URLhaus Database

You are currently viewing the URLhaus database entry for https://etiskin.com/dmn/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2634137
URL: https://etiskin.com/dmn/?1
URL Status:Offline
Host: etiskin.com
Date added:2023-05-16 13:42:08 UTC
Last online:2023-05-18 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-16 13:43:35 UTC to abuse{at}namecheaphosting[dot]com)
Takedown time:2 days, 7 hours, 52 minutes Poor (down since 2023-05-18 21:36:00 UTC)
Tags:BB28 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-18Ahrsr.jsjs d3c6e06204212c1aeeef29809460056535cba3beca8cf163b7c8719671ef0c9fVirustotal results 22.03% 
2023-05-18Nyviiza.jsjs 76443e093ed6d6e3961cb5f9bbd546bab2d05f6bc2536c5744dc86f7a769bea8Virustotal results 30.51% 
2023-05-18Vfbf.jsjs 67afb6fe01b12f4c199423ee3a1fea3df90003357fcf087a453754ac698f67ban/a 
2023-05-18Rzeyxj.jsjs 02736e3801e700601d6212804b2d824ae4771d32fb369044887fdc9f2076ddfdn/a 
2023-05-18Qgomjyxg.jsjs 3f2b1d4fe71004830b3afc87d735391d7ff0033d3264baf0b9b84903c52c16f4Virustotal results 30.51% 
2023-05-18Mypp.jsjs 5b34cafeebdc336b994960dac5ba4fcb70877967e1b19443c512f0a0cabc1d75Virustotal results 13.79% 
2023-05-18Jjdvr.jsjs a6974773e37cbd56791b75effa167213997aeaaa65d704bd1de8aac6d9dd42ceVirustotal results 30.51% Quakbot
2023-05-18Avcjtkrg.jsjs 7de33bd597e2308019574ea948f706768bf2fbb89ea7392395d6cfd89909369dVirustotal results 25.86% Quakbot
2023-05-18Twcolc.jsjs f15cee857739e493f0b99f7ec002e9fd76dd37b87080807a922a414a5294c989n/a 
2023-05-18Xubpdoqi.jsjs fbf34d1f59eea01ae0ec44fb3d7e93d4a06dad0b411065a5d6292f3ebe7081acn/a Quakbot
2023-05-18Vetr.jsjs 1c70b83f5b4051ac542278897c3b02f334291507f01f685e95893c574241e6b2n/a Quakbot
2023-05-18Urhzez.jsjs 56f98c1c97e1453ff995b3a13557d14600aba57f58f3537688826daeba157151Virustotal results 25.42% Quakbot
2023-05-17Mjedig.jsjs 7b501e67649c8608b6333e95e174a2d3db77d745651cf4142c43e79b0e1ed927n/a 
2023-05-17Yysi.jsjs b65cfc5c1f188f590ab7d7d6a20d1ea638a086a9be61e3442b6ea9388fda3c0cn/a Quakbot
2023-05-17Kqihewnz.jsjs f6bf73aa768753f4379e2df6f0094dda46beb48b879c76c983896434f67c0ab0n/a 
2023-05-17Fltv.jsjs 7fdeda1296a36cffb37a03dca1e25125b27333e53ead2391247d2790dffd0e7aVirustotal results 32.20% Quakbot
2023-05-17Wcpn.jsjs 8c4f0c45a34f4cd509c3354346e0db29fbbe4bd099e2b67de6abc88dde35081an/a 
2023-05-17Argsb.jsjs 5002cf2a22a794f451347414eae921d359f14704e2fc3491ec70ae29266a6ea6n/a Quakbot
2023-05-17Fplfi.jsjs 27d3fa3ffa307f97bc3047f15898d338734929484e224f43ab8740c710601a78n/a Quakbot
2023-05-17Cqrml.jsjs 3f981a1967089e05af05885173620b3933551cec4a09409c5472958389e98ee7n/a Quakbot
2023-05-17Lkbpfz.jsjs 040dd51bb62318f455e30a2d01dfe9c908c46b6b75b6ad06dd853a58cdbf8c47n/a Quakbot
2023-05-17Gkdxjtjj.jsjs 4c920dd2a12a6de85294517624620fd44e9f53d1cafd1506961a979b84a08b49n/a 
2023-05-17Cleewfm.jsjs e9a608e52ebe4382617f14c8be3300d3bd783537ff5529431dae6ffb8b962d5en/a Quakbot
2023-05-17Ukzvv.jsjs 7b512b32c213883e482d22e1602d216a5d4dcbd0a33f9cc8c4ba772cdd940093n/a 
2023-05-17Nnnzrkvd.jsjs 756b216be646d7f928643d44b9b18ee3d8afe4c880523ac1db3d7774cf600dafn/a Quakbot
2023-05-17Muxew.jsjs 4b588ccd2cfa622a41583161ee0c3149340585c67286795dcd9dc5e13d89c481n/a 
2023-05-16Gonxwgx.jsjs 4f55d1cba95682a9d7eab067a1536ef1bdc99fdec572284e9a98b5fe34fd1ea0n/a Quakbot
2023-05-16Zktipubs.jsjs ca6fd6bb783790267f1573d3a05682e3376529bff0b9cb2c2c04c19b4b6854b9n/a Quakbot
2023-05-16Ceeexjv.jsjs 499761e536a83d9e3c2f594822570c4926564884e52f9c6a784ed425e8dfbea8n/a Quakbot
2023-05-16Tqknrakn.jsjs 93940cf2460e9ecb10788daeaa399aafac48850773b9bab83b86898836a71a76n/a 
2023-05-16Ebtip.jsjs e6c5bd685940cd2cefcbf42d0367c19b2de41ea1e3ad7beb661afb0eaef8eae0n/a Quakbot
2023-05-16Drlnhak.jsjs cf40c3338c1db6ad1a81a1bbe664fd20a9b7fb326e24a0fb1f7824eb9149b857n/a Quakbot
2023-05-16Isqsgijj.jsjs fa365a24378c353ff0638a5b21f3ab0dae83ac64c351e7b1286169e399dfe96fn/a Quakbot