URLhaus Database

You are currently viewing the URLhaus database entry for https://deep-nude.com/tg/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2633713
URL: https://deep-nude.com/tg/?1
URL Status:Offline
Host: deep-nude.com
Date added:2023-05-16 11:26:02 UTC
Last online:2023-05-18 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-16 11:28:53 UTC to abuse{at}cloudflare[dot]com)
Takedown time:2 days, 9 hours, 48 minutes Poor (down since 2023-05-18 21:16:55 UTC)
Tags:BB28 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-18Dxgfejjr.jsjs 1a2e818afb29521c8658d2a0643158af97370d69c32c0bd85cb900bd3e85b0eeVirustotal results 22.03% 
2023-05-18Oqyb.jsjs c74cf0cb7927a8438a84c9cedbdbab3e4815550813336043f39674a67b6a021aVirustotal results 28.07% 
2023-05-18Uitd.jsjs 1cea0c4b1af9170b9ed2927f3b100d202bebd1b8e69ba1527336aaa6b2c0bffcVirustotal results 13.56%
2023-05-18Ckjvcnh.jsjs c32d123e63325865e4d5d6282eaa8d40ed1139fe7e3ef1689be6198e6b20f100n/a 
2023-05-18Tdhuh.jsjs f463f7a1eabfcde6cac3157449992b10b752021a61c46392c383c0949c81a709n/a Quakbot
2023-05-18Hsfu.jsjs c82de2729716408ddf8dadbc7c96d591774e13040bd782c4b2f6f56ee2b039d5Virustotal results 30.51% Quakbot
2023-05-18Tnrweg.jsjs 2ae86821ba6902bdc957f61f92f752f51c37b2620aa00688fc6affc9b9b6c9c3n/a Quakbot
2023-05-18Hagddwga.jsjs 946d5e2c822a804863dd95b51f9cf5738b216cacbfd4e739d28af66952e4821cn/a Quakbot
2023-05-18Xsawtdsz.jsjs a70e07343087b1341505ab67207e4f4d1170a7ae25f9b7c90ca2eab5663e3db9n/a Quakbot
2023-05-18Ggcqalc.jsjs a22b66a10925ee0bc864c2b920e30792c9c23d171ffe1d926a43d0403fa0f1c5n/a Quakbot
2023-05-18Vdej.jsjs 13fa98699be69d8a22ee7c59e1a9efe2f504a721757490445465dc8a1de1765en/a 
2023-05-18Jqgyi.jsjs a5e07fd19c36096b65281a4da6788fdb724e4cc4be6fae21497a969c1255a622n/a Quakbot
2023-05-17Ddlst.jsjs 26bcf4ed38ca973b884b3322675bbd0b590533240961f9fd6272fa3e3aeba113Virustotal results 31.03% Quakbot
2023-05-17Rqwjslvj.jsjs 569b94ae6e9101918add0cbef52c7d0516b8faf8e79f3273d7d102982c544c18Virustotal results 22.41% Quakbot
2023-05-17Vqmosy.jsjs b11fc0e56235f908dd870eceed98215c815c131e83913eff33f70f528e369dd4Virustotal results 30.36% Quakbot
2023-05-17Glkbuzey.jsjs 9fc5c95367df0d42df001590faddb4edf2e71a19e7159cb210d5525553462459Virustotal results 15.25% Quakbot
2023-05-17Pgsc.jsjs 56f98c1c97e1453ff995b3a13557d14600aba57f58f3537688826daeba157151Virustotal results 25.86% Quakbot
2023-05-17Vcqwlmo.jsjs bc100a785f531874618920cd99c357dfc32c33cd59fc6b19856a94b41ca3f07fVirustotal results 30.19% 
2023-05-17Bvdbc.jsjs 2971e245d875fcb96bbbbcff59e1a34e0490ae85f5e8abd688b28772bca0b30fn/a Quakbot
2023-05-17Fmbbjjkz.jsjs 029b6f2d9cfb0a2a335c9b9377c1dac9e71206e55f6f82c7d3c0e2edceb9b734n/a 
2023-05-17Cnmmvnla.jsjs c448ff92b5c51826472b20ba3b49f1c18d69e4cbdff6586bb1f3a76a13961aadn/a Quakbot
2023-05-17Ibhkykgy.jsjs 9c9d402322b4aa4e58956d706fd6854b53ec40360c615ac4bb60c4d2548fb7d8n/a 
2023-05-17Qnzt.jsjs b70166e12cde6b26243fbe3ef6997b1bf347b675e0de9cd02c4dd1bee2a9208en/a Quakbot
2023-05-17Kwwtk.jsjs b3b58d54fb3f3dc367193787f95225bf286318aa1e3ce6a6c027c670a739edc7n/a Quakbot
2023-05-17Wyapfea.jsjs a772d6d5d67f7fb9b3392364b20d2dd55a50c808a435cad70e40764ed6926a00n/a Quakbot
2023-05-17Vhqk.jsjs e7c4b46e64cd420be608fb887aaa0dac25409e88222b83822bd965681fa7ab58n/a 
2023-05-17Umcck.jsjs c166e2a0a335182035fb85cf34d0b52883f3f006311a2330786e3f1b760b3709n/a Quakbot
2023-05-16Evwe.jsjs e3b0fd9949c9562d6f511520e6a882fc51199556533f8716811372909c9faf74n/a Quakbot
2023-05-16Fmmcy.jsjs a770b020342105b737083551aae6a67774d77d3a28b7aba597150cd830712cd4n/a Quakbot
2023-05-16Gilcx.jsjs 3416340cdd7c8407dc1550ec3ff9613f42997dddbbec74cbd50728dd10678b53n/a Quakbot
2023-05-16Koiipzqg.jsjs 5a0bc00c25df4288f66b180e08212c7234708304235d6ce8a764e5d678cd98cdn/a Quakbot
2023-05-16Jtkmq.jsjs f49f3cdc9018d35d30861deb71570221a5195236271710be7639ceea914bc467n/a Quakbot
2023-05-16Cnerdt.jsjs b10d665d60474643d2ea1d79ee9b773390abf8f60aed940a1bf0e6a66413323dn/a Quakbot
2023-05-16Rxiev.jsjs a7f9fcc58ed662e85a1fb2511bb7021739d311c77e603d391ba962aa6d084b7bn/a Quakbot
2023-05-16Dpkc.jsjs 374d1a71bf186a053699a34b3a54b076a3500e57e8c811f1216e1107671cf66en/a Quakbot