URLhaus Database

You are currently viewing the URLhaus database entry for https://articlesmonster.com/idet/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2634764
URL: https://articlesmonster.com/idet/?1
URL Status:Offline
Host: articlesmonster.com
Date added:2023-05-16 21:52:22 UTC
Last online:2023-05-18 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-16 21:53:53 UTC to abuse{at}cloudflare[dot]com)
Takedown time:1 day, 23 hours, 8 minutes Poor (down since 2023-05-18 21:02:00 UTC)
Tags:BB28 geofenced js Qakbot link qbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-18Ujpwu.jsjs 51ffefa8a10b6da720a80cec4735fe173669e7c974946e46c8dda908e824d8a4Virustotal results 22.03%
2023-05-18Bkae.jsjs bbcdb87a842c5157acea98f0cedd358f764e2613b6a635e4f9f5946de8c07780Virustotal results 13.56% 
2023-05-18Clpjen.jsjs 92081fe292fd24e281836f290961a08b2d7bb2f6084c236e7ae9dde245e28127n/a 
2023-05-18Mcgaxx.jsjs 0ef43188dce02fbc3891a0b89328e52f13c2ea2e88119189a0003fe3e6c6adc2n/a 
2023-05-18Hstx.jsjs 58b0e516ec4c36b4a0582314a01bc968a5e3a7acce646abe2179ef5adde91a24Virustotal results 27.12% Quakbot
2023-05-18Etjma.jsjs a3a82b0e5a194f3c627df166b34ee132214dd6dd7f04b7a684d1b93af75f7591Virustotal results 32.20% Quakbot
2023-05-18Sieynjj.jsjs b93e7c1a5d378e99de142cb47319276288120a8138977edf98875c43822f6d86Virustotal results 31.03% Quakbot
2023-05-18Efoom.jsjs c321a1664d74da4f73b983c793c4059b38202d4116be2e9f53f9aa1d4320d830Virustotal results 24.14% Quakbot
2023-05-18Dlwwufl.jsjs 39ac88782d43b40c56cd7245203211f747e986908f13072c8d6d6caede0ef79eVirustotal results 30.51% 
2023-05-18Zpkxcyz.jsjs c1064ed6356f294c6981938454ee3a3712e5e63930c1554a3c1602eacbd6554dVirustotal results 25.42% 
2023-05-18Lxtbfpnj.jsjs b11fc0e56235f908dd870eceed98215c815c131e83913eff33f70f528e369dd4Virustotal results 30.36% Quakbot
2023-05-18Izfuwt.jsjs 75aba79d300dca2a11da16879bf5c0fd15d388a5926381550db24144937b72fan/a Quakbot
2023-05-17Aflv.jsjs 86cf4c93687b588dae11523a8db9355990fe06f4481aa096e4acfcd8555b8e25n/a Quakbot
2023-05-17Ykynykq.jsjs 6cc345a8ad3df8d8da07821f31095f9c217201e0065038c5bb7e15aae14a9035n/a 
2023-05-17Sddxqbxs.jsjs c9405181760bf1482ac0fcca4034002716ef5a48bacdfd80e3cb5353db6fff56Virustotal results 25.86% Quakbot
2023-05-17Lhnvt.jsjs 02736e3801e700601d6212804b2d824ae4771d32fb369044887fdc9f2076ddfdn/a 
2023-05-17Giss.jsjs 66a44d6ecc0bff8550c4f8fd93b40851e019bac6297339dd180d268ed9bba451n/a 
2023-05-17Gtzqp.jsjs bb118ed7175733d7b31163818a3948e5e35d0e3ab3627a549e93cf6afa196585Virustotal results 29.31% 
2023-05-17Pcsc.jsjs 0204463c040334db593942c0e48063d6f6df33cbfba1fdbf8bfe51aa0bf83372n/a Quakbot
2023-05-17Smhzcirf.jsjs 307214639096d8850b51067ae85b8b48ea594ac20d95e23567b8902f99f3fddcn/a Quakbot
2023-05-17Iisr.jsjs 932d0c8bec20d671a9fdcb0d9558ca1bf23c42296387bcaac6036c8ede353f49n/a Quakbot
2023-05-17Fmyiv.jsjs 1b8432d5ccddfcdaff07c5cf3009a6aa7bef7d997e8b8483ada7c8e2deaaab20n/a Quakbot
2023-05-17Ycxsqzvf.jsjs 9eb669cab76152f76f8dcad7c91f030988b5ab6347f2ac8f973761ebd188acfbn/a Quakbot
2023-05-17Hfydm.jsjs b478b9f751c3acc2d18a79f76932057ef1e1f79743a2247f95d3e818870400a2n/a Quakbot
2023-05-17Sjjfpu.jsjs b093536c79a84e8aad4f8660df9afa345db7e07136b6ebe992a6441386fbeb69n/a Quakbot
2023-05-16Bhymvpmb.jsjs 090ac854e38fc2015c568215d4a0fac32c824004130e26dc1c48f6d93a07272fn/a Quakbot
2023-05-16Nrcfdyz.jsjs 3a8a58c0f87bedffc780d4356d9c46ae730cd1cb22c7af4af2d3750a540829b4n/a