URLhaus Database

You are currently viewing the URLhaus database entry for https://axeycomprey.com/loc/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2634739
URL: https://axeycomprey.com/loc/?1
URL Status:Offline
Host: axeycomprey.com
Date added:2023-05-16 21:52:14 UTC
Last online:2023-05-18 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-16 21:53:27 UTC to abuse{at}hostgator[dot]com,eig-net-team{at}endurance[dot]com,jayanathan[dot]muhunthan{at}endurance[dot]com)
Takedown time:1 day, 23 hours, 22 minutes Poor (down since 2023-05-18 21:15:56 UTC)
Tags:BB28 geofenced js Qakbot link qbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-18Mcvpo.jsjs 1a2e818afb29521c8658d2a0643158af97370d69c32c0bd85cb900bd3e85b0eeVirustotal results 22.03% 
2023-05-18Emhvrk.jsjs 1cea0c4b1af9170b9ed2927f3b100d202bebd1b8e69ba1527336aaa6b2c0bffcVirustotal results 13.56%
2023-05-18Iycuk.jsjs 76443e093ed6d6e3961cb5f9bbd546bab2d05f6bc2536c5744dc86f7a769bea8Virustotal results 30.51% 
2023-05-18Opudpllj.jsjs ba40727ec1ea2a2cd3419947399c997bc6f20a9553fa874ce25d9f94a1fa248dn/a 
2023-05-18Jrlxf.jsjs c6a62ee43c36edd934b0aecf8cca18487dbc8612228decd3f37357b043e4e85dVirustotal results 25.42% Quakbot
2023-05-18Ptyjstf.jsjs e2cd2a44ac9c613f289c14a9d30244223f9949818db49dc69c73a5efc442a948Virustotal results 28.57% Quakbot
2023-05-18Yppaswr.jsjs 09f9e4d8ef85ba407416a7d168207db81c2000eabea300624e17d81f58bd0b18Virustotal results 31.03% Quakbot
2023-05-18Vchv.jsjs 3f3578034596c52f8ed357e2c3f37660c2f5af439da7fde722d26c629f457d03n/a Quakbot
2023-05-18Gzozct.jsjs 66a44d6ecc0bff8550c4f8fd93b40851e019bac6297339dd180d268ed9bba451n/a 
2023-05-18Xuno.jsjs 44d23f66a1f4b2d201da3bd9764d30d67431194d1ffbbc0ee587ea63d892dee1n/a Quakbot
2023-05-18Ajevpty.jsjs 683503e1ee6accf36b4e270156fa48982aeb9619157f07c35c1dbbfeb8a43e7dVirustotal results 29.31% Quakbot
2023-05-18Tlkm.jsjs e1210e09ca90b4d9b1cdd3dd947495e7f1666426a71a9032c997d1abcd93f686Virustotal results 27.12% Quakbot
2023-05-17Whmk.jsjs 4a5bb0d1af42aabd643a23c518cbc77c4a2931fab8d180bbad1c0ea815f5954an/a Quakbot
2023-05-17Csyh.jsjs 07903a989b7e8631bdf7709c9f662e13388037ed84e2a225ce9707ff6d5679a7n/a Quakbot
2023-05-17Qoebn.jsjs f7bc14c8c137444d5d046f1c1304ca9eb96509ce61adeffaa967dc07f21c17d7n/a Quakbot
2023-05-17Sgvw.jsjs da4bf3b68417dffef143d4e6c343ee8adb0fc59559ccca0c4ba48cd6e3e1e5f8Virustotal results 25.42% Quakbot
2023-05-17Ktloj.jsjs e5c5a60b175cb60af996c9c06d7956eb02b365460e950ac7662bb4ea5c87d9c0n/a Quakbot
2023-05-17Acokqnp.jsjs 119865e21bd0f564ac17f9e36940d9360139b87392fa02dce3483f1a789ab4abn/a Quakbot
2023-05-17Vzos.jsjs ad227c276250c72ebaf4c13e5d960347009d0762b8c2e696a35b36232e0eeff0n/a Quakbot
2023-05-17Eldmbrer.jsjs 6b995ec24ec67bae11b4bfc5918eb2d4dbbf105948ddf9d0209da7002968aec1n/a 
2023-05-17Dmyecapu.jsjs d744a09b03d460eda3c2b1b13941ef79746d3021517c004bf67e8a7f709dacc2n/a Quakbot
2023-05-17Emnsn.jsjs 174109d266f73ecba71bbbe84cbd677b587d054a1f79f845c5625e01431d481bn/a Quakbot
2023-05-17Kzesdxic.jsjs 9f8716dd90ff0de28e350b1ae4984b52ffea19bfc87e912d79b2b43d5a5304c2n/a 
2023-05-17Nqhvrhkb.jsjs 8f96f7549128d528cd1662e68185cb3a971a1438339ac8199cbb9a96c97bceadn/a Quakbot
2023-05-17Gvcdggbo.jsjs b8cffcbef4709bc8e206b0864f1286d8a7f848e17a55df77522ab392a55b57ban/a Quakbot
2023-05-16Kpddwazh.jsjs 02f7e9896645cda9348567a4b06d129652c0ad91bef07b1399b0a94e7017b96fn/a Quakbot
2023-05-16Puxcyxwp.jsjs 81d9c2b21a78413a2b1362575b85485a31584106e10fcbc1313b203bf137f0bcn/a Quakbot