URLhaus Database

You are currently viewing the URLhaus database entry for https://hurghada-fs.com/bet/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2634923
URL: https://hurghada-fs.com/bet/?1
URL Status:Offline
Host: hurghada-fs.com
Date added:2023-05-16 21:56:10 UTC
Last online:2023-05-18 22:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-16 21:57:41 UTC to abuse{at}hostgator[dot]com)
Takedown time:2 days, 0 hours, 45 minutes Poor (down since 2023-05-18 22:43:13 UTC)
Tags:BB28 geofenced js Qakbot link qbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-18Jlzvys.jsjs 51ffefa8a10b6da720a80cec4735fe173669e7c974946e46c8dda908e824d8a4Virustotal results 22.03%
2023-05-18Aadhscy.jsjs bbcdb87a842c5157acea98f0cedd358f764e2613b6a635e4f9f5946de8c07780Virustotal results 13.56% 
2023-05-18Vjcnmbhp.jsjs 6016f12710a18923ed029eb1dc62882b5f1a032a7424e0169dd8c2228598f59dVirustotal results 28.81% 
2023-05-18Dixrqknh.jsjs 40aebb4daef0554f893886e140fe4cfb5dcdacec7fe8bcf7b6ebdfe08f7e9361n/a 
2023-05-18Twfmr.jsjs 2ffe30857db286ab5839fb47499480fff446371b3c1f8df2d8dde6853266f088n/a Quakbot
2023-05-18Rpgmnui.jsjs 8aa9df652c080c1ab6754cea7be1a61ae330512a5ddbc9af51177cbeb20da8e4n/a Quakbot
2023-05-18Axahmeg.jsjs 3e80a8823bae07e1aca749a62a6da2c57f0f80ebb6d4a8cd1be2ea749d3af45cVirustotal results 17.24% Quakbot
2023-05-18Bwzxbze.jsjs f32e1256022a37c93429f2df0c87540583119ca913c038a1bce835786a3891a9Virustotal results 27.12% Quakbot
2023-05-18Knepvj.jsjs 92f5060e9693041974047a3d61fa5f29676b1451f9f09d9dcef17ecdde52367dVirustotal results 30.51% Quakbot
2023-05-18Nzlhkdss.jsjs e50fb972f8f78042286895b6d869daf014f5e8082e3c3989ca853daee780a6aan/a Quakbot
2023-05-18Rfzf.jsjs a1f08963f5715bb8830f2ea036c6be1f8a5f34bc8a6bc799c36611f79e54b14dn/a Quakbot
2023-05-18Dfdhifna.jsjs d7efcadce017eaba7ee055cac3f1fb9842bd54107fb46729f546ede523c09e5an/a Quakbot
2023-05-17Jfinxse.jsjs e2334bf18981148d6120cbe4ab94a09cd0bb833ae95e71955079aadd6cfc720dn/a Quakbot
2023-05-17Xbwxw.jsjs e83bd9c4b21fcd0dac063c512259b7310762d0f7b923cba778206403e5314398n/a Quakbot
2023-05-17Yghkwyt.jsjs b88c04bb3bdf213453514ee3d92c8a7fd5f5e014017ea615f8df49c9c0a7ebefVirustotal results 27.12% 
2023-05-17Ahxw.jsjs 7723afb8d2a1417a6f0c808e628394b609e66227688064323ce47b25cb0505bcn/a Quakbot
2023-05-17Nngxw.jsjs b866fb32a73c9c9a6de4c2fa92651d4d8d7f72f0fe66af797867274e8a889e85n/a Quakbot
2023-05-17Mepfjuta.jsjs 71399d25c8497d7f81c87b8f5ec8d5071d8a62ac85ee254638bf8d24feccc5adn/a Quakbot
2023-05-17Uqyg.jsjs fc087bbfa79c07ccc635f8a6fd0b89dea00fce47f2c8fdd18e9a29c72d8a3bd0n/a Quakbot
2023-05-17Nhmj.jsjs 959eaab7d50ed2022fc6403b969a196f340861c5aafaa73ebd170ad225699275n/a Quakbot
2023-05-17Ngxcolv.jsjs c1c25860d992cd6dc9b9921099d94bacf1ab089b4972e34a164fa6cb56e43e7an/a Quakbot
2023-05-17Rwbn.jsjs cf42ff85816890c5c6961aeec0b6d8c0b9b26d610ba02670939dee84a94bb60an/a Quakbot
2023-05-17Ekqqmf.jsjs 6149c7916b2ea971102451f77ae0f0f76fa413e13a1ea61e1a70dac093bc171cn/a Quakbot
2023-05-17Zgrowclb.jsjs 42e80cec95f2c587fce59ed19f32ec46b1dbaa81e804721afd96abc4c8d6f6afn/a Quakbot
2023-05-17Opcsyzc.jsjs 74297bb15c2f5cb7d66fa3a0bf461712b57c7bd09a68e3cee6b25163f1f94a3bn/a 
2023-05-17Wfhoi.jsjs 577a12aebcd75da5801cce669a93566a186f23b0cb1fff16267eca697dc14587n/a Quakbot
2023-05-17Jycuogo.jsjs 8126c3200e028a076476f37641660effe5bb72973bac20f14983fd0edda1c3bfn/a Quakbot
2023-05-16Eivhha.jsjs 127fca2ed78eded5420fd677e63f9d61220c2515a10c2d2ae257bf1eca3c7ecan/a Quakbot