URLhaus Database

You are currently viewing the URLhaus database entry for https://solidnetalgerie.uk.nf/tim/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2633942
URL: https://solidnetalgerie.uk.nf/tim/?1
URL Status:Offline
Host: solidnetalgerie.uk.nf
Date added:2023-05-16 13:14:36 UTC
Last online:2023-05-18 22:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-16 13:16:51 UTC to abuse{at}ifastnet[dot]com)
Takedown time:2 days, 9 hours, 18 minutes Poor (down since 2023-05-18 22:35:14 UTC)
Tags:BB28 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-18Xsgehzr.jsjs bbcdb87a842c5157acea98f0cedd358f764e2613b6a635e4f9f5946de8c07780Virustotal results 13.56% 
2023-05-18Exciczz.jsjs d3c6e06204212c1aeeef29809460056535cba3beca8cf163b7c8719671ef0c9fVirustotal results 22.03% 
2023-05-18Dqkpg.jsjs 651d3a1dc113902ae2eda79d58777bd1815d6830da2e21e06efe9ed20d6e810cn/a 
2023-05-18Qmypgz.jsjs 2072042cbdf8458366261756217da566a1b8d6cf4b24541a37d71c44c07c7fdeVirustotal results 25.42% Quakbot
2023-05-18Feckpwv.jsjs 9f83e5346339db98db754ee60a6d9de3db2ecaf650f4590c2a11ad9e484c46a2n/a Quakbot
2023-05-18Frnurqbv.jsjs ddfe74e26faf2b35c9062f09a66b41c79d391c1658c3fa8b4e2ce20752a2b05fVirustotal results 27.12% Quakbot
2023-05-18Lmkhmi.jsjs b9db0988cfc1418354e6e55c54e7346c335a55a40661a6907d35143a9f8f8f8cn/a Quakbot
2023-05-18Sexizi.jsjs cee11dd3e06833ff80c75ab19feaefb05e62b347d9ed97e9ecb8f4ac5a889f95n/a Quakbot
2023-05-18Stdonaj.jsjs a7a7249194b741b44bab1befd74e783ba57af2f211b597961892dcbe975544c2Virustotal results 30.51% Quakbot
2023-05-18Cedtg.jsjs e5c5a60b175cb60af996c9c06d7956eb02b365460e950ac7662bb4ea5c87d9c0n/a Quakbot
2023-05-18Vtkzpg.jsjs e6473de8eb0f10d14a04ffbd68eec65c5efe6755a2bca86fa2fce1a0f317a9c3n/a Quakbot
2023-05-18Firjpb.jsjs 40b44314a486ec7a8d570abd6d0edb8d6d9384e75de8dfd5d698783e701d3dbaVirustotal results 16.95% Quakbot
2023-05-17Baav.jsjs 37f6c3ef6d545c8b3db46550b00329b03390e7d7abfa74c5b03bc0c85f07af15Virustotal results 28.81% 
2023-05-17Ssrbuz.jsjs eb40b9246889e25a0aa869bfab07adf9622ef027a8ef2ca488d9926b5a39718fVirustotal results 27.12% Quakbot
2023-05-17Xvgsff.jsjs f3cf1988e5b288b64fc34cf15045d67a4fcd2c9c61549510e3df907ea1f61cf8Virustotal results 27.12% Quakbot
2023-05-17Dvepmml.jsjs 67878c5898e4d6118aea2d8059896ec493c2cb1b7f3bdc563068504a0bca9373n/a Quakbot
2023-05-17Oxneijt.jsjs abae955795961dc369ba3d41196f2f4238001efcff8a2dc429ababf4821ca7f5Virustotal results 22.41%
2023-05-17Vzksn.jsjs 0836ece78eb77f4b5ebf101fc5e4317ad5554305bff6466db565f247b93b5928n/a Quakbot
2023-05-17Jvkro.jsjs 742178e6b42ab9b27f152cb412f38c50d435502327c8e77759d7685af646caa7n/a Quakbot
2023-05-17Pixwe.jsjs 3649aad23eefbbb22c0d7d79510370db8bd01e2eb9cce05c9688bdf52406bd22n/a 
2023-05-17Rpdaulf.jsjs 8f300fcc1f61c69c6e6c7e99c0cc87f931f89c6024eab737ce1a9f5e0ce5e642n/a Quakbot
2023-05-17Gzun.jsjs ff2bef4f311c0dd7fafbe8a01a3e42fc7f914e95c47fbd1abb8bca5aa3cb26c8n/a Quakbot
2023-05-17Ztwqwj.jsjs 28018f27a7799c7752470537a53952d33ea21217086bea5d89040b02f365162cn/a Quakbot
2023-05-17Rymlet.jsjs 31ee4cfd522f08b5629a1265490c84371bc758f6e6c385cc40cca0aad3a8094dn/a Quakbot
2023-05-17Eriwmu.jsjs eab025300e946028ef3b483d5a5aa4f0a82ac322349e04b9ca0c0345a3c789fbn/a Quakbot
2023-05-16Xpduv.jsjs e0c0571cc2ee9e39bfca7483f71d73fdd8112023a752e8fb940ac3fe6034de9dn/a Quakbot
2023-05-16Rripyq.jsjs 430a42be13cea13ef3e637edaa88f54d97211910ddddb28d97396cd64af6a811n/a 
2023-05-16Qtidhsao.jsjs c962b1153f70b256066644d3a50b659a9584c52bda7b687f30473f97f1b8e658n/a 
2023-05-16Rljr.jsjs 83cc265efc69a9b42ac9ea9c471494649f2ba74b9e6ba9b39a16c0f9e0dcf3d7n/a Quakbot
2023-05-16Wyspemxv.jsjs 9d546cb53e5052259929b11e878db8ca48770ae713d0fae1478c0d87174d4152n/a 
2023-05-16Csma.jsjs b63d1a23bd907c5740d4a7d6b34be39f063650749b4166395ad14148c15f2c2dn/a Quakbot
2023-05-16Qfhiqf.jsjs 44c3877452de3dda137fccf93308c709a51a800dad7eb0bcc796f349a01d3228n/a Quakbot
2023-05-16Ihqu.jsjs a7632f471a2eba9e13d817a5bc38c81c396aa977b533fa967c0866e23506d165n/a Quakbot