URLhaus Database

You are currently viewing the URLhaus database entry for https://central-group.net/tl/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2633662
URL: https://central-group.net/tl/?1
URL Status:Offline
Host: central-group.net
Date added:2023-05-16 11:25:47 UTC
Last online:2023-05-18 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-16 11:27:17 UTC to abuse{at}ioflood[dot]com)
Takedown time:2 days, 9 hours, 59 minutes Poor (down since 2023-05-18 21:27:04 UTC)
Tags:BB28 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-18Cypsnj.jsjs 51ffefa8a10b6da720a80cec4735fe173669e7c974946e46c8dda908e824d8a4Virustotal results 22.03%
2023-05-18Zqutahmp.jsjs d76b1300fd995ec8def343df0450c11a58a217803fee3749db4afacebc64182eVirustotal results 22.03% 
2023-05-18Cupxgu.jsjs 76443e093ed6d6e3961cb5f9bbd546bab2d05f6bc2536c5744dc86f7a769bea8Virustotal results 30.51% 
2023-05-18Tewapeds.jsjs 73f32a8c2307a58b1ee89735ed02dc9ca70592ed4ffe47810716fb2108a8b261n/a 
2023-05-18Ciuy.jsjs 95f993cc876a8c3aa072647ab634b4ef2df037d739e781cb6f6b4e90ae5d6889Virustotal results 25.86% Quakbot
2023-05-18Xeqk.jsjs e50886cba40b1a43e2a678f24566fd07c951a78a554670ec3b2f25a3866d0d57Virustotal results 22.41% Quakbot
2023-05-18Rxgfw.jsjs 0d025c1350cd713034b5b581118f5b7a71d0ba2551cc2321adbd286c8493fa25n/a Quakbot
2023-05-18Jyaucrg.jsjs 502aa2d56dbba3e18971b863336aff4b696a67a0935ca0cc3d9186a3c2c8550bVirustotal results 32.20% Quakbot
2023-05-18Chudqxv.jsjs b9a4b8691e7de63f6af1a61319d16827e3308ff248981ca1c9d815fee2a1b93bVirustotal results 32.20% Quakbot
2023-05-18Uxanw.jsjs cb46274d330ebea266c559fd5e391bd171816f40b8a0d960dbacf22c23a94ea3Virustotal results 30.51% Quakbot
2023-05-18Tluye.jsjs 7b0e64b5b88495d402a11b16ad7776cc5e0d44a07992e8b9cf9c7006a92ac8bcn/a Quakbot
2023-05-18Dgywf.jsjs b87903d0aa16eb59b3bd58047ae31f7e370cc478a7b6d952e262fe4e56abb4e3Virustotal results 26.67% Quakbot
2023-05-17Zjrmnws.jsjs 58b0e516ec4c36b4a0582314a01bc968a5e3a7acce646abe2179ef5adde91a24Virustotal results 27.12% Quakbot
2023-05-17Ejvcemsq.jsjs 50ebb94dd22b6d976b5ec46e2aaa6756dd807058f1a4fe1497d72c4a355b3c2dVirustotal results 25.42% 
2023-05-17Nrqeox.jsjs 75203d83c417a2bcd9a5298c46ac9c2befe4e75e7e2c40722c7b8f59a2232c98Virustotal results 27.12% Quakbot
2023-05-17Blhw.jsjs e50fb972f8f78042286895b6d869daf014f5e8082e3c3989ca853daee780a6aan/a Quakbot
2023-05-17Dtknibox.jsjs cfc68b43d74cf7d5fd05920f53d7e80393899308fd60fbcd60c8582770294bc1n/a Quakbot
2023-05-17Vlboxdiw.jsjs e0a76560e4dfa1a02a0ed9070737950e644f0b851388f7a580a8c384ba1ae3aan/a 
2023-05-17Gzzr.jsjs c7f9d6c56a28ecc44744a1c617778af39179d5869bca0ccd518016eae401078en/a Quakbot
2023-05-17Adglw.jsjs f093b882b8fd4a20a6b626c96af959ed31285d4cd57354e4cf7de124fb062b81Virustotal results 30.51% Quakbot
2023-05-17Hdaw.jsjs e23c6adff10cf910525e077c76a6cbc0382f5f00ebc0e22cb7aa61fe144bdb4an/a Quakbot
2023-05-17Zzcviypc.jsjs 751e5d4882c2ae811d5be51ebb41900e9afe1d4adc4c84cd7dc9931e748ba672n/a 
2023-05-17Xirh.jsjs f225a22e1a494802ea95f96688c7471a7e5c07ac291c583d8145883ead42f11an/a Quakbot
2023-05-17Ikddpxd.jsjs 460257fc9a3cb57208b203a0f423b374eda1967fd18567d63216c28dd1efd759n/a Quakbot
2023-05-17Pznxyku.jsjs 655d3aeee42d1589a99eca9975a7644fc6060b7774be38fcd3d8932ab5a93c75n/a Quakbot
2023-05-17Ognzawyh.jsjs 9aca71929f3b40a43a8660a6e5f291eccb1307dd67784cfa9b227c3c89107ca5n/a Quakbot
2023-05-17Gusf.jsjs 1e998b422343102c85b7a299bee6746090e988e8bfdfb1a90f247949723ca5ben/a Quakbot
2023-05-16Lxnbmtl.jsjs d2532dd7339a23ef0b41f840bc9b057d72badb71222aa0d4bc94a67a779981d4n/a Quakbot
2023-05-16Lndsew.jsjs 322a9c45b3511035a175aeb32bcc895014d62a42f0231778b7855d089c8395e3n/a Quakbot
2023-05-16Miznugqg.jsjs bf00ebb2acca3bc3391a6e37d38eba021fa4f5fa1fd28377a67f270a113bca00n/a 
2023-05-16Atadnybm.jsjs 2dd6b05dccecd9b43549f85182e2ab0213e833ed773fd5281a8dc33f300200a5n/a Quakbot
2023-05-16Xszdxpoi.jsjs 03b44c79068c17c828d0e6d159534c11013425ab8885a6e5aa3b49a6deb77b30n/a 
2023-05-16Oozyd.jsjs 84e4cfc3bb3d5e956cfcf86f8e130c19aeb16f4af1b5d1f0b19269703779c618n/a Quakbot
2023-05-16Cpckt.jsjs a9f102bb20dacef54e870ca01454d80c69d0ff15c02dd4fa3489f9a3e321aa5dn/a Quakbot