URLhaus Database

You are currently viewing the URLhaus database entry for https://aktarhome.com/upm/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2634275
URL: https://aktarhome.com/upm/?1
URL Status:Offline
Host: aktarhome.com
Date added:2023-05-16 13:42:30 UTC
Last online:2023-05-18 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-16 13:45:41 UTC to abuse{at}hostlab[dot]com)
Takedown time:2 days, 7 hours, 24 minutes Poor (down since 2023-05-18 21:10:15 UTC)
Tags:BB28 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-18Ctdbzq.jsjs 51ffefa8a10b6da720a80cec4735fe173669e7c974946e46c8dda908e824d8a4Virustotal results 22.03%
2023-05-18Mstrzsmz.jsjs 1cea0c4b1af9170b9ed2927f3b100d202bebd1b8e69ba1527336aaa6b2c0bffcVirustotal results 13.56%
2023-05-18Nlhytlu.jsjs 6016f12710a18923ed029eb1dc62882b5f1a032a7424e0169dd8c2228598f59dn/a 
2023-05-18Grpehrku.jsjs 0eb9fa07ffbdae465ca7afa7b68b6b38311315046844cd6ac97c9e3b77d5fe99n/a Quakbot
2023-05-18Dwanvl.jsjs 27d3fa3ffa307f97bc3047f15898d338734929484e224f43ab8740c710601a78n/a Quakbot
2023-05-18Hcqrctu.jsjs 5002cf2a22a794f451347414eae921d359f14704e2fc3491ec70ae29266a6ea6Virustotal results 22.03% Quakbot
2023-05-18Bmqt.jsjs 3cc62e68f657fa870eabb640cd8e651d4ee69a242db9feadeecdbe6a0435ea99n/a Quakbot
2023-05-18Lfbsuwl.jsjs 0eb7615075853fea63154c3bbd2be5b4bb724f0717a67082633fe348e45b49ebn/a Quakbot
2023-05-18Uwyfpi.jsjs af1b94948c602627bf551b38dae50d6be3c349f5b15e7fe1d2a792e047809553Virustotal results 28.81% Quakbot
2023-05-18Rdqsnz.jsjs 13fa98699be69d8a22ee7c59e1a9efe2f504a721757490445465dc8a1de1765en/a 
2023-05-18Tyvmneis.jsjs 4422126c61949a9848ddc759de968eb699c5364973a271dc9aac631121591d13Virustotal results 27.12% Quakbot
2023-05-17Lpcracdz.jsjs 3ac894a6a388d20bc81ae5f8474ee788079f5036842b1542150a55c8fed2059en/a 
2023-05-17Ayak.jsjs b896df419a5e1ac8fe67ede2b9594d6252e8dbf87ef64fd093ceacc52a84798fVirustotal results 24.14% Quakbot
2023-05-17Swizxhq.jsjs fcd00b353c980d48983a4a2533eb482d632935a343b2034ea119d3a4a74f3841Virustotal results 27.12% Quakbot
2023-05-17Oaoh.jsjs 43783ef70654df6b8b4c8d132454112d675abe8da1b8cacb358490d7b2159998n/a Quakbot
2023-05-17Dnnjnrqy.jsjs ba77ea0ae3afe4582d390d1930a3792bde2ba411df7e3c05ae156306c5cd46e4n/a Quakbot
2023-05-17Fjhfgs.jsjs fb2bca8ce3aa4207fc636e9ebc34bb47cc0d9b6a233352bff3b6875b6bedce3dn/a Quakbot
2023-05-17Eegjhtlw.jsjs e98ab08e4897807987344800297aa41a72fc207a57b0e89510243b3b8ad0e144n/a Quakbot
2023-05-17Juuigsg.jsjs 51ed3151e81d836c964005d5e2e25fdc96aa6aafaf62648d3a4faa2d94258353n/a Quakbot
2023-05-17Gmmdl.jsjs c81ff3c506411792c6205684a8c589cbe31cad26ecc83c43c0ee7cab7fbd687en/a Quakbot
2023-05-17Rspi.jsjs 8f05978fa010d158ee878557dcb99729dfb9112a398eb1eb1dc38d14c2959f14n/a Quakbot
2023-05-17Uknglbae.jsjs 9d668cdbef0d441c270250d6a296e7fc0c004d555e37f4610aba244f768c5c03n/a Quakbot
2023-05-17Slcwbzu.jsjs dc8211d0f8b8399e837ec4edd1cf25f06c21ea4b8f9173dd90338d26f5317a93n/a Quakbot
2023-05-17Dbktaa.jsjs 957cd5b9640894d29def77801234de76603ff3265911e946ee49f17316e74cd0n/a Quakbot
2023-05-17Ywre.jsjs b29bd3ed7dcd1b9b48094243b8055a2a3a2005f0abd1242bc4318993c7419d18n/a Quakbot
2023-05-17Stczqnc.jsjs f1e9b35dcaf6ed7460d53230ac62f95ae0dbb3bd7b9dc205bf6ee26f72e12eben/a Quakbot
2023-05-16Yokmgmu.jsjs 2e670e43ed66ed2e2607163460b7cd9981bcf8ff20fe8974a0bae5cbc4b58717n/a Quakbot
2023-05-16Mcvbltbz.jsjs 8348a47e904f7f72350c8ff7ffcf62e10394c2cf3316294aca58c35c510f4b66n/a 
2023-05-16Othv.jsjs d88a5e80c62dbf9d9621affa58d7298dc49890e981eece0fa2d27a2700bce928n/a Quakbot
2023-05-16Twukuya.jsjs 7e1e799b99db2046423e0c0831c8a79c152493115843b3b0f9871630e29b8e3dn/a Quakbot
2023-05-16Amkjexdb.jsjs 626420fb1dd5bdecfb976f5e1aee6bd6764cc72e4742a14785b02e2b5b3cdc45n/a Quakbot
2023-05-16Zlsc.jsjs 3e6ea26081b76799c7a22f8ed5ff4b34940f528ffaf667d782c523d0c185fea2n/a