URLhaus Database

You are currently viewing the URLhaus database entry for https://weprintwalls.de/tmul/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2633717
URL: https://weprintwalls.de/tmul/?1
URL Status:Offline
Host: weprintwalls.de
Date added:2023-05-16 11:26:03 UTC
Last online:2023-05-18 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-16 11:28:58 UTC to abuse{at}namecheaphosting[dot]com)
Takedown time:2 days, 9 hours, 43 minutes Poor (down since 2023-05-18 21:12:06 UTC)
Tags:BB28 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-18Rzxsq.jsjs d7522ab4f64ae0950e24bb00df9157136bbcb900ace0c77bd1a46f06149bf37aVirustotal results 24.56% 
2023-05-18Qqrh.jsjs 51ffefa8a10b6da720a80cec4735fe173669e7c974946e46c8dda908e824d8a4Virustotal results 22.03%
2023-05-18Vfjfaw.jsjs 1cea0c4b1af9170b9ed2927f3b100d202bebd1b8e69ba1527336aaa6b2c0bffcn/a
2023-05-18Ytwal.jsjs 31bfb0e9f32a6891aa3b4bb9c1caeefec664295de95b74eccecf9eb67a2b84cbn/a Quakbot
2023-05-18Xxoorisq.jsjs b88c04bb3bdf213453514ee3d92c8a7fd5f5e014017ea615f8df49c9c0a7ebefVirustotal results 27.12% 
2023-05-18Iwkiqpq.jsjs 42c81982e5f4b734f8ff57da5bebf9b6d8f79c468dd97a2b69b831657bbc8258Virustotal results 32.20% Quakbot
2023-05-18Uxppk.jsjs 4a224a82cefc07c64c7c22363f17593d43b9ab03d82d39624000798d29cd331en/a 
2023-05-18Plql.jsjs f6367e6003455bd5ec09ff23726731029805bd0357bc8cd5184dfe270962601cVirustotal results 32.08% Quakbot
2023-05-18Vjhq.jsjs 8506e3c5de62fa6173656a51f4f41a0986ccb9fa55bea9cfcb878c6df2bd88c7n/a Quakbot
2023-05-18Wkxmnwip.jsjs 9d4e35c32d73270df3c5bf64cd693e2933e614075af8f15eeacb3fcd142f8ceeVirustotal results 28.81% Quakbot
2023-05-18Eflhnzby.jsjs 9024a49a844d092fb509a2d8e48a42cd4209b347497199616d579fa84a136fc5Virustotal results 25.00% Quakbot
2023-05-17Atefur.jsjs e34af5d0c51c9f5403ca9b2aad48f7f772322fade0dff21b839a90ac6420cd87Virustotal results 27.59% Quakbot
2023-05-17Kbgri.jsjs 3f5e5c65bd5814cdaf300e4fff7de23851e1c5fcc764d920ba42761515bc506aVirustotal results 25.42% Quakbot
2023-05-17Kasvjsm.jsjs 19add01de5eb9fa85d7bed9badc8daf24f0083faf06b7eaecd8b1efb21be5428Virustotal results 25.42% Quakbot
2023-05-17Nsncb.jsjs e6473de8eb0f10d14a04ffbd68eec65c5efe6755a2bca86fa2fce1a0f317a9c3n/a Quakbot
2023-05-17Pijzwxrc.jsjs 43a19d17453fa7c2633186d340c06a3b0b794b8cfe7e6ce0adf02f44713c5e25Virustotal results 23.21% Quakbot
2023-05-17Ujfyzu.jsjs a357a8a9b62674cff6660b76659f4cd36ccd979d44937371bde57235d81c392en/a Quakbot
2023-05-17Mnev.jsjs 561eeabd5f230ff8d733b3aa53f761558b65f54ba6d32241bf0350b4e136b808n/a 
2023-05-17Hvjyef.jsjs 2810143d11f9ad7077972f807f2dc04a3f22746f81b7d8365d879e722c0b3551n/a Quakbot
2023-05-17Hhpcyrtl.jsjs 259c42bd1d7aacc5e6d4cd5b89b33f9f7656ed193f071f373e76dacb75a757ddn/a Quakbot
2023-05-17Hqrjubyp.jsjs 7c7a89ad24fa8827fc96aa6207235bd200efa018ceb655eb184d9a827d9c3d21n/a Quakbot
2023-05-17Lgvwvzmf.jsjs 405a13bb53f25cf3661b53e7fe3978bee1876bf58dc24f9d03e3a016deec8158n/a 
2023-05-17Sjgnxnv.jsjs c02b5c77dec510adf14f94750bc9cc22f64c6d853d34dcc546afa1137750c082n/a 
2023-05-17Xyhc.jsjs 6cff918424eb0ae024a023f18626f8ff1c5d69cec8ab71f9c8c93c4e9a531ce6n/a Quakbot
2023-05-17Awwrqy.jsjs 2debea1e3612702e776bb88dd3ff5d5c7ece91a3e550b66309fff3c7935c5e76n/a Quakbot
2023-05-16Smeqoriu.jsjs 55ba24a150680dcae810beeb51e4e46083da8d25f30ab5790f75041b93d6b42dn/a Quakbot
2023-05-16Obulqe.jsjs cecf62bdbc6be12c6cfe766e5d74cff3791007212edbb705d19adf2706b864e4n/a Quakbot
2023-05-16Cshy.jsjs 3c51bb9647b196059488ed889e58ca06f11b218f7c4e1c98b24a3084d3130a77n/a Quakbot
2023-05-16Nvdyyaw.jsjs 8a830fcf997b0135ed6aa6975bf736d3d6fa1a7ea7947a08b2847ec1a807dcf2n/a Quakbot
2023-05-16Clvqar.jsjs 8ffc2ff4f100ca91bce4f0c95ec88f4c509d9202197936034dbf2cfe665f96cdn/a Quakbot
2023-05-16Jpunclnf.jsjs 953ab2d8d8fd23c3481e82f4f9186443f6d46a4928c95747b7a1b30f9f0a1b4en/a Quakbot
2023-05-16Kvykxnk.jsjs 168fe940bb0f1f13750a5390da1a9f7b908f71dc66012d1b760c7f617e9bde3cn/a Quakbot
2023-05-16Xksf.jsjs f71439d4084b51a4287279722cb251982df3c8fa0c6204eee942e330964b4e61n/a Quakbot
2023-05-16Nhzciovr.jsjs f87d71481dd9ad5a11e94272b1147aa67bf32149637ba7c6e03fce9c483757fen/a Quakbot