URLhaus Database

You are currently viewing the URLhaus database entry for https://joker123truewallet.net/sa/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2634050
URL: https://joker123truewallet.net/sa/?1
URL Status:Offline
Host: joker123truewallet.net
Date added:2023-05-16 13:15:06 UTC
Last online:2023-05-18 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-16 13:18:41 UTC to abuse{at}godaddy[dot]com)
Takedown time:2 days, 8 hours, 10 minutes Poor (down since 2023-05-18 21:29:32 UTC)
Tags:BB28 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-18Xpinfhpb.jsjs d3c6e06204212c1aeeef29809460056535cba3beca8cf163b7c8719671ef0c9fVirustotal results 22.03% 
2023-05-18Wkugm.jsjs 6016f12710a18923ed029eb1dc62882b5f1a032a7424e0169dd8c2228598f59dVirustotal results 28.81% 
2023-05-18Ooyzeh.jsjs 1a2e818afb29521c8658d2a0643158af97370d69c32c0bd85cb900bd3e85b0eeVirustotal results 22.03% 
2023-05-18Ofvztc.jsjs 67afb6fe01b12f4c199423ee3a1fea3df90003357fcf087a453754ac698f67ban/a 
2023-05-18Chgvdf.jsjs a533ca0315675319b925cc18170b52d2ed95f2af8281c9c6a6d9e9aa204fdc09n/a Quakbot
2023-05-18Nvmox.jsjs 5002cf2a22a794f451347414eae921d359f14704e2fc3491ec70ae29266a6ea6Virustotal results 22.03% Quakbot
2023-05-18Hcjuv.jsjs d67719607166b2f101544e674067b1d8a66a134620ce0e19794356da09e033ebn/a Quakbot
2023-05-18Bykj.jsjs a8a8153cceaada2e2ff92961844812b0aed9cd17ebb6700ebca64bc3627c960bVirustotal results 28.81% Quakbot
2023-05-18Ijujord.jsjs 81c46b64d5ec7559ae3287d14b77e2574baf7808d818c8b6f2375da96a544c50Virustotal results 27.12% 
2023-05-18Veizzd.jsjs 15abbc922de384ed273fbc1a2e831ab1024bff793998f2cea3c69abd68a85566n/a 
2023-05-18Nbgkbp.jsjs c183dc69a6e054260b5800df8cb1bdcf33338ca9f2d92f1b6d2161ca1fa1b850n/a Quakbot
2023-05-18Kjmzej.jsjs 983c9fb0828b90c43eda528aaf767c2c7d4b71d59b86ad0d04461db11d91794bVirustotal results 30.51% 
2023-05-18Rlnkns.jsjs 62497d1af3f04d7da40a34f39d4cb3b28e855a47c2507372bfa759e66adfa3f6Virustotal results 11.86% Quakbot
2023-05-17Prrd.jsjs 4aa5f66645ca2168af894232b630df6e88077c51f4fa33cbe2efd094e057fd02n/a 
2023-05-17Bcjq.jsjs 3f81d638187365133a7541ec95cc8cdedd33693b4fd6331e5fddb2281147b873Virustotal results 29.31% Quakbot
2023-05-17Oxmqn.jsjs b65cfc5c1f188f590ab7d7d6a20d1ea638a086a9be61e3442b6ea9388fda3c0cn/a Quakbot
2023-05-17Aviyrwo.jsjs ff4f21489a82d5367cbd581c4dde86dc238f869b950e07bf20f3928f7e6c7567n/a Quakbot
2023-05-17Ittzci.jsjs fed0fa880fd9812bea44ff765356fb74bdc116ba4a93d3e22ad855b9e789e299Virustotal results 31.03% Quakbot
2023-05-17Drsb.jsjs fc437c6d702c5302119f00f15fd16ab7ac0bf3d40875a890571b0d7d670b7a71Virustotal results 18.64% Quakbot
2023-05-17Kkjxfd.jsjs ec038ef76ec39d36971e8a801105bd271b7e7c72a23435f57313e54e0faaac27n/a Quakbot
2023-05-17Gbrzj.jsjs e7958ccd8a002219ae5c0a15fe85c42f33e3433270f0ba102d597f19a494e2e8n/a 
2023-05-17Ybaac.jsjs 7f66c0bdfc72099b888aac2df0e3865bcbf12f92ff3a1203fbde874e95a2860en/a Quakbot
2023-05-17Xhkmhtik.jsjs 5d80ce007d23ae28f37e18a0fbb7efd47ec19299cb2dfe08f2060ce169f2af84n/a Quakbot
2023-05-17Krhugime.jsjs 28025d9e885775918c713e99c18c4a65fcbe60ecad38aa196ce6213605f3d9bcn/a Quakbot
2023-05-17Sxek.jsjs 744df64951cb3e8999aec2c8b42cf782f4fa4dbe4ca158a7409a9fa23e3cf4d3n/a Quakbot
2023-05-16Volwb.jsjs 341ce79aa71d44c5b345661fbdc716c30b55450f43f989adbea65987d6844ff2n/a 
2023-05-16Ixzipco.jsjs ffe387b632a764c243c7627049d487040d0049a4639479f92845400b60d60ed1n/a Quakbot
2023-05-16Zyiyxg.jsjs 2979c3e000a4c57025749672235632ed6a14201b94a584be57294a6b0b7fd731n/a Quakbot
2023-05-16Xzym.jsjs ce04446f47017158947c7581bd3adc35aabf54c2bbbe042d75b8e51a50ebdaecn/a Quakbot
2023-05-16Ijqavqsm.jsjs 6059007ae5540fb0d40f171ec67d36786e099c64d0856b1ea9586b2c17bec649n/a Quakbot
2023-05-16Kbaqs.jsjs a03a48915fa411b2a55ae419457d7b6a7e7df38607c82965a5a38714a6dcb4ecn/a Quakbot
2023-05-16Jnzknfe.jsjs 1d91350bdfd3597b852ce94364816e41f5f62555d70a690a478e07047712818cn/a