URLhaus Database

You are currently viewing the URLhaus database entry for https://ladykpresskit.com/lm/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2634018
URL: https://ladykpresskit.com/lm/?1
URL Status:Offline
Host: ladykpresskit.com
Date added:2023-05-16 13:14:56 UTC
Last online:2023-05-18 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-16 13:18:10 UTC to abuse{at}bluehost[dot]com)
Takedown time:2 days, 7 hours, 47 minutes Poor (down since 2023-05-18 21:06:06 UTC)
Tags:BB28 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-18Apeywtbo.jsjs 1a2e818afb29521c8658d2a0643158af97370d69c32c0bd85cb900bd3e85b0eeVirustotal results 22.03% 
2023-05-18Ijfzfpgi.jsjs 51ffefa8a10b6da720a80cec4735fe173669e7c974946e46c8dda908e824d8a4n/a
2023-05-18Symrhpkp.jsjs 81c46b64d5ec7559ae3287d14b77e2574baf7808d818c8b6f2375da96a544c50Virustotal results 27.12% 
2023-05-18Mprv.jsjs cb46274d330ebea266c559fd5e391bd171816f40b8a0d960dbacf22c23a94ea3Virustotal results 30.51% Quakbot
2023-05-18Dzdpwuo.jsjs 783e0a457afb1237e0956e6ff847bfcdb49ee23036f51b4621b534f54d67112cn/a Quakbot
2023-05-18Riqfaoe.jsjs e56d1b0e6fd0de57704dc3e0176d6b52917b3ad845d5b25feed40aede94d5632Virustotal results 25.42% Quakbot
2023-05-18Nouthfw.jsjs e5e55c026d33a226eeaecaec0b1f0e887452329d55151ca363f093722745e770n/a Quakbot
2023-05-18Malcd.jsjs 12551eef6e57f08df39d1185caa198cce871f9b27d1fb58cd74228fc3a949b99Virustotal results 30.51% Quakbot
2023-05-18Wtjdaur.jsjs 561eeabd5f230ff8d733b3aa53f761558b65f54ba6d32241bf0350b4e136b808n/a 
2023-05-18Nyceqp.jsjs 38994d258f8bfb97fcb4ad671d962c6f000efb90f29ef01a8ca9881d7a206c66Virustotal results 27.12% Quakbot
2023-05-18Vsscks.jsjs b64790ef2bb214bf0fea83cb0aff305cd66dd38f065ab3cc62b9ddf5d3570eecVirustotal results 23.73% Quakbot
2023-05-17Mobmhc.jsjs 4199aea159f7829cacce2dcf979b07474ecef8f9e346c83817680cf1cccae1b3n/a Quakbot
2023-05-17Fwqk.jsjs ace729a8273c30f923532f7f1a8c2d214aeb49b0c3109d8eff64612384b29140Virustotal results 31.03% Quakbot
2023-05-17Gqgnmn.jsjs ec6f55b9c56d3dead8b8490dfbbcccadcdfef62b7d67c671b8d0ee9620f4b74fVirustotal results 16.95% 
2023-05-17Srwmnvw.jsjs 719ff669cd7b0754e787346601124ede6c1238c49809ebd0d6b58a3bf4b5a9bcn/a Quakbot
2023-05-17Cjwimp.jsjs 7fdeda1296a36cffb37a03dca1e25125b27333e53ead2391247d2790dffd0e7aVirustotal results 32.20% Quakbot
2023-05-17Efoysy.jsjs 17c72916bd400a92cce59ce208e3dc0e55b97f9b3926f0819456072bfb9090efn/a Quakbot
2023-05-17Hhdswoc.jsjs c6712a15900f7986ac9ad350dec34f50284b50e708bdeb42e320d99659f8d46fn/a Quakbot
2023-05-17Jdexitd.jsjs de70cb0f992636f78ebbdc78cff2d07ea19b9ace190d498e12233d133ca229e8n/a Quakbot
2023-05-17Ivnhjtpe.jsjs 6033484fb299906afb88df5b34e490969aa8ceb949606c1fdf490822a0ff0fdan/a Quakbot
2023-05-17Kdhza.jsjs 5769cb5248ada05f8519981081d6093593eaa67333dc4a65a98c5d755474830bn/a 
2023-05-17Ctgllf.jsjs 646861ec955ffcc13e19d009ff6b682cb33a8f4b9cc4d536032fa0643cad4a2en/a Quakbot
2023-05-17Zoujhbq.jsjs 98dac96b44fbfef524121fbb9d0ba0a04db71ac5029eff813cf60e05d9787856n/a Quakbot
2023-05-17Hvbqvlc.jsjs 484cbbdfd1a31a75e173600341ecc89bb93c79609f4b33e215a069bde3f9af89n/a 
2023-05-17Nsdsmsr.jsjs bf05b0420fca02e0657a2f458a5a2d75eb3ed2cafe0de5a5a3aac96290bfdb8an/a Quakbot
2023-05-17Vrct.jsjs 45982901ee96f7af8bd89953bf362a5070c8c05c22c881301fb3ee28038bc8a1n/a Quakbot
2023-05-16Orufms.jsjs 48c383d11255263f28e92631b7acd7499cec95edcce5af47c01297776bfd7d81n/a Quakbot
2023-05-16Vemx.jsjs 0cefc7f5d74ba1454e5ee14a1579de8c54527614c87f329882f92dacf89611dan/a 
2023-05-16Mowsexl.jsjs 7dcdda42d681cec75be119d061dcce95b95ad303689706e5ae07d904de9ba5c9n/a Quakbot
2023-05-16Qnbkwsdf.jsjs 5ed6efbe5923c326f7f3f8a4e05c6d7ec431a51a1f060d5180147d033c04983en/a Quakbot
2023-05-16Sbwxv.jsjs fb8292cd03c50ff94f56487700845f323b789b1ad65511e1dc857021a57f1049n/a Quakbot
2023-05-16Nogjc.jsjs e816dad5ad5d1b97099371488f2afc09b5b0101ae36db0d1575aba1029cd5036n/a Quakbot