URLhaus Database

You are currently viewing the URLhaus database entry for https://re-shape.co.uk/eulq/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2633866
URL: https://re-shape.co.uk/eulq/?1
URL Status:Offline
Host: re-shape.co.uk
Date added:2023-05-16 13:14:14 UTC
Last online:2023-05-18 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-16 13:15:42 UTC to abuse{at}hostgator[dot]com)
Takedown time:2 days, 8 hours, 10 minutes Poor (down since 2023-05-18 21:25:50 UTC)
Tags:BB28 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-18Xdwguuf.jsjs 1cea0c4b1af9170b9ed2927f3b100d202bebd1b8e69ba1527336aaa6b2c0bffcVirustotal results 13.33%
2023-05-18Htmwjvai.jsjs 76443e093ed6d6e3961cb5f9bbd546bab2d05f6bc2536c5744dc86f7a769bea8Virustotal results 30.51% 
2023-05-18Luiipq.jsjs d76b1300fd995ec8def343df0450c11a58a217803fee3749db4afacebc64182eVirustotal results 22.03% 
2023-05-18Avin.jsjs 4eec459eb93bc9944e7264be3cd022338865fe3227c98eaea7f9379fd46f94e4n/a 
2023-05-18Axziiibk.jsjs b267e2261f79527d447d6a639751fcabcf68f9640e62a3c3106b4f750cb07b66Virustotal results 32.76% Quakbot
2023-05-18Zbcbsldi.jsjs 42c81982e5f4b734f8ff57da5bebf9b6d8f79c468dd97a2b69b831657bbc8258Virustotal results 32.20% Quakbot
2023-05-18Xqjxdpm.jsjs 50ebb94dd22b6d976b5ec46e2aaa6756dd807058f1a4fe1497d72c4a355b3c2dVirustotal results 25.42% 
2023-05-18Fnsc.jsjs 1539b3e778af6f644e932c0910705fec144fe2bbef2f8df241b0d4bb821d0fc5Virustotal results 29.31% 
2023-05-18Dfqnp.jsjs 94482ada3a27f9e8cf8f7b554597969eef03e0593d496ba95205fdf735ed010an/a Quakbot
2023-05-18Heugysca.jsjs 2a95cf3c1e69da726dd11f2d5621a546ce89b168fa1cab3506197a63de008d69Virustotal results 11.86% Quakbot
2023-05-18Kxwj.jsjs 24579cbeb7c33196bff853d67ce422776e45c942b057519eb6a6c453ed30ac62Virustotal results 30.51% 
2023-05-18Xtgdgl.jsjs b5e43b4ccd0107bcf4e8ce081135f2adb345ba3df9a4df5637d3cd9e08b43ba8Virustotal results 21.15% Quakbot
2023-05-18Sewccfvc.jsjs 906e50a48250213ff6fa64b72219e204e4f47e919757a5b1214a5e7682a44da1n/a 
2023-05-17Bposi.jsjs 8deae0dc00f63d06da4b8491f06c909682b192af1c7ae4467703241c34a509ebn/a Quakbot
2023-05-17Qyykuume.jsjs 26e8f5245d3928df93af31946f3ff6dcf2291861ef4835e6b23e145cfcf9f8d5n/a 
2023-05-17Sxzeobdt.jsjs 5c57b539392768e2e9e8490f11f6528d81875b4aae44e11319d0a94af50b1f00n/a Quakbot
2023-05-17Iogoufoc.jsjs 0b7fccf63d874ff825b5a3e790311b7dd0923c82b142520db78f43a8191e9216Virustotal results 22.41% Quakbot
2023-05-17Judbk.jsjs 748288dd3065db0c33b5cd484c4347216a3780b90eedc58ea62491f9297a57d7n/a Quakbot
2023-05-17Qdcyi.jsjs 4604c9a02925f680aa68df7691aab5b247d61f74fa2c2c261a58ed40e9680327n/a Quakbot
2023-05-17Iljfla.jsjs 3979f174a269b20ff5e544f44631a400eb6470e6b76e932c0363c7c11560c2b4n/a Quakbot
2023-05-17Rnkam.jsjs 0df2afbe9b25ac26fed4c755bd8e5d73aa059fd0f4cb48bcf61504564d42c4den/a Quakbot
2023-05-17Btxxd.jsjs 5a48140f0a792a28a08e0a792236a535f87b5dfdfa2ba1429af4bad334b30923n/a Quakbot
2023-05-17Utafpbpk.jsjs db6755bbb2e82ea1734043bc94d9ae9e8f6975504d652a379aaa51f938d597b5n/a 
2023-05-17Ygauxm.jsjs 2df19333e784585dc768b3da27bceffb9b4d9a3c26431eb76652f64e0cf71cc2n/a Quakbot
2023-05-17Jqdytt.jsjs 14a39dcb144aa3c11b9cf8fe3a07d8cedae8d8b307da46d2c6d176afafbaaf51n/a Quakbot
2023-05-17Cmtumsl.jsjs f795b13043775747999764e9237e1908ec4f903c1df8a8af59b8c0b63be08a8bn/a Quakbot
2023-05-17Wbgkaa.jsjs f045035e19b2d1e65b999b57dcb06fe68b39c87e23613331367be25be2fad474n/a Quakbot
2023-05-16Jfjyld.jsjs 541b3d0d379f42bd4b14774e988a25b6ff1869323bf294002e02c024695e91d4n/a Quakbot
2023-05-16Ffxes.jsjs c65b62fc1481c290d95a34293b2d7b9625e8ac6ca4c9600a614a11f9c2463fcfn/a Quakbot
2023-05-16Ibuhv.jsjs 7074fce23e3d44becbddd6f8b06fdfd4aea9be2c2341e169ac1ea3472fae9ec9n/a Quakbot
2023-05-16Pxlqzl.jsjs 7a6ef011eedee2ca4f37396c36b9357ce5bf39fd343ad349b7c6c5cffbb066e7n/a Quakbot
2023-05-16Mmnza.jsjs 70dbc0af95eb8a9256cea77d3a1fa9110effbc1662187496a1ff895ea1b0237bn/a Quakbot
2023-05-16Tcuao.jsjs b0c881c1851e25b3261641f9ad496d8e4b7fc6512331748582fe5278adf96b82n/a Quakbot
2023-05-16Uzay.jsjs 23b6ce0cb08e3e4699e9513b5c3b9df5bc394078d5fe303425319950fb773d84n/a Quakbot