URLhaus Database

You are currently viewing the URLhaus database entry for https://newspathlive.net/se/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2634283
URL: https://newspathlive.net/se/?1
URL Status:Offline
Host: newspathlive.net
Date added:2023-05-16 13:42:32 UTC
Last online:2023-05-18 22:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-16 13:45:13 UTC to abuse{at}namecheaphosting[dot]com)
Takedown time:2 days, 8 hours, 35 minutes Poor (down since 2023-05-18 22:20:19 UTC)
Tags:BB28 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-18Nvtwazgk.jsjs d3c6e06204212c1aeeef29809460056535cba3beca8cf163b7c8719671ef0c9fVirustotal results 22.03% 
2023-05-18Iupjkpu.jsjs 51ffefa8a10b6da720a80cec4735fe173669e7c974946e46c8dda908e824d8a4Virustotal results 22.03%
2023-05-18Cyzdmqkv.jsjs 1a2e818afb29521c8658d2a0643158af97370d69c32c0bd85cb900bd3e85b0eeVirustotal results 22.03% 
2023-05-18Wuagb.jsjs c74cf0cb7927a8438a84c9cedbdbab3e4815550813336043f39674a67b6a021an/a 
2023-05-18Xahsscam.jsjs 0eb36df6ac7e73e53c148166b06b5c1bc80d6a92c1718e19711dfd219c02ffd2Virustotal results 25.42% Quakbot
2023-05-18Pxjsqz.jsjs 90d7044e2b3c6695b8ce4be887d9fedf198e2631c47d77093e427bbdc2ff19fdVirustotal results 29.82% Quakbot
2023-05-18Usqvprz.jsjs 0107042269a76269dd71d3dc19e72a1759d421cbf33b9758b94f08c93f0989e6Virustotal results 32.20% 
2023-05-18Mxxshe.jsjs 6f741f3bd19d3433e0618cd31b85f73aa09fb1dfe670c9e5a8e0ec01cf274495n/a Quakbot
2023-05-18Mhfnlwaa.jsjs 88c9cde337f3a1dcaac0cf20b1b30b985ee5b11e0bd60b3b768a3f70751105f9Virustotal results 32.20% Quakbot
2023-05-18Jkyaqpls.jsjs 285384a5ccf94492475a9af926ddb24dc621f5b0f19df79f8ed7366ca130d544n/a Quakbot
2023-05-18Ohik.jsjs 2f457141989cd8db7267b3dd982bc3aca3c0d763161cfedf75384aaa9b27bfe3n/a Quakbot
2023-05-18Xmrwhvsh.jsjs 7f96290dff45385bfd8340f07e433e56831a66a593d5472a2ef8da6d665f355bn/a Quakbot
2023-05-18Daxhq.jsjs c28a0689fa744ad9aa6b9113d992a9fc9d303cf30f2b622975fb5e9a82ac02e6Virustotal results 27.12% Quakbot
2023-05-17Wtpqkk.jsjs 748288dd3065db0c33b5cd484c4347216a3780b90eedc58ea62491f9297a57d7n/a Quakbot
2023-05-17Rzckazt.jsjs 992ec3c1bccb3793a6ae36e909056122ef9e442c16c17bcf9d771c90b85ee980Virustotal results 22.00% Quakbot
2023-05-17Yarjw.jsjs 3fddbe5cee0b2b8ebbfc9637b8f112873fa786d04365ec85c4ff1f3ef1962ce2Virustotal results 23.73% Quakbot
2023-05-17Luoty.jsjs c73f356c704556ac74d752c91963fe6a1c7273b77027b218016b83f03ca878eaVirustotal results 25.42% 
2023-05-17Curtl.jsjs e378d6c2c0b5f5ad7404ae59dc73fb118bbc687f0b78b8526939d18e1a151bban/a 
2023-05-17Lnitfoee.jsjs 43783ef70654df6b8b4c8d132454112d675abe8da1b8cacb358490d7b2159998n/a Quakbot
2023-05-17Lesevj.jsjs d7ee80c4c9f9a041e63b9e4a454dfa6c60dcb7fdd18ca658f2f92fc97f61d766n/a Quakbot
2023-05-17Jlmbxew.jsjs 6e72177193dd33d46d53c83958b42ce58159467bee439f3581935440a8d04a17n/a Quakbot
2023-05-17Yzghawew.jsjs 62adce313c84aca262f544659dfba267d5597ef8c0a969407e39161d4452feaen/a Quakbot
2023-05-17Pmvogkn.jsjs e3f507602e96d42b0d3655a3922829af3343b39dfbb700e044b6fe80f8965226n/a Quakbot
2023-05-17Fiues.jsjs be00e898c573a1ba1b217a53d9000a2736010d7778de4823f0d5ff20d105a8b3n/a 
2023-05-17Iszf.jsjs 34639bb533f4974ce60bd8dcbdd2e6702e5c6b53886cca7f89275fecc31d0c1en/a Quakbot
2023-05-17Ougpakz.jsjs 006a56c1fab399d5ceca8256e63e28229c0e65cd1023eeb47156681d071df4fan/a Quakbot
2023-05-17Flyvfvec.jsjs c2872f8e083de3dea6bc9e1ee36f592835624f873c8a7dfe5c479a94258dd6bdn/a Quakbot
2023-05-17Ofzdvuu.jsjs b278730e7d6b3e9b5c0d479313ebba4cd794e5916a642d2b106c2c3b7cf881d5n/a Quakbot
2023-05-16Znyrifd.jsjs 5cca9812e4765e666621aa6e775f5a79191d1448a9273827db71a342cd439f6dn/a Quakbot
2023-05-16Jnsnv.jsjs 792c1b124f5e34d9f41d668ce2433e3e77ff2d302225c5fa6bbae89038f5f098n/a 
2023-05-16Wucryvtg.jsjs 508f5264f2ecc6af9fb0236e95915b8dcf64be0f5e75e0b9de48201e3721c8bbn/a Quakbot
2023-05-16Lyoojghz.jsjs 1e7fa2e82b760093e5080827b642c929ce19ec0bca4ea3a502584ec6c4ff658fn/a Quakbot
2023-05-16Naknyzog.jsjs 0dd6ab12c8c93cb01b6f1d337b07dbed01e54d4195f6ca8566dbf993195396d3n/a 
2023-05-16Yjobpgr.jsjs 33957102bfa008af32a8e4b71c2d4738b0ba8cf40f590dc6aed238c9836c253cn/a Quakbot