jsjs 7cfdf6db2bcad8f5b911ac39a8da45e6a8bc3e53c287742c8afc09821a544c0fVirustotal results 29.31% Quakbot
2023-05-17Hhxg.jsjs f15cee857739e493f0b99f7ec002e9fd76dd37b87080807a922a414a5294c989n/a 
2023-05-17Exujye.jsjs 176082ec2166a938b76477a4d42d940987b38d787c43628c9e17e75057338dc2Virustotal results 10.17% Quakbot
2023-05-17Pvbffsj.jsjs 47b6986c5352ef5a3ecf9cbe02d34caf8e096cb6635c958ce8dedb89540da3d8Virustotal results 26.79% Quakbot
2023-05-17Xygodmxo.jsjs 8496ebcccb2676a1fb21ed0fdf36c320fabcf9036d275af7acc025b0182e7963n/a Quakbot
2023-05-17Bbhxowd.jsjs d2ecbbc4d10634ac3f47ce638df6c4302d7335ab985c09f6accdfe4df322ddden/a 
2023-05-17Blrr.jsjs f72249d2446e19299c3e74d70064253963b884cc61a402aaa18a78e044f901ecVirustotal results 31.03% Quakbot
2023-05-17Pxhbuk.jsjs 9e158a8d22dc98e3ae057267f1f3abc2cabc910f829c052269762460d602479an/a Quakbot
2023-05-17Kdbsxpvu.jsjs 7723afb8d2a1417a6f0c808e628394b609e66227688064323ce47b25cb0505bcn/a Quakbot
2023-05-17Kziz.jsjs ffd24aab1c4eee16f5c90a0ff61484a7f6b5d6288d29d311400d7da477d129b7n/a Quakbot
2023-05-17Qytzwlw.jsjs 1038a5e94fa814d032ef6e6cc6fd2065563027454288fe7565e8d6909b82e401n/a Quakbot
2023-05-17Jyliqny.jsjs 156376558915485ac10f53d967448669e596962899768f88cf07442fe67fe61an/a Quakbot
2023-05-17Dknds.jsjs 21900bc4247b3736e9f978627e73dcf86ab01f5f2e5c65800cea1be88173271bn/a Quakbot
2023-05-17Qcbcrvn.jsjs 74485a710c8009be9c04ef21386c76168ddbf90e2b8d7f4967611edead6e0236n/a Quakbot
2023-05-17Afnlelpk.jsjs c6e1d79a7e66637c5df47160b22d97eedcc2a67d3647968253a4a6a8f430c9e2n/a Quakbot
2023-05-16Ipngh.jsjs 618e41c64b08d1feb445ca713842cab6fbae25836efc590c31af18be1f1e4182n/a Quakbot
2023-05-16Fbctcp.jsjs 2d7fb2356803f6f33967e7f7dbc684062a8df1a98952d0b01ed0e79c90722db1n/a Quakbot
2023-05-16Pfzzhv.jsjs 44e4f0f649962d393bcdc1d057e2a1e30e814c3bf517bd1d5ec0f12fa4647430n/a Quakbot
2023-05-16Ygkdsi.jsjs c0625edc1a3a6950f8d51a4eaf243bc0ee5f2f3720fa8de40ddc88665ae4e82dn/a Quakbot
2023-05-16Wpdsey.jsjs 317df03279581c37574a8ad1230c3769518a3fa15b1c5df171f6a81491e7784en/a Quakbot
2023-05-16Izdtpr.jsjs 2834f0aa1443084c21eca6d3101799c3de242d81944f991f5bcf9e27f5fca0e7n/a 
2023-05-16Lpwmsx.jsjs 7c41f3eaa66fbd7a0362a2c1118d8e6ee32ac3ece83cd15ebb2395fe30dd058fn/a Quakbot
2023-05-16Npxhn.jsjs 38ef8cab1a9a53b41b647a9d6497378493913b3f11dae661205f79ad8acebc0an/a Quakbot
2023-05-16Nrifs.jsjs 5a0f996b5735658920358d0538edc9c4ad7c4a50e023dfe249345e7c22b9fd61n/a Quakbot