URLhaus Database

You are currently viewing the URLhaus database entry for https://thedesignors.com/ee/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2634640
URL: https://thedesignors.com/ee/?1
URL Status:Offline
Host: thedesignors.com
Date added:2023-05-16 19:14:21 UTC
Last online:2023-05-18 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-16 19:15:39 UTC to abuse{at}namecheaphosting[dot]com)
Takedown time:2 days, 2 hours, 43 minutes Poor (down since 2023-05-18 21:59:13 UTC)
Tags:BB28 geofenced js Qakbot link qbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-18Yopyf.jsjs d3c6e06204212c1aeeef29809460056535cba3beca8cf163b7c8719671ef0c9fVirustotal results 22.03% 
2023-05-18Gkbc.jsjs c74cf0cb7927a8438a84c9cedbdbab3e4815550813336043f39674a67b6a021aVirustotal results 28.07% 
2023-05-18Aweutd.jsjs 51ffefa8a10b6da720a80cec4735fe173669e7c974946e46c8dda908e824d8a4Virustotal results 22.03%
2023-05-18Jbkszfx.jsjs d76b1300fd995ec8def343df0450c11a58a217803fee3749db4afacebc64182en/a 
2023-05-18Qhqgc.jsjs 0998663a732bf0873f666519f73ee86dc890d601a2d4d5b8ce2262ce522ffaf8n/a 
2023-05-18Ouiudypx.jsjs 962531faf5a4bccd1d88868db9f0b5a79c3073f110ae5e4b9f61d7ea15f8b855n/a Quakbot
2023-05-18Qxanw.jsjs f5a9de314dd0e63ac6262d4d17d66999b1a0ef8384756576c26eb7623a678f71Virustotal results 25.86% Quakbot
2023-05-18Raslm.jsjs 98ca0fd1f80c8b41e2782376e1e44d8dbd142e3c6e7f91e3459aed684bf210a2Virustotal results 25.42% Quakbot
2023-05-18Tdieoutr.jsjs 257dab59e71c1109ffbf0b4ee1568df9566b886ee56301a089577a0fbec29fe4Virustotal results 8.62% 
2023-05-18Cwfsg.jsjs 0473836cfc335949eae38f3049dd3932d818dc6cbbe8c178f72c74370912d088Virustotal results 28.81% Quakbot
2023-05-18Vpminy.jsjs cb296a47f490cbc70541030b87a0b2d9eb6c1253da849e9e37e7912f2fff796dVirustotal results 35.59% 
2023-05-18Qqhr.jsjs 55de6657c16f6c71d27bc0cb38580d689241943b653c659ae89fd4b63fdc279dn/a Quakbot
2023-05-18Qedkapoy.jsjs 4df2da0e1a60159c49866a7e3899e305f80766c9bae6b676bf18955d4e2ee8ecVirustotal results 15.52% Quakbot
2023-05-17Bwjng.jsjs 5cc7756639a24d5a8e14f7884507a76c1eb16843689035a0792202694705accan/a Quakbot
2023-05-17Lhhy.jsjs d3174d21c0af8584eb01c73536a3c50de953ccf9c1486afb0e38c63e608d5342Virustotal results 29.31% Quakbot
2023-05-17Rgwcwi.jsjs 02736e3801e700601d6212804b2d824ae4771d32fb369044887fdc9f2076ddfdn/a 
2023-05-17Iuzsgtr.jsjs 78416fcca7554fb3cc440610418511210e0dc5abcebf75ace7c1ef65d4d29216Virustotal results 25.42% Quakbot
2023-05-17Zstoa.jsjs 0af9a445f31e51c20a58fad5f35d353da59c49e684bf1db02c436c4d7f7f18a6n/a Quakbot
2023-05-17Mwbdp.jsjs 73b1e3fe01be0b7a83d8ac43d397530b110d3ece6e3ff93d424b36d0b7336aa8n/a Quakbot
2023-05-17Eewg.jsjs cb52c651adb8271c1d17f6b4af83df4ac894ec62f444b3bc911d8cca222ff397n/a Quakbot
2023-05-17Eprxcyy.jsjs 63df0e7ed5de899c0fb6645f7edb18691471395af0b50860cd44a92f5246f12en/a 
2023-05-17Glfbrnys.jsjs 4d74e91fa6702b13ec69f61520c307aeddb8b4801021f3f8704c665a21338388n/a Quakbot
2023-05-17Csbszfn.jsjs 6c34eb24ef7511024422bf9e4672215ccbd4e376ade54d155bf0f110e962bd02n/a 
2023-05-17Ycoduxp.jsjs ffe77da2eaad615d051f728ca708668d6ea366d1c7ede2c22d999cd3bf491bd8n/a 
2023-05-17Kvfhs.jsjs ba27795306db2b226c38d3c2a0f075526fc10e8b9bc8852c83c179c3802ab51cn/a Quakbot
2023-05-17Xkbhb.jsjs 4d1caad36066163e2cb358893637761e395bf4620c13eeb8ce35aaaa27992415n/a Quakbot
2023-05-16Ixeghm.jsjs dc151e24c4d4f7ad4beda697fedd0bb94fbb55f13e10fec2b265c997123cce95n/a Quakbot
2023-05-16Zgrj.jsjs 7d851665c3afd932679096f1c336919bd1c9afb779710d548a24ee9a60c1abc6n/a Quakbot
2023-05-16Hzsxje.jsjs 629ac279fe04f61d00b00563dcdd46b1075a3fa471fc5ab0b4eacd768688c5d9n/a Quakbot
2023-05-16Ylcbu.jsjs 41880e80b4f0a59e3e81821e46cae4f1cc0d2fb99a80588957a8dff5762040c4n/a Quakbot