URLhaus Database

You are currently viewing the URLhaus database entry for https://wefoundworld.com/ese/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2634651
URL: https://wefoundworld.com/ese/?1
URL Status:Offline
Host: wefoundworld.com
Date added:2023-05-16 19:15:16 UTC
Last online:2023-05-17 01:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-16 19:16:12 UTC to abuse{at}cloudflare[dot]com)
Takedown time:2 days, 1 hours, 49 minutes Poor (down since 2023-05-18 21:05:23 UTC)
Tags:BB28 geofenced js Qakbot link qbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-18Tmbsnky.jsjs 51ffefa8a10b6da720a80cec4735fe173669e7c974946e46c8dda908e824d8a4Virustotal results 22.03%
2023-05-18Ndixgfk.jsjs 76443e093ed6d6e3961cb5f9bbd546bab2d05f6bc2536c5744dc86f7a769bea8Virustotal results 30.51% 
2023-05-18Krivn.jsjs 1a2e818afb29521c8658d2a0643158af97370d69c32c0bd85cb900bd3e85b0eeVirustotal results 22.03% 
2023-05-18Vesymmvj.jsjs 50fb6852bf48cfb3e869c22288d3f14606ba111999a55b33742a04bade020e2dn/a 
2023-05-18Ezajim.jsjs d307232640d2944029109ca441be49052d7c8d24590a54096c256c48e4d7da1an/a Quakbot
2023-05-18Ulrh.jsjs a9c6050bc229b2d8d2b411d575194857f0f0b908185bcc15cd09d5c25f330867n/a Quakbot
2023-05-18Hfrjlad.jsjs 3833419abb83fe2369255a23b3fa983e65047ca005c0dee0d772efbdbf8ee75fn/a Quakbot
2023-05-18Dgcse.jsjs 43f0a123b00abe19f1412b6fff2944e5bf4436a2ba20e3493ba9708ee5088c8bVirustotal results 24.14% Quakbot
2023-05-18Cfabzubw.jsjs 8ee5d86b74cd803753d211be4c64578d8d39e7dd487d114bdbe044505063bb7en/a Quakbot
2023-05-18Zcrzf.jsjs e0642fe2c08773c4f9cd1e58913df9c41ba972e034fb64016f0f078efca68bc7Virustotal results 27.12% Quakbot
2023-05-18Eunpnwoa.jsjs a3cc568085570fcadc8c808a54f2482fc606cfcc1e1ad374e88b6d8b8de6ae58Virustotal results 25.86% Quakbot
2023-05-18Qgtjs.jsjs b8080e6708e687876e70fb9577bdb538b92f84133aae0cd311c456094c77efb9Virustotal results 25.86% Quakbot
2023-05-18Qznmblk.jsjs 7b0e64b5b88495d402a11b16ad7776cc5e0d44a07992e8b9cf9c7006a92ac8bcn/a Quakbot
2023-05-17Vzamxgw.jsjs f95ae26c9bf7ecb6970afb88bfa12c71eafd8b35160d2c1658e57d36ea915477Virustotal results 29.31% Quakbot
2023-05-17Fpvgu.jsjs fdf950ea03d008fe87c7f897e464c152d19d8f830013223033ceb1852f37ef5en/a Quakbot
2023-05-17Tjtz.jsjs b9a4b8691e7de63f6af1a61319d16827e3308ff248981ca1c9d815fee2a1b93bVirustotal results 32.20% Quakbot
2023-05-17Kewusr.jsjs 1cd77905385f0c42fc817556a8df0df76650c7bcc4f1d670bfdf4cefe71c5d76n/a Quakbot
2023-05-17Ukfio.jsjs 90854b60ab6b30c83f8839a6d1977dc7968771625bc4a6751d30fa1ff505912bVirustotal results 27.12% Quakbot
2023-05-17Uiche.jsjs 962531faf5a4bccd1d88868db9f0b5a79c3073f110ae5e4b9f61d7ea15f8b855n/a Quakbot
2023-05-17Etzr.jsjs c3e99de4200fa77aa025ca9c3691f352cd668d0a77b4f467305f66cb4f933618n/a Quakbot
2023-05-17Ggtxd.jsjs d80c0549070cc4293054feb46c0ed6cb3b8565c664621317bb79c84665411ac7n/a Quakbot
2023-05-17Gakt.jsjs cc82062621efce9b149282d47a4058bff8729e43d0a3e8f797bc91d44caa0ebdn/a Quakbot
2023-05-17Nhmky.jsjs bae2316e8f2021925075c6dfe94add7dacf3691a33ab5224fae972047a15475an/a Quakbot
2023-05-17Ceukdmdc.jsjs 33ddd1cd7118c24e8268c0a2f536d8e99042989a0ba9b4d000ef8ec1c0612a51n/a Quakbot
2023-05-17Mgki.jsjs 574e4c20174bd6894850910f2ef80d8e0b27c4a72ef332bb993b6d98036f6597n/a Quakbot
2023-05-16Uzhjd.jsjs 9862f5b72feb2f9543fea9fd1f18e14d9e53ef1f88432a48815555a5ba8d9757n/a Quakbot
2023-05-16Qfyafarp.jsjs cb9c304cc568f82ad962dd1a2191cc96191bdc580623a9f52a93c734d88e5adfn/a 
2023-05-16Ntmduk.jsjs a9137be2c84fc378e019f34e01d55b6137d2a5f98868fec5e4d60c554d801835n/a 
2023-05-16Hkbxh.jsjs 035dc434a4eea341912238e615363e7a94b0a9e0362116cf8ff571984caa990dn/a Quakbot