URLhaus Database

You are currently viewing the URLhaus database entry for https://cinetimesnow.com/qa/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2634264
URL: https://cinetimesnow.com/qa/?1
URL Status:Offline
Host: cinetimesnow.com
Date added:2023-05-16 13:42:28 UTC
Last online:2023-05-18 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-16 13:45:26 UTC to abuse{at}namecheaphosting[dot]com)
Takedown time:2 days, 7 hours, 46 minutes Poor (down since 2023-05-18 21:32:07 UTC)
Tags:BB28 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-18Xuasolfr.jsjs 51ffefa8a10b6da720a80cec4735fe173669e7c974946e46c8dda908e824d8a4Virustotal results 22.03%
2023-05-18Xjpnpw.jsjs d7522ab4f64ae0950e24bb00df9157136bbcb900ace0c77bd1a46f06149bf37aVirustotal results 24.56% 
2023-05-18Qtcea.jsjs 872f152fb783ebf8edce56db1f1560d51033e21cb0dd78199c964c2a02d91b1cn/a 
2023-05-18Wuhndnv.jsjs c5a390d1bf67c2241e5a9cb33cab3e83b41d4319c494c9f15d864cff3015e95dVirustotal results 16.95% Quakbot
2023-05-18Vghnxfs.jsjs 9da26f54018ef7b69e7ca172d1ef9d1de643acee030e0b25c66a5f27867c8833Virustotal results 26.67% Quakbot
2023-05-18Axsx.jsjs 78a09834bde88bcf04dd934a793540b810b090e90efb96a977c2477be294fc75n/a Quakbot
2023-05-18Atzalkj.jsjs 644d7490c3fe27e34ffb24eec109bfe9aaaab1a088b489de784de77611e65df8n/a Quakbot
2023-05-18Cbczagi.jsjs 0c002b88627f5df1e7415950b066ddc51bf3e0f4f3ef5a2b01a266b2c4282ee1n/a 
2023-05-18Yzmdejga.jsjs fcd00b353c980d48983a4a2533eb482d632935a343b2034ea119d3a4a74f3841Virustotal results 27.12% Quakbot
2023-05-18Mzoxoxs.jsjs efc10c85b0f60f774980c7250e0358ab61ded2a4d2f8fed854bf14d05af6908eVirustotal results 6.90% Quakbot
2023-05-18Tdzeyp.jsjs d298331f4833111dff68336933087e322debd03460a21ee0d22d0d8e2b5f7ca1n/a Quakbot
2023-05-17Fiuxafvj.jsjs 5c53fc6d6d29d37ae644bf3845ff851d6b03cd26eb5e411f93c26dcf018a4c35Virustotal results 25.86% Quakbot
2023-05-17Aayojo.jsjs b65cfc5c1f188f590ab7d7d6a20d1ea638a086a9be61e3442b6ea9388fda3c0cn/a Quakbot
2023-05-17Manxa.jsjs c1044908da1da906878008c59c922860ec35f46da707552ee2bc0ecd86b9c0adn/a Quakbot
2023-05-17Klkm.jsjs f7bc14c8c137444d5d046f1c1304ca9eb96509ce61adeffaa967dc07f21c17d7n/a Quakbot
2023-05-17Ovopzbvb.jsjs a6974773e37cbd56791b75effa167213997aeaaa65d704bd1de8aac6d9dd42ceVirustotal results 30.51% Quakbot
2023-05-17Xnsdt.jsjs 5c2f413b69f9b93e5bf828d8c4219af88afdfc9d6fc5d04d749815dc66cd664bn/a Quakbot
2023-05-17Oitawgwq.jsjs c73f356c704556ac74d752c91963fe6a1c7273b77027b218016b83f03ca878eaVirustotal results 25.42% 
2023-05-17Hzgf.jsjs 285384a5ccf94492475a9af926ddb24dc621f5b0f19df79f8ed7366ca130d544n/a Quakbot
2023-05-17Nkqt.jsjs 8d06d38252b9d2c4a7871d3ffdeccd766fb7407efa2e9482fa477ffdefe72bb7n/a Quakbot
2023-05-17Rthk.jsjs 2556a0c7cf8c1fdb8a1fcd7afb6ed9bb81eeb4d6c5b556b6d43ab56cf6841e58n/a Quakbot
2023-05-17Ursqc.jsjs 1ada8fc4c0c09b77c72398181a8aed7eb5950d368da1d213ca3ae575304f9b58n/a Quakbot
2023-05-17Bwrgxl.jsjs 0722d57b242882658532cf38b4fadfbb16ee9fb80a6ec920667fabe46b63e368n/a 
2023-05-17Etpyq.jsjs f96fcce9337d81c722e9e9740dc103915d02638ba9bc86ea146459951088cad9n/a Quakbot
2023-05-17Amotkj.jsjs d06759e9cf6044aa53368c796f3a66f20c70c7d730fd932dcd39cc6abe18c08dn/a Quakbot
2023-05-17Iwdl.jsjs 73b840de98c3b09b47bcbbcc0888e3371ef3ffe7d0f27a29cba91601c1d70793n/a Quakbot
2023-05-16Xsbiuleh.jsjs c4db1304285b33b5754594a66d7f09afe39ec062ae6643faecba033818b7360en/a Quakbot
2023-05-16Ybcqvspk.jsjs 65aa7766cdd173ab2d0d5c0875ba95c64652ce801e02bbbae8ff4ee94f115f30n/a Quakbot
2023-05-16Iwcgen.jsjs 9ddf58ffcaac1200cc21b74b80cfb2d721ee6e30a3800f57975ff9cd07404675n/a Quakbot
2023-05-16Tnuzr.jsjs 1c48b465e6eeec7f7dd6eddb7d2204b2b2a33aab5de1805845513d2bdc6022d1n/a Quakbot
2023-05-16Pqrclrb.jsjs d24069ba16ffb74381a4d956823c1ccf60ba0486eef1e5f0a0f437d2199097den/a Quakbot
2023-05-16Xnjyl.jsjs 69314ce24f577a3ba858d2b9ce80e90de2d2fa5adabbe6043348452012745083n/a