URLhaus Database

You are currently viewing the URLhaus database entry for https://infotechallcare.com/ue/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2634898
URL: https://infotechallcare.com/ue/?1
URL Status:Offline
Host: infotechallcare.com
Date added:2023-05-16 21:56:06 UTC
Last online:2023-05-18 22:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-16 21:57:18 UTC to abuse{at}namecheaphosting[dot]com)
Takedown time:2 days, 0 hours, 47 minutes Poor (down since 2023-05-18 22:44:50 UTC)
Tags:BB28 geofenced js Qakbot link qbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-18Agjzqxbu.jsjs bbcdb87a842c5157acea98f0cedd358f764e2613b6a635e4f9f5946de8c07780Virustotal results 13.56% 
2023-05-18Wczyho.jsjs 51ffefa8a10b6da720a80cec4735fe173669e7c974946e46c8dda908e824d8a4Virustotal results 22.03%
2023-05-18Damfh.jsjs c74cf0cb7927a8438a84c9cedbdbab3e4815550813336043f39674a67b6a021aVirustotal results 28.07% 
2023-05-18Djyqf.jsjs 22e7416d854f754fc6daa1c1612f1ee4b0fa6e0ac81b96acc270d7669bad6a70n/a 
2023-05-18Bkohz.jsjs 56e1630e4d5a2e6b1c2e4e5494d4f0934129788140e2bb2894da4d50c48ece66Virustotal results 27.12% Quakbot
2023-05-18Xxrpos.jsjs 0769e73bc4ebc2ee5fdfb2e6d02b6a282085b48c709104d96e856380e8e4ecfdn/a Quakbot
2023-05-18Uurhl.jsjs d307232640d2944029109ca441be49052d7c8d24590a54096c256c48e4d7da1an/a Quakbot
2023-05-18Zsdm.jsjs 447b96999dd079d4e5bbdefc464fbae41be6c1d6f55fa0d6dc0cf9db6f3490b2Virustotal results 23.73% Quakbot
2023-05-18Cxkqc.jsjs 5ed6c54055399ee6ffdf3adfc06337fb1dfa9ee1a6c1766091b74c1ebe2ebda1Virustotal results 27.59% Quakbot
2023-05-18Ilmfkspj.jsjs 37dfc4f0a00904e349fd56b330748fba27b43ebad14ce22ba20df17809091c27n/a 
2023-05-18Chhverv.jsjs d1a92330c8f58a18b81d7ff1a9ea348b205fda7b106c31a2d1e09764a4557fa0n/a Quakbot
2023-05-18Uxcnzu.jsjs ec6f55b9c56d3dead8b8490dfbbcccadcdfef62b7d67c671b8d0ee9620f4b74fVirustotal results 16.95% 
2023-05-18Zjslay.jsjs 7001d12f0aff0c6712230ed17f0fa70b2b0f2f7f58554663f28e687b643386efVirustotal results 24.14% Quakbot
2023-05-17Qjjjmpvi.jsjs 934626b333d14ccf5c2f3a3effc073bba69fea3effa6d474f19bc48281dc9013Virustotal results 27.12% Quakbot
2023-05-17Mvxkt.jsjs 6c3bb42119a38ed4e706dec98aab8fb4f0dc1823dc596ec2ef93209f6fd5c217Virustotal results 25.42% Quakbot
2023-05-17Ptwo.jsjs 83743f2158c1cfe6f65635d6a1c2aeec71545802940ab5e083fa9d3a98d650aan/a Quakbot
2023-05-17Jdtfzkci.jsjs a18a3c0e37cfc92a00d139f4aebd7996690f4428dea318f028570bf9037d8aban/a 
2023-05-17Twvqzy.jsjs 3fddbe5cee0b2b8ebbfc9637b8f112873fa786d04365ec85c4ff1f3ef1962ce2Virustotal results 23.73% Quakbot
2023-05-17Kcdazfwx.jsjs 576d80e7bad2be3b3f4ddb0ccbe067bceabbc990bb96e11007cc74c2d6ad7bean/a Quakbot
2023-05-17Egrq.jsjs 1539b3e778af6f644e932c0910705fec144fe2bbef2f8df241b0d4bb821d0fc5n/a 
2023-05-17Lqsf.jsjs c3131030655aa40ec3719d57917e76ab304ec33f0546a5c2b6fd50912e9205e1n/a Quakbot
2023-05-17Quorlhfc.jsjs fa00c4c74560617fbfdfa1a9f52c5ff9bdd07fb7550b8777aea707290defe8a4n/a Quakbot
2023-05-17Rfhegjg.jsjs 14ed1ee1525c4ffe229ae2f601bd1f85623ce746d8258e71ba5076b06ca139f0n/a 
2023-05-17Kodnnqho.jsjs 356bc48a04bd0fc1cee1285addd524de9f22525a887d7f9556ea1e28ea46874an/a Quakbot
2023-05-17Inlx.jsjs 77b50ca149352953d9fa8f4cf20bbc1a536d3d02669837da93ed8c699e82855en/a 
2023-05-17Oqwetmwp.jsjs 83ade911db0e76d4777a7d3042918806181b8f03ed0940364d778cf51aa201acn/a Quakbot
2023-05-17Gymsocxo.jsjs ae9a4a386a30c2792ebe33905eeaa35d0109aedf163b78ff099b6e5aebad2ff0n/a Quakbot
2023-05-16Egvlzmvk.jsjs 173c91ece56c6842937cdad2cd7c771eae52ab1e39de6ce8c077687e049c269fn/a Quakbot