URLhaus Database

You are currently viewing the URLhaus database entry for https://falakaio.com/oisc/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2634510
URL: https://falakaio.com/oisc/?1
URL Status:Offline
Host: falakaio.com
Date added:2023-05-16 19:10:16 UTC
Last online:2023-05-18 18:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-16 19:11:11 UTC to abuse{at}bluehost[dot]com)
Takedown time:1 day, 23 hours, 27 minutes Poor (down since 2023-05-18 18:38:52 UTC)
Tags:BB28 geofenced js Qakbot link qbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-18Phfs.jsjs 51ffefa8a10b6da720a80cec4735fe173669e7c974946e46c8dda908e824d8a4Virustotal results 22.03%
2023-05-18Bqmunjxo.jsjs 4fb68fbcf1078fffb4a1871486218b7edf640452ac94d0cf349efe45f7834c00n/a 
2023-05-18Xgvoud.jsjs 285384a5ccf94492475a9af926ddb24dc621f5b0f19df79f8ed7366ca130d544n/a Quakbot
2023-05-18Gjjfkwb.jsjs 40b44314a486ec7a8d570abd6d0edb8d6d9384e75de8dfd5d698783e701d3dbaVirustotal results 16.95% Quakbot
2023-05-18Xzobz.jsjs 288d425513bcbc2368880669d2eb2f2b553edb8962acfb77e4a967d751235520n/a Quakbot
2023-05-18Bcsmpvks.jsjs 6f741f3bd19d3433e0618cd31b85f73aa09fb1dfe670c9e5a8e0ec01cf274495n/a Quakbot
2023-05-18Vjnho.jsjs cbc57ebccb343515692b47782246ac3ce19ae8ae335ddc9895810261d11cb663Virustotal results 16.95% Quakbot
2023-05-18Zmnxequ.jsjs 86cf4c93687b588dae11523a8db9355990fe06f4481aa096e4acfcd8555b8e25n/a Quakbot
2023-05-18Ztli.jsjs 6325a36db9c4fb5af943871bce9ae9c80002f6d9379e71cd94bdefe0342b14f5Virustotal results 32.20% Quakbot
2023-05-18Bbvuz.jsjs 36c1b7c7a1b5c11ac465725f40b235b232adb02f122a1d9d3210656cacf4ee3fVirustotal results 25.42% Quakbot
2023-05-17Ospzppy.jsjs 1a3fc3e2d336f6c024b0a452cf6eab7b5521bd6591f7ff15ac80caf4af268c3aVirustotal results 32.20% Quakbot
2023-05-17Otkpmck.jsjs 3cc62e68f657fa870eabb640cd8e651d4ee69a242db9feadeecdbe6a0435ea99n/a Quakbot
2023-05-17Beedpu.jsjs 67878c5898e4d6118aea2d8059896ec493c2cb1b7f3bdc563068504a0bca9373n/a Quakbot
2023-05-17Wwhfye.jsjs 93bba231e08381a78fea4f6623a38ef11130273ca9bad59f5132b68797d90d23n/a Quakbot
2023-05-17Swrfyigz.jsjs ceb8cce48cb241bf1dbcb587ed7d6d8d4c9fdeb5f87bea993602228464eaf9a5Virustotal results 11.86% Quakbot
2023-05-17Kveciv.jsjs 185a635c927d918ae74aea58092eb9ecedc06bed0129605f9c210f1a3ad2d63dn/a Quakbot
2023-05-17Djtcx.jsjs 59eafea575993fa2b9b1a5a60ec2852f5cbda6491cc6c163e79d91e7fc9b1d7en/a Quakbot
2023-05-17Bifse.jsjs 4bb1a8aa4597d0a138cbf8fd5dfa5d94fe6b3f39b097cff3b5957b64ce5793f9n/a Quakbot
2023-05-17Sgmclade.jsjs 828dcec386a8f8af4a77c7d085e9472cf907feb7ff693e38213a5c75edd5d9a9n/a Quakbot
2023-05-17Kfmn.jsjs 15a7701686e0fc25cb98eeb3686e7b599f27dca7f41ba873be5875c280c43421n/a Quakbot
2023-05-17Hffwl.jsjs 4becc9eaeaf0b5562790bcfa8acab9ba0bab4366b4923850f18ba5c3ad68e7f2n/a Quakbot
2023-05-17Hhmeymmj.jsjs ad20315486a7792fd0c9ec88648ebd2d4a91e0ee8afdd369450f6e9a01aaa308n/a Quakbot
2023-05-17Tewtjxkw.jsjs 4bd2cf35c67e0574109b8f3bd81ece61374a8983d6d15e8e3acf2db05f5b16c4n/a 
2023-05-17Dwwhix.jsjs 55e649f69baa9a5bad25f2d274d9aac6d31d7bfa8e63edf5f5f1c5349c2cab1bn/a Quakbot
2023-05-16Cuwbx.jsjs a02b6a77062dd29daaf6e2456c9ac42e4814d49d8846ae8962bf3a211e2f5f48n/a Quakbot
2023-05-16Sgcczlar.jsjs 8672acd5f3dff90d921c63a32d49333413061754384d2e2ff7002a758701f0f7n/a Quakbot
2023-05-16Mqtlewy.jsjs 46a36b91c30587b04be8ad44d5a225ccedc5d651ad715aca695eb78b979db1b5n/a Quakbot
2023-05-16Unbnh.jsjs 04881b66f0c6c4aa382413e334797b5a4c05e8e5a947fc3e3229301a0f43c664n/a Quakbot