URLhaus Database

You are currently viewing the URLhaus database entry for https://neelikon.co.uk/sd/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2633865
URL: https://neelikon.co.uk/sd/?1
URL Status:Offline
Host: neelikon.co.uk
Date added:2023-05-16 13:14:14 UTC
Last online:2023-05-18 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?):mail Yes (Ticket DCU100116516 created on 2023-05-16 13:15:05 UTC)
Takedown time:2 days, 7 hours, 46 minutes Poor (down since 2023-05-18 21:01:10 UTC)
Tags:BB28 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-18Shrnir.jsjs 51ffefa8a10b6da720a80cec4735fe173669e7c974946e46c8dda908e824d8a4Virustotal results 22.03%
2023-05-18Shsqrrt.jsjs d76b1300fd995ec8def343df0450c11a58a217803fee3749db4afacebc64182eVirustotal results 22.03% 
2023-05-18Yqmi.jsjs 6a4aac145579c46f978fe6ab9a74a197641c0c851bc16d5cf811d0ee2c483455n/a 
2023-05-18Wnbwjuzz.jsjs a3cc568085570fcadc8c808a54f2482fc606cfcc1e1ad374e88b6d8b8de6ae58Virustotal results 25.86% Quakbot
2023-05-18Tgdmci.jsjs 56e7ef28abd5d99579c0cda0cafc94f64335c3b99a2c4a88b27c75bc943583d6n/a 
2023-05-18Zrrapjkk.jsjs f744aaa7347e22e22b0047605341e57c431a9dbcdd028ca5713a221c51107aa1n/a Quakbot
2023-05-18Dzebxahb.jsjs 1eaeb0800e5cf78a2590fb2ea6859c5f0bb66ad09354a079964ab9c7e6381781Virustotal results 32.20% Quakbot
2023-05-18Vmxs.jsjs 21fe5b84a05703a96f7e89bc1831bd5ef93ce9c6e1afe08259006454a502ba59Virustotal results 30.51% Quakbot
2023-05-18Qwipklxt.jsjs 2c402bf5ac40a8110c89bcf0f4ccd617ba22f8e8a6ca32d9949461c82540e48aVirustotal results 28.81% Quakbot
2023-05-18Gtoftim.jsjs 4cfd3cea6e5aacf340993648b46bbd6628953021cc5148be665b68de39755e98Virustotal results 27.12% 
2023-05-18Yrqcmdfo.jsjs d5cf74860b7b3a07c522d435a8360406d7c4a5575bd34a1244d8d0c1426bdb61n/a Quakbot
2023-05-18Ztvoifjg.jsjs 07d1842292aa2619ebfbb551eff5580fb24f945283f3de4298dc06f9493b6b20n/a 
2023-05-17Gmgfbqzq.jsjs 356f8c2ebf3f6ab97ed37e1195e6ccc8d5441e37c038c0c09c7f481b5aa205den/a Quakbot
2023-05-17Yqeyh.jsjs 2dba215a58d9e94365ddf7dad401aaefe0258795b13308a0521c655fc8cbbb26Virustotal results 15.52% Quakbot
2023-05-17Oddot.jsjs 4779dbaf4f01d866b1dd6a2cdeb855c53a82951952ba41e9af73be849bc9116bn/a Quakbot
2023-05-17Hnwput.jsjs 0eb9fa07ffbdae465ca7afa7b68b6b38311315046844cd6ac97c9e3b77d5fe99n/a Quakbot
2023-05-17Yahgtj.jsjs fb639f61394301ec51c3c82b270fa10118b12150f177db33a72560d80ad79f25n/a 
2023-05-17Ermedunp.jsjs 928455b0e6b3a04da2d4fc9cc17de42c52ae2a640937dcbc9a048f76050c138en/a Quakbot
2023-05-17Ybnlyljj.jsjs 748288dd3065db0c33b5cd484c4347216a3780b90eedc58ea62491f9297a57d7n/a Quakbot
2023-05-17Yxxkz.jsjs 34bcbb7116c766ca6a773a9daabc8eca514cfff971f1fed8b8e0377366ff6fa3n/a Quakbot
2023-05-17Kczegzk.jsjs 149b20bbb638be38f107ad9ec922eb12a0cc2b3370d1702b6b65d531ee819536n/a Quakbot
2023-05-17Yhfxm.jsjs 29adb9cbf359214db966698177378f149f76ce51ed733e43332ce997771a6d24n/a Quakbot
2023-05-17Jonwb.jsjs 12b31cf9db9318db606003ca7a0c9553035011a1082e2a8af627104a42a1a92an/a Quakbot
2023-05-17Eceesjnl.jsjs cf34b9f12ff99b4c69b126401b3bfe00b1bd2d8b28189ff8be8cce5baa4ad561n/a Quakbot
2023-05-16Izfmkm.jsjs 8424910ebb790aa592938cdc2f5baa56f27c17f73b9afbd85bc329b1219dc255n/a 
2023-05-16Bjphgu.jsjs 1e8641f6edbfcdb01f96f114563483097fea0e95d5e99ea2774daeed597f4739n/a 
2023-05-16Ofznhftu.jsjs 76fbf727ffabcd6678a4d64e06e7196579ae2d8f085c4a1a161387ecb868755en/a Quakbot
2023-05-16Zguhaqk.jsjs c31653a2ae89dd6f694c3dac6b02ac078aef845c4c61051132011854dcc2471en/a Quakbot
2023-05-16Jfbvcxsw.jsjs 7f039d5d16eaae4536d87458e3189eaf0d77440536b8021456760b0c3f658181n/a Quakbot
2023-05-16Iqtu.jsjs 92d9db329a76b8481a9daf2bf73db66b57c4d2fb0452d98452c07e808e1625c8n/a Quakbot
2023-05-16Gzyqzw.jsjs 2aaeddbce1b70da63a7dd445e13173bbaa0486f4ffa0e8147e491c3d5d44ce5cn/a Quakbot