URLhaus Database

You are currently viewing the URLhaus database entry for https://trinifieds.com/qae/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2634074
URL: https://trinifieds.com/qae/?1
URL Status:Offline
Host: trinifieds.com
Date added:2023-05-16 13:15:15 UTC
Last online:2023-05-18 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-16 13:19:03 UTC to abuse{at}hostgator[dot]com)
Takedown time:2 days, 8 hours, 8 minutes Poor (down since 2023-05-18 21:27:46 UTC)
Tags:BB28 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-18Tldpp.jsjs d3c6e06204212c1aeeef29809460056535cba3beca8cf163b7c8719671ef0c9fVirustotal results 22.03% 
2023-05-18Odpm.jsjs d7522ab4f64ae0950e24bb00df9157136bbcb900ace0c77bd1a46f06149bf37aVirustotal results 24.56% 
2023-05-18Lbpkzz.jsjs c74cf0cb7927a8438a84c9cedbdbab3e4815550813336043f39674a67b6a021aVirustotal results 28.07% 
2023-05-18Ntsfrsi.jsjs 3b25f90c89baf6f99625ca1d4f78a40229fc722acd8550ff5ca31ff70b6042f3n/a 
2023-05-18Cylcz.jsjs ce5efda576bdfd577cb85bba27c1785787f37d30869878530f7249504d45cf69n/a Quakbot
2023-05-18Oztti.jsjs 7aabd12a63a4289e6a5f5fc62d866ed2ade8e917a6f2d203bdfd37c0f87ab265n/a Quakbot
2023-05-18Jmsvqcz.jsjs 05dab37be019900d575f8a51485f2baecb4fe212712970c486fb711a173c6290n/a Quakbot
2023-05-18Nhcn.jsjs 28e8b66452412d01288417d1253f85d6981dd1fe21d53dfb5cbd49822a60cdf0n/a Quakbot
2023-05-18Djtq.jsjs 88c9cde337f3a1dcaac0cf20b1b30b985ee5b11e0bd60b3b768a3f70751105f9Virustotal results 32.20% Quakbot
2023-05-18Qwke.jsjs dfa59aec9d3aea04d54bc6bcacf0f7a1fc618f9981bc4a0955947134999d2ae9n/a Quakbot
2023-05-18Gyjjnjys.jsjs 8290e44e2bd6431a3cb8fce93c83b97d4710c63bffe7f1eb93db3282ae17b5f6Virustotal results 27.12% Quakbot
2023-05-18Xwvtq.jsjs d8ee25b9b238ffa9197d9bb3defe47e9a2720909109c315f32b38191a4c534afVirustotal results 25.42% 
2023-05-17Cnbmhap.jsjs c7350bae160037853cf976ce2975bb3bf2a766449f69080fe67c733cbe18e005n/a Quakbot
2023-05-17Pejth.jsjs 2b2ddaf766a72a62c3247e520317d64f6b32231d8802b99b861cdbcd872a7ef0Virustotal results 27.12% Quakbot
2023-05-17Iaob.jsjs 5f98b59055620e884f40e504321e65af6a6ff2e7eff1035ff136dc57e98e0cb1Virustotal results 25.86% Quakbot
2023-05-17Mhbtsck.jsjs 3f2b1d4fe71004830b3afc87d735391d7ff0033d3264baf0b9b84903c52c16f4Virustotal results 30.51% 
2023-05-17Zpvpd.jsjs 9898858b1809b1511e09fbef76498bfa2d39365eb70958ac81ba4a0263c6e209n/a Quakbot
2023-05-17Ywmjjlij.jsjs a5f3d5a1dd9f57238b6a528792a0d6043f93289be9f4e2760c3549006c132bf8n/a Quakbot
2023-05-17Itrhusi.jsjs d072c0958caad1a6504236a0de9defd899adf9e6deedeb1cdeba1e72229b29d8Virustotal results 31.03% Quakbot
2023-05-17Esjg.jsjs 0af9a445f31e51c20a58fad5f35d353da59c49e684bf1db02c436c4d7f7f18a6n/a Quakbot
2023-05-17Tfnnzrvi.jsjs 6fcf37e53115a70eaacc0d2c04746e16020147a132915b18c5325045f21e000dn/a Quakbot
2023-05-17Mmwzks.jsjs 5e34f25b28889dfd2caf8d751730fba4fa9089e7c01b0db49bc66dd95cbae75an/a 
2023-05-17Qgcsdwyx.jsjs cabc98e4ac132c62b731176f559cce2b11afe87eb7382ef77b77254e841382a4n/a 
2023-05-17Zgxmxmt.jsjs 4ac955e9559729bbf68c87b5fb7f305ed5ef912ff14b06b365056abdc45424f2n/a Quakbot
2023-05-17Cdvq.jsjs 2602586f712935916533d95db2c67736fc74a6a76adeedcab04f01c74005672bn/a Quakbot
2023-05-17Tinkay.jsjs 48401d6e957308d56380ff7ec968b589740d754a9a4be018efec95da76d8c522n/a Quakbot
2023-05-17Xxdkitc.jsjs b4a5c53bd7d55d058a48519a7ad6176a1497843d809318c32c6ba550b08d450fn/a Quakbot
2023-05-16Eilodx.jsjs d57c297352eaa5748b413d991dcf5cfec8fa107fdcf4fce78bf81aa4b577ba82n/a Quakbot
2023-05-16Zgic.jsjs 0ab385aa38dabf146802cdbfe5f50964bba00619524b4a7b1686803c62063b52n/a Quakbot
2023-05-16Yvkuar.jsjs a1a65f293f0a7eb513c02a7dce5a1a90f5846e5c3fec5501af99d02b7f0f2395n/a Quakbot
2023-05-16Xvssmde.jsjs 3012920563945c392b5bdee137f1d2743d439ea939630fa31d4ddd4fbcaae0a4n/a Quakbot
2023-05-16Rnqvwqkj.jsjs 590396225d5ebef6cde97f0ffda1640b20c54ac4d73a99a0f105b54afcd83387n/a Quakbot
2023-05-16Nxxuajy.jsjs 16f5f9e77dbecb4c5720acd0c918a1c1f1cc9c609fde0bb94835ae4952389afdn/a Quakbot
2023-05-16Bnpyi.jsjs b95b3992cb84e1a1a49456a22d3b5fa62f3b81c4d34af28d039e9237420fe8d8n/a