URLhaus Database

You are currently viewing the URLhaus database entry for https://netvidtube.com/ero/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2633868
URL: https://netvidtube.com/ero/?1
URL Status:Offline
Host: netvidtube.com
Date added:2023-05-16 13:14:14 UTC
Last online:2023-05-18 03:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-16 13:15:34 UTC to abuse{at}cloudflare[dot]com)
Takedown time:2 days, 8 hours, 51 minutes Poor (down since 2023-05-18 22:06:34 UTC)
Tags:BB28 geofenced GuLoader link js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-18Pkze.jsjs d76b1300fd995ec8def343df0450c11a58a217803fee3749db4afacebc64182eVirustotal results 22.03% 
2023-05-18Xmyo.jsjs 1cea0c4b1af9170b9ed2927f3b100d202bebd1b8e69ba1527336aaa6b2c0bffcVirustotal results 13.33%
2023-05-18Nxayotla.jsjs 1a2e818afb29521c8658d2a0643158af97370d69c32c0bd85cb900bd3e85b0eeVirustotal results 22.03% 
2023-05-18Rcmhrqt.jsjs abb7e63f5a9dd4f29155330e5ebbf1ded45f10c547e9f68b2a1e5f8187394f43n/a 
2023-05-18Vdgjenx.jsjs 2f736895bac2f109a3f04b3c1353fd185fb6c5fdb3fb92345c20126b7a483f34n/a 
2023-05-18Wddt.jsjs 40b44314a486ec7a8d570abd6d0edb8d6d9384e75de8dfd5d698783e701d3dbaVirustotal results 16.95% Quakbot
2023-05-18Ntmw.jsjs fd32fe1312ed075ac00d30123df24382ead0744d83a1a8787e5f0303d68f70caVirustotal results 30.51% Quakbot
2023-05-18Bnwd.jsjs 4de2124d922958dc3b36346c1906578b79f12a6388ef771a7f8503c21e30af78n/a Quakbot
2023-05-18Njzukvg.jsjs 88e1c48885e6e3ca5b9336e4c427b393b3ed8d986289d640404abb2cdf869689Virustotal results 22.81% Quakbot
2023-05-18Kbgohvm.jsjs b76a46e9b0db483e342c390f25663222fee2e67cb7670205636c7ee748850b86n/a Quakbot
2023-05-18Wcxt.jsjs 7f2be16fe7cc7d8502ae20c7169578e1f795f15ed0f88cbe7c8a98ab4585d012Virustotal results 25.42% Quakbot
2023-05-18Wvkcte.jsjs 568dbf92f0bf53b20857f863e58e7f82287fe96c9dc066c782f5f82c64287a75Virustotal results 25.00% GuLoader
2023-05-17Eoxqjb.jsjs c82de2729716408ddf8dadbc7c96d591774e13040bd782c4b2f6f56ee2b039d5Virustotal results 30.51% Quakbot
2023-05-17Dlnscl.jsjs 9b2f8c74295c1bedca1e85a34eca84634c652741d93c24d9c5586926552a77a5Virustotal results 24.14% Quakbot
2023-05-17Hcuao.jsjs 865abbd345425ca06fe788a0af4970d985cf2d622cd0ee375cb43dd5567afe23n/a 
2023-05-17Ftwzofx.jsjs 29d88d7a73d988b2b2c5ddc76ac150742366a2a8c379758bf47f13c2fcf01346Virustotal results 27.12% Quakbot
2023-05-17Ipbm.jsjs 935d2fea6488c7d2c6ec2b528f43f43c49b96750bbf21401284b5c42710e8c75n/a Quakbot
2023-05-17Bvkg.jsjs a87f72f4479c91e3e36a8b6a204a7d9169c1e604389f6818744f3bcca14fd959n/a Quakbot
2023-05-17Hjylgh.jsjs b246dc6bd29b7f7bf62fa6cfdb10a17053bed892c03b79d0328d384cf96f799an/a 
2023-05-17Ccrbyh.jsjs 34f58e146e7f2e71b26d5d778ac8af8f8a2edee6dee6f8f95d5ed8344edee4ebn/a Quakbot
2023-05-17Rkld.jsjs 879ed98f62ad09ac51f8461ffaa70d5437f9b89e078c4419488bc00bcd09cfedn/a Quakbot
2023-05-17Uxuftf.jsjs 0a391e827f7038f8d5ee40baec33bbb307c0e5f9c3fa47f5166c132476a0b8f5n/a Quakbot
2023-05-17Agqnwupz.jsjs 016b551f320e326a647bfc0b5c8636a060153b2c606a605108efb79c4adfe586n/a Quakbot
2023-05-17Mipcrm.jsjs 8cc64af35b78a9a912476cbe4487a4a6010095e1d7045076a97697808eef3269n/a Quakbot
2023-05-17Kgian.jsjs 77fc4e84c91ea4b5ee202afb3977739fa9f232f3d0235d10df2c5d0c726931d9n/a Quakbot
2023-05-16Xxfjehs.jsjs 9b60f48b585ea47b92d41b634bda3eff530d1b8877dfdbe7023ba620a2898cedn/a Quakbot
2023-05-16Dpnhq.jsjs 02c932f6fe9c964e1b75fa5507af23267bfe1a187dbc537710bab88cbe89a156n/a 
2023-05-16Xart.jsjs 290e99beed1b3492e86491cdc0b7acfe2fa62ec84b41719dc89b51279d2331c7n/a Quakbot
2023-05-16Brjguidq.jsjs 7e989a44b607b6d7928158e0aaea140bae6df5cee3669ebf3462c665fb40d470n/a Quakbot
2023-05-16Zwmb.jsjs 7b7cecdad119f17478953561757a9ce17ef4adc1dc0fc3cd9624681625c2f55en/a Quakbot
2023-05-16Vbwm.jsjs b893e43cd31e57dcdb4e093cc45223d0b584a85e27d0c11d2734da6506abbae1n/a 
2023-05-16Zhux.jsjs 12eccad16929b9cc1dcd0cffa34c47e5b087adfe489516ac3cb4f0327c1cd4ean/a Quakbot
2023-05-16Dmwhnhd.jsjs f0b3bb6db01f9aee278e7ef1634ea9bd15dfc57998d3688fcea1ebc5f82dbcc4n/a Quakbot