URLhaus Database

You are currently viewing the URLhaus database entry for https://indriflix.com/tp/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2634547
URL: https://indriflix.com/tp/?1
URL Status:Offline
Host: indriflix.com
Date added:2023-05-16 19:11:11 UTC
Last online:2023-05-18 22:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-16 19:12:11 UTC to abuse{at}namecheaphosting[dot]com)
Takedown time:2 days, 3 hours, 31 minutes Poor (down since 2023-05-18 22:43:19 UTC)
Tags:BB28 geofenced js Qakbot link qbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-18Necdro.jsjs d3c6e06204212c1aeeef29809460056535cba3beca8cf163b7c8719671ef0c9fVirustotal results 22.03% 
2023-05-18Hujv.jsjs 6016f12710a18923ed029eb1dc62882b5f1a032a7424e0169dd8c2228598f59dVirustotal results 28.81% 
2023-05-18Tvpte.jsjs bbcdb87a842c5157acea98f0cedd358f764e2613b6a635e4f9f5946de8c07780Virustotal results 13.56% 
2023-05-18Pxdwu.jsjs 6368c8eb4d0d2fbfee4934bc486c0bee31856bfcb7944b7f51d073683e7c557fn/a 
2023-05-18Wxgtvygg.jsjs c183dc69a6e054260b5800df8cb1bdcf33338ca9f2d92f1b6d2161ca1fa1b850n/a Quakbot
2023-05-18Mopdsfmv.jsjs d306257143ef32e3f924f2886ed8c92b3dadea9e12e458ad402e9456a2e61edfVirustotal results 24.14% Quakbot
2023-05-18Utlbs.jsjs d4d054686a5e084363a71c69d138897e7b35fe3a4008cdd377ef2a2121799d11n/a Quakbot
2023-05-18Vewtqlpz.jsjs b22c3068eb2fde1d32dd3e2ce301ae348c6baefe0a01c2b50703b10083122ae6n/a Quakbot
2023-05-18Roshtx.jsjs 6d5e3d77360658771bba4d35e8dd94a77d30f33a7c30ab86b66e271b54d2a638Virustotal results 20.69% Quakbot
2023-05-18Gpdi.jsjs 9d4e35c32d73270df3c5bf64cd693e2933e614075af8f15eeacb3fcd142f8ceeVirustotal results 28.81% Quakbot
2023-05-18Vvogayz.jsjs 8290e44e2bd6431a3cb8fce93c83b97d4710c63bffe7f1eb93db3282ae17b5f6Virustotal results 27.12% Quakbot
2023-05-18Mobtjoy.jsjs e5f9fc33236b5ba2988d71e8585b3802d96cde07263ae499ce6ac56cc9db183aVirustotal results 27.12% Quakbot
2023-05-18Pesoy.jsjs 85341f4b78166b2b1fe18125caf6a187b8c29c45ce7ef3956530cfd4bd6591e0Virustotal results 8.62% Quakbot
2023-05-17Aqhn.jsjs 8ef706183443d30910cb1d411aa36e657e86119ff849b6a9edef4125b752bb92Virustotal results 28.07% Quakbot
2023-05-17Zwuo.jsjs 50ebb94dd22b6d976b5ec46e2aaa6756dd807058f1a4fe1497d72c4a355b3c2dVirustotal results 25.42% 
2023-05-17Olgh.jsjs d4048bb4d8d517078d21db74a0238b8f0696dbad0bfb9cecbe0dad5e3a89bb47Virustotal results 30.51% Quakbot
2023-05-17Otbtgs.jsjs c73f356c704556ac74d752c91963fe6a1c7273b77027b218016b83f03ca878eaVirustotal results 25.42% 
2023-05-17Zttv.jsjs 245d8b4566da1f99cc5bba4998955421b38764ee0718c94a6fe8019674ccfcd1n/a Quakbot
2023-05-17Ceglcv.jsjs a22b66a10925ee0bc864c2b920e30792c9c23d171ffe1d926a43d0403fa0f1c5n/a Quakbot
2023-05-17Uxxhswq.jsjs 170ceff8d051e5addeb6beb1128383fe814b7b40738b54c0f99409de5ccba2c6n/a 
2023-05-17Lytyqr.jsjs c427aabc61c859a86bd5a1c49f2a2331169d3d47ad1f9f8c067c335dc8bf8675n/a Quakbot
2023-05-17Zfca.jsjs 10c31dac1cb0b011df98287d754bf6d3417332e5531230002a70c4874527c8cfn/a Quakbot
2023-05-17Zozrsbr.jsjs 02579ce7ce0079aaf4e28140f1ae01e573d94d8ff57f0062a5c20fc91a2f967fn/a Quakbot
2023-05-17Soxlagq.jsjs 86ddd2efcd54889ea3e70a393469e5e0ce03f1b8e89c8dc4603dbf422193784cn/a Quakbot
2023-05-17Youdmavf.jsjs f4b1c08a70c62fd22e3ed3bf705d13e72d17f07cb5de4e1a9069c214c67e638dn/a Quakbot
2023-05-17Gdofg.jsjs 2c428a06e5e08f30526e696514c9b75d980e703fbcd1bd731defeb4d2d6a3cc9n/a Quakbot
2023-05-16Oyoi.jsjs e22be53bcce88adeefd0001ba38ec9e34c4374839621d0ea9808cd69bb4c6f21n/a Quakbot
2023-05-16Oyiwyod.jsjs 3f9206b649c62e8cae95c24c0e0efbacb51b742ac4db60caf792bdf294a5be7bn/a Quakbot
2023-05-16Aywlhpp.jsjs 7b490aad18830e1e5be3471c2cad279257ec0ccdce719fa5e8d5cd3fcda7a7efn/a Quakbot
2023-05-16Nknxn.jsjs dbc9a52d8e1aa8a81760d57bebe2e5ebe3ef00a93fb3b2ed2f14fdb6b65d5220n/a Quakbot