URLhaus Database

You are currently viewing the URLhaus database entry for https://aktarhome.com/iur/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2634750
URL: https://aktarhome.com/iur/?1
URL Status:Offline
Host: aktarhome.com
Date added:2023-05-16 21:52:14 UTC
Last online:2023-05-18 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-16 21:53:37 UTC to abuse{at}hostlab[dot]com)
Takedown time:1 day, 23 hours, 6 minutes Poor (down since 2023-05-18 21:00:29 UTC)
Tags:BB28 geofenced js Qakbot link qbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-18Mgmvyxau.jsjs d3c6e06204212c1aeeef29809460056535cba3beca8cf163b7c8719671ef0c9fVirustotal results 22.03% 
2023-05-18Htivhfh.jsjs bbcdb87a842c5157acea98f0cedd358f764e2613b6a635e4f9f5946de8c07780Virustotal results 13.56% 
2023-05-18Xnccuzy.jsjs 962f548bff5586d71e3f786a0167b730e92e87eb47e48c397dcf5ee00e94f99cn/a 
2023-05-18Pvmepkfc.jsjs 8f360ef4554f315b708ec9a47229a77553d9764d491faaae0340e0e552551077Virustotal results 27.12% 
2023-05-18Ezkcbg.jsjs 41a9ac47a4429134ce75e112f1d067da61f8dc65ee77cd9e494c9434cf179f12Virustotal results 30.51% Quakbot
2023-05-18Jryjqso.jsjs e7958ccd8a002219ae5c0a15fe85c42f33e3433270f0ba102d597f19a494e2e8Virustotal results 27.12% 
2023-05-18Qkzm.jsjs 41004cb0d270673cab3af5cab1a87b9c6c88fd3a43f9a28494997c13652781c0Virustotal results 35.59% Quakbot
2023-05-18Jqkjl.jsjs 9c3ce9878a22fffcee6c677d536eef828546dc7592693cd8be968e6235ceb49fn/a Quakbot
2023-05-18Ejns.jsjs 783e0a457afb1237e0956e6ff847bfcdb49ee23036f51b4621b534f54d67112cn/a Quakbot
2023-05-18Mots.jsjs 798823d6f774c2380137f2e4d5c8a16ea4cec5e96284dfed0891528bdf512376Virustotal results 25.42% Quakbot
2023-05-18Kolb.jsjs a5ad0d19dd6ae50f16dc5be1921c43a887aba5ab8dae04acbea417a5cd62d61cVirustotal results 26.32% Quakbot
2023-05-17Lfqzxwq.jsjs 36032c143a4485946e82aa6aab03ac420e5589d6c74224bd71b3b6bc62b6dfecVirustotal results 27.12% 
2023-05-17Lnbk.jsjs d6e5d8bb312aa607d892cd90a910040c5ff30ee3a76f41fd9c177f3c09b59f21n/a Quakbot
2023-05-17Twlddh.jsjs de40c651da56945e6aa4f1adecf9ca842f4b2c630f3e1ad45c2c02952d4578c7n/a Quakbot
2023-05-17Ovvcgdib.jsjs c7f9d6c56a28ecc44744a1c617778af39179d5869bca0ccd518016eae401078en/a Quakbot
2023-05-17Umlnrq.jsjs 0eb9fa07ffbdae465ca7afa7b68b6b38311315046844cd6ac97c9e3b77d5fe99n/a Quakbot
2023-05-17Ezjqklxk.jsjs 0f8aac75339d21d38c89f545a30c35990759d0f0123017fad73ed0c8ce34b51cn/a 
2023-05-17Zgoy.jsjs 784d0c23a7299fe8f5a79ce4f83765cd48535cf1afc25d542a0f854f8049d149Virustotal results 27.12% 
2023-05-17Fozrerhi.jsjs 456c54257858cdc9347b6b71444659a256ae3a000dc1c82298d0fc65ba890687n/a Quakbot
2023-05-17Mmpac.jsjs e351dcb58e09f2562546c2feb4261b65f5eb8879409cd51eb3f57e2ab2231c92n/a Quakbot
2023-05-17Vucbs.jsjs cb04d86e923f90aba15ea03c3160c6e2a411ce2ce2929ebd0bec192a98601857n/a Quakbot
2023-05-17Dpwoz.jsjs 381e753496d3d88aeb443ccd9ae639570883685cc8b89be993e207dfc8a84a50n/a Quakbot
2023-05-17Mmqwcn.jsjs c133e7b8182191abcfc782a82575e74af5e7189f720e71764ef870cec67e1807n/a Quakbot
2023-05-17Huorvg.jsjs 783a59127e65bf6fba87ddd6e998ef35bea7f5a4b7369babc466c7da7260b976n/a 
2023-05-17Tjqsvdx.jsjs d1554377b19fe32bda6059a6446392a429239fb50118e38e5e21d6265d81f224n/a Quakbot
2023-05-16Atiizvpe.jsjs b1a1922588108037f7fe5ab043bdc85e92a5b13e744be78e4d9693e329799787n/a Quakbot
2023-05-16Miuatz.jsjs d23b8112cf80d5af10290eb7d336c560b8aef7c4f149220a5b4cabb009b96376n/a Quakbot