URLhaus Database

You are currently viewing the URLhaus database entry for https://aliazam.design/apvu/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2634772
URL: https://aliazam.design/apvu/?1
URL Status:Offline
Host: aliazam.design
Date added:2023-05-16 21:52:23 UTC
Last online:2023-05-18 22:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-16 21:53:35 UTC to abuse{at}cloudflare[dot]com)
Takedown time:2 days, 0 hours, 51 minutes Poor (down since 2023-05-18 22:45:05 UTC)
Tags:BB28 geofenced js Qakbot link qbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-18Kpzli.jsjs bbcdb87a842c5157acea98f0cedd358f764e2613b6a635e4f9f5946de8c07780Virustotal results 13.56% 
2023-05-18Jlmyhzat.jsjs d3c6e06204212c1aeeef29809460056535cba3beca8cf163b7c8719671ef0c9fVirustotal results 22.03% 
2023-05-18Mhsb.jsjs 1cea0c4b1af9170b9ed2927f3b100d202bebd1b8e69ba1527336aaa6b2c0bffcVirustotal results 13.56%
2023-05-18Yxzthjl.jsjs ad959edf722cded607456f350de608ec4ebf4a90652170a962a5592bfe60e579n/a 
2023-05-18Rvckqy.jsjs ed175d3585ab2d387e6c4a9420d8aa055d62ef6670fbe83a0f66d5bfaf943a92n/a Quakbot
2023-05-18Qoxbqpm.jsjs 0eb36df6ac7e73e53c148166b06b5c1bc80d6a92c1718e19711dfd219c02ffd2Virustotal results 25.42% Quakbot
2023-05-18Ozulh.jsjs 494e69eca209ceb575b3ad74ff164605bc99c57a7621108280f95412b64e0becn/a Quakbot
2023-05-18Uncsqlg.jsjs 6a2c26dc0efdfc1c4fdf83525f29de723f3f77f866558ce277756af920925c89Virustotal results 27.12% Quakbot
2023-05-18Slqwgryd.jsjs fb639f61394301ec51c3c82b270fa10118b12150f177db33a72560d80ad79f25n/a 
2023-05-18Onnisf.jsjs c11631875df89e8d792439c8e9f573ebf097e4bc4926ace66626297639e4bf74n/a 
2023-05-18Syqgpe.jsjs 8cb9812b4c0409176b2f0770497520692218130496cf0a2a363b4606ce28f506n/a Quakbot
2023-05-18Fmvjxxh.jsjs 2ac229fd994bdb64a7cde85dae50a0f2f6a3229eed9afc763d5f8d0e9b4f0ef9Virustotal results 20.83% Quakbot
2023-05-18Ygqgy.jsjs 2312d94387e675afd3db56f1fd5419a3a083bea7bc690341fa3d49d3e3f69f53Virustotal results 25.86% Quakbot
2023-05-17Jugq.jsjs f276da1a81b23b7f647bba9fedb53f4e8df35e0456b09c909184c6c45bcd9d99n/a Quakbot
2023-05-17Jypuqck.jsjs d25526dc27feb5e67f938d4b403a9dad1250e9bad80e8f4d66a22d696dacc328Virustotal results 32.20% 
2023-05-17Zkfryln.jsjs 3bb4e5803055d8c3ad6250df56ce21b663c3da855bc32daa9ecf204060498681Virustotal results 31.03% Quakbot
2023-05-17Pyccfrk.jsjs 0efda647b9e6537d80702573e14dad4cae7edd5bb92d94eea0f136b93fdc03b7n/a Quakbot
2023-05-17Ztblwg.jsjs a9d658acf1c13639bef4615e65fcd8eaebd3b1d0c14ee826b7268e893878e5a5n/a Quakbot
2023-05-17Colc.jsjs 4de2124d922958dc3b36346c1906578b79f12a6388ef771a7f8503c21e30af78n/a Quakbot
2023-05-17Eggua.jsjs 81f0fe1ef9b350d79e5c368c2f73deec42c5a379bfbbe52f88c1c79ee481b5e9n/a 
2023-05-17Emzolcs.jsjs 1666c062916db41e558d9d143e3e48e3a658da8fb5bd382fea3636bf15729830n/a Quakbot
2023-05-17Klfu.jsjs 019bfec14727432b70792b469e53f3e25c43d298f04b5b5675a5bdb349bc268cn/a Quakbot
2023-05-17Rxmzalp.jsjs 0d185b49a8d13620985d99cf81c601db997a78679da63c71d147d3f27844e693n/a Quakbot
2023-05-17Wikbavat.jsjs 102f95b43c534385a49731d77f5d4cf1371df71a0c7835b073f547283b8386e4n/a Quakbot
2023-05-17Bgbxizvl.jsjs b3878d82aa6bee1b04c59ad4f6e87f858049889ef51dcfcb8c170348a046c812n/a Quakbot
2023-05-17Xphbstiq.jsjs df46682f53983cb56c113e5a3425a90e684d3833a3c53fb9853e10acfe5554d6n/a 
2023-05-17Uwlyx.jsjs 9360aac2234f43bee0c9ae5cfccb45f5802f59c7d90374e4248b7f4043f07369n/a 
2023-05-16Lpyifu.jsjs 2ddc0145f7d801c5ea9b23ecd83b84660b1d575252d28950cedce944ad8328b7n/a Quakbot