URLhaus Database

You are currently viewing the URLhaus database entry for https://semitictribes.com/etss/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2633649
URL: https://semitictribes.com/etss/?1
URL Status:Offline
Host: semitictribes.com
Date added:2023-05-16 11:25:43 UTC
Last online:2023-05-18 22:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-16 11:27:58 UTC to abuse{at}namecheaphosting[dot]com)
Takedown time:2 days, 11 hours, 25 minutes Poor (down since 2023-05-18 22:53:37 UTC)
Tags:BB28 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-18Bqlldzz.jsjs 76443e093ed6d6e3961cb5f9bbd546bab2d05f6bc2536c5744dc86f7a769bea8Virustotal results 30.51% 
2023-05-18Rgkz.jsjs d76b1300fd995ec8def343df0450c11a58a217803fee3749db4afacebc64182eVirustotal results 22.03% 
2023-05-18Hdhes.jsjs 1cea0c4b1af9170b9ed2927f3b100d202bebd1b8e69ba1527336aaa6b2c0bffcn/a
2023-05-18Sgdk.jsjs 32786105579d9ee90c2b3e3c5c1aa115af93c9931e8629901c02b41150fa1636Virustotal results 27.59% Quakbot
2023-05-18Gnslgf.jsjs 43a19d17453fa7c2633186d340c06a3b0b794b8cfe7e6ce0adf02f44713c5e25Virustotal results 23.21% Quakbot
2023-05-18Bhgmr.jsjs 657ba945eb9c34584fcdaaaf316636af2fcddf21425ff248bf2de46d55dc8147n/a Quakbot
2023-05-18Imlohwym.jsjs 3bc2c76bd30c4f67c56425ecd3201a7bd43655778be5fee4b7a2f72478c57d5fVirustotal results 26.67% Quakbot
2023-05-18Jfqmlc.jsjs 6da5adb44a26381ff077fb8a45c8d20a4888393b3fd5733d6fc8ac4519809c94Virustotal results 25.00% Quakbot
2023-05-18Vwxqkzss.jsjs 39ac88782d43b40c56cd7245203211f747e986908f13072c8d6d6caede0ef79eVirustotal results 30.51% 
2023-05-18Mkoo.jsjs 13c75bb7b88d3903fbb5263103d8e12f736ce24e98fc6397eb0286451317c087Virustotal results 27.12% Quakbot
2023-05-18Ciizd.jsjs 35a99626b0db91409ed1ac874964033c1490a20549ae611e95fa7f81dbd98d44n/a Quakbot
2023-05-17Kyyzpg.jsjs 4f9c04f40501ff342f07c66108d89ffff23f8fa85ac574a2829cd65a757aeacfn/a Quakbot
2023-05-17Ezranms.jsjs 8a9af030d5759e428811a44e1582012c64fdef7059286c4c1693f13566e2d3b1n/a Quakbot
2023-05-17Fjpk.jsjs fd0ca1aeb929c31a64a1ec9c5027c0c2c644161a6fe7faacf6ea8ec30ca8806an/a Quakbot
2023-05-17Xjbbdle.jsjs 7ace3a86b7ee25c1f0e953e1c7228cc835205c53e5ed210b4f3b7fc4291a75ebVirustotal results 31.67% Quakbot
2023-05-17Gnvqkrew.jsjs 1cd77905385f0c42fc817556a8df0df76650c7bcc4f1d670bfdf4cefe71c5d76n/a Quakbot
2023-05-17Cess.jsjs bc08bfae3a441cb9485634aeda5f5ae4cbbe5e36cd98ce7b2812cd62ed4e5034Virustotal results 25.42% 
2023-05-17Mpwmy.jsjs a581d1bc0926e4888a7d919a2ec529d51e03862bf784ac4cd4333e3df168d239n/a Quakbot
2023-05-17Jukky.jsjs 1226b64c5cdc915647f5412f5ca66ffeb7ac2c6e7787e3f38195da88b68ca12en/a Quakbot
2023-05-17Gaajxx.jsjs b622036bbbb51fee1b22933bfb6b6469b83612d1e5ebee223a7ce895965901b8n/a Quakbot
2023-05-17Znlduat.jsjs d7d1b118e316921f3d3f74ae0d0910efba32e6a429d279c6d3a9261ef610cd3en/a 
2023-05-17Xukhyenz.jsjs 7c29908a83e7aeddf61ab8ff6099d72f62c4269b5e49b8421386667071b96bf5n/a Quakbot
2023-05-17Htdk.jsjs 17f2da9d2c0ef6c1a6516b75805182de3f018a56ba8f4d4cff8a05407766c471n/a Quakbot
2023-05-17Svnvu.jsjs 2fc775c47b777b6e225c25d9c5074bc95665bac653feed0056c09d19723c957cn/a Quakbot
2023-05-17Ppkypo.jsjs 0e280a546e0369cdae4e05a9166b5150197786fce1f9637c7a5e9ca8309c2e35n/a Quakbot
2023-05-17Qorhibn.jsjs 2960a183e21196f8fbf84f89c77f0c77898433b9a7dcf487d14f161525d0bc46n/a Quakbot
2023-05-16Whuum.jsjs defc6cc2f9f0f10dac6d6442a507b14e447a5afa9702dda3cd5c95f82ce907cen/a Quakbot
2023-05-16Alwj.jsjs e9f84a0b5d65fd8595c18a2476dcd1f6b1170860f5cb86d8674a36c3a9b8f964n/a Quakbot
2023-05-16Pnlngg.jsjs 977695898ac6aa76479af49cea248a0914adb274ddc546957717de2f12224a21n/a 
2023-05-16Bermabfm.jsjs cad2f95176557547fe3d57c6ffdd01865370a6203c8074b8c6f6d8584e623b84n/a Quakbot
2023-05-16Loced.jsjs db0aaa82dfba4bbbb916e6ed4b882777e8f8e14844cf0fa16197b4788eb0b568n/a Quakbot
2023-05-16Awbfe.jsjs 61e052d9952e7f603f1538c8c71798c80d4bd3d90f9aa44b79e58b009d6a30a9n/a Quakbot
2023-05-16Gryvwyv.jsjs 10a349cb310b0b12493519ad5d8812495f948d01bd2b8ea8e3f339e549b2f56dn/a Quakbot
2023-05-16Mmng.jsjs 01c18ebbb3a2fa2930c681846685c002ae7ef7195070c559b03cb3cc4a0652f4n/a Quakbot