URLhaus Database

You are currently viewing the URLhaus database entry for https://charge9ja.com/vm/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2633671
URL: https://charge9ja.com/vm/?1
URL Status:Offline
Host: charge9ja.com
Date added:2023-05-16 11:25:49 UTC
Last online:2023-05-18 22:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-16 18:26:07 UTC to abuse{at}cloudflare[dot]com)
Takedown time:2 days, 10 hours, 42 minutes Poor (down since 2023-05-18 22:08:42 UTC)
Tags:BB28 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-18Susvljer.jsjs 76443e093ed6d6e3961cb5f9bbd546bab2d05f6bc2536c5744dc86f7a769bea8Virustotal results 30.51% 
2023-05-18Myfqt.jsjs 1cea0c4b1af9170b9ed2927f3b100d202bebd1b8e69ba1527336aaa6b2c0bffcVirustotal results 13.56%
2023-05-18Hxla.jsjs 18799cef202007eb73c9c455c53e5fba07cbd33ce38ec2fc4cf9b42b3ce18766n/a 
2023-05-18Jpnh.jsjs 88e1c48885e6e3ca5b9336e4c427b393b3ed8d986289d640404abb2cdf869689Virustotal results 24.14% Quakbot
2023-05-18Hjqblpe.jsjs 3e31ea9bfd38c94deda13767d5f82b55906ac8a767e595d59f2fbc92588d23e3Virustotal results 32.20% Quakbot
2023-05-18Ljdo.jsjs eb40b9246889e25a0aa869bfab07adf9622ef027a8ef2ca488d9926b5a39718fVirustotal results 27.12% Quakbot
2023-05-18Qrxhb.jsjs 5e2610a338e8ef5c3c882966366fdd36d988d79233ad84071b96fe04a7ea18cbVirustotal results 30.51% Quakbot
2023-05-18Xhkuk.jsjs 2570cf55120f499263bb8841172328a59101385bd1804bb919458e9bf167319bVirustotal results 25.86% Quakbot
2023-05-18Yteaez.jsjs 8475cb42b6b2c974e37378cf11491570a83f194a37e5ebbc50add4a5677d6d72Virustotal results 25.42% 
2023-05-18Ypxhwsvt.jsjs 60483947f59c4a843833ac5302fae111fb318dafe639770153154f7e01c2afa9n/a 
2023-05-18Ffzd.jsjs a3b99e8c39ad9b207f02de2422a94864986aae304adc635dc0cda1b27ac9e322n/a 
2023-05-17Vsrw.jsjs 19c40585627ffe423ed5f0a6da7706a51a4e068323d3f9cd2f54a01d45c02af1n/a Quakbot
2023-05-17Vmcomren.jsjs 819c3375d47e95f26e1466039e2ff5a096837d0761bed7564c2366b094c8895bn/a 
2023-05-17Lfkms.jsjs cc1399eba326d79dc397363937989a81822144dc05e184cd6d904bbf2617e9f7Virustotal results 22.41% Quakbot
2023-05-17Dxub.jsjs 76b1f9267eb932c85c8717778e7399af2196f31c3f1ee4b76d83a2cc5f2e486cVirustotal results 25.42% Quakbot
2023-05-17Jhfpbb.jsjs e83bd9c4b21fcd0dac063c512259b7310762d0f7b923cba778206403e5314398n/a Quakbot
2023-05-17Wwgjllrg.jsjs 6e988a313f3e3723e109adec17cbf1513010e50c972114a245ebf3ed743e84bdn/a Quakbot
2023-05-17Nspr.jsjs be61952594d1dcb5774683bd939e4e278b596ba069248f2ff16fc39f2351936fn/a Quakbot
2023-05-17Tedkvt.jsjs d5e6e30f18f2d0670de3202c27c125583667cb6be60aee992f59e72d23eed864n/a Quakbot
2023-05-17Rzvm.jsjs 301e38c4b3496ac6dbb7203fe788b2188450365a3c7c3a98dfc989bcf16311b0n/a Quakbot
2023-05-17Bipfanp.jsjs 5eb749f85c4973bea9611a79fa857972e5e433ed0a3de63656b0c6099b683f32n/a Quakbot
2023-05-17Qhqcbus.jsjs 959f433be9060db10501855e825780f5c74a6d87a859f96f55d831451b77fd62n/a Quakbot
2023-05-17Lxlu.jsjs 4470e249a7854be1f5be8eccbb6ae099e31817f4e3cc6567fc1c1a3dd56f01bbn/a Quakbot
2023-05-17Zuvl.jsjs 3b04e15e98284f36e25a14eba9dd25a60b68e3af32041f5e3ef181cd594c4796n/a 
2023-05-17Nwllyx.jsjs 5aaae1faf63d29bfd7a8c5efe5912c8cc2ba627033b94ad8995f30c398e0990fn/a Quakbot
2023-05-16Kqxyzb.jsjs 9421ca7274ded45d182a548fd848c3d5a231ba53b745eb98d6aac56eea79d2fan/a Quakbot
2023-05-16Bvjt.jsjs abfada6935f7f1a55914d906ac4dbd351254d3eaa55d0e2ea20a3e62cd101c2en/a Quakbot
2023-05-16Ebuzgyn.jsjs 6e397001a8aa024c95223e7245c1a94adc8f62ff558222488d9f37fd51cc154dn/a Quakbot
2023-05-16Iktvnokq.jsjs 1e613d727a68bbcddbd25ae48111d2b0cfeb74213e28c08fc809518d1966f1fdn/a Quakbot
2023-05-16Ebevwnto.jsjs a3572e3a990b2a03f42aa610593473a4244bad5262f71a11019ed2fbfb27e463n/a Quakbot
2023-05-16Znqblxx.jsjs 1fb600460e9af6d7122d5472ba5319973091b79853ac33058f52628e8094c9e8n/a Quakbot
2023-05-16Kblduthb.jsjs 0defc14d937aa1f2e765fb1225bf1abe743c2165c9439ee0b784819aeba56407n/a Quakbot
2023-05-16Xlfx.jsjs d2cc9cdc67e521cb0f1ddc534bcc9f9ee71856fc0fb395e56a5822da6ac9db69n/a Quakbot
2023-05-16Nhfe.jsjs 0689835430704011245b184b29797991e2ea3efdcd77f04018ee5e262aa2033bn/a Quakbot