URLhaus Database

You are currently viewing the URLhaus database entry for https://indigohomes.com/ti/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2634932
URL: https://indigohomes.com/ti/?1
URL Status:Offline
Host: indigohomes.com
Date added:2023-05-16 21:56:16 UTC
Last online:2023-05-18 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-16 21:57:47 UTC to abuse{at}hosteurope[dot]de)
Takedown time:1 day, 23 hours, 25 minutes Poor (down since 2023-05-18 21:23:39 UTC)
Tags:BB28 geofenced js Qakbot link qbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-18Uhxsvvhb.jsjs d3c6e06204212c1aeeef29809460056535cba3beca8cf163b7c8719671ef0c9fVirustotal results 22.03% 
2023-05-18Crhqqi.jsjs d7522ab4f64ae0950e24bb00df9157136bbcb900ace0c77bd1a46f06149bf37aVirustotal results 24.56% 
2023-05-18Ogin.jsjs 6016f12710a18923ed029eb1dc62882b5f1a032a7424e0169dd8c2228598f59dVirustotal results 28.81% 
2023-05-18Jxuntow.jsjs 543fff7a008ee904ce58611e5e1e9851dd833a8499b3617e6502b87f746aac91n/a 
2023-05-18Kmmqumcw.jsjs f44e30ffb57afcf688c00896ca7384786ee3ede05210094b66c6d9d6c83675e9Virustotal results 18.52% Quakbot
2023-05-18Jcznti.jsjs d2ecbbc4d10634ac3f47ce638df6c4302d7335ab985c09f6accdfe4df322dddeVirustotal results 36.21% 
2023-05-18Xshwk.jsjs 106ea6e9df2db6267999fa9df4ae5950c1be2de07cbb773cd739bfaa29a806d4n/a Quakbot
2023-05-18Yzdmfsz.jsjs c1064ed6356f294c6981938454ee3a3712e5e63930c1554a3c1602eacbd6554dVirustotal results 25.42% 
2023-05-18Sliaeeh.jsjs bc100a785f531874618920cd99c357dfc32c33cd59fc6b19856a94b41ca3f07fVirustotal results 30.19% 
2023-05-18Opdjhqf.jsjs 320db1d64ed5a7a4ed401ebf9861a9776e220be46c59f4113bebf562f9e506f3n/a 
2023-05-18Ggivxo.jsjs c63bbe3dc673315fe3da91f26e53709a754546f9d2fe9fdbbd7dfebbf28c116fVirustotal results 23.73% Quakbot
2023-05-18Hreb.jsjs 2878ea27fb0bf41510c5a442c350ea2d31a71ee4c1532dcabf74f79b9aa1b3f4Virustotal results 28.81% Quakbot
2023-05-17Blny.jsjs ceb8cce48cb241bf1dbcb587ed7d6d8d4c9fdeb5f87bea993602228464eaf9a5Virustotal results 11.86% Quakbot
2023-05-17Ejgrjqh.jsjs 53b3144d6c4d4163d5317d32d6bfcc11069a721edc167234c3599a6e2aae5274Virustotal results 25.42% Quakbot
2023-05-17Qqgpwh.jsjs d112f357338680817dc9cfe7ce64d7ab03de74008f16c43f1ef94b38bd159af8n/a Quakbot
2023-05-17Lbroo.jsjs 5ed6c54055399ee6ffdf3adfc06337fb1dfa9ee1a6c1766091b74c1ebe2ebda1Virustotal results 27.59% Quakbot
2023-05-17Uvjhn.jsjs 3a16d7765c95e4f1c085fb18814d67ba3d65e6bf93e38d064ef74c1f9d15ac83n/a Quakbot
2023-05-17Foqf.jsjs c56bdfe438e6261fa00e5e48e3e9896927886b959c2947db67582b4cf0f08e74n/a Quakbot
2023-05-17Crvhdfr.jsjs 78416fcca7554fb3cc440610418511210e0dc5abcebf75ace7c1ef65d4d29216n/a Quakbot
2023-05-17Zdctszu.jsjs 22c5be6e9d66366acb0c99f6d61163ef331fe96bc1330595db8ad32fb0971965n/a Quakbot
2023-05-17Fcdkut.jsjs 9ca826dd42eb9b96ec7dcad0b7310f28b10d9b1ed84c1908b77e9a1ad5f59fdfn/a Quakbot
2023-05-17Juggte.jsjs 4054168a13b0c62c3e9f5ef5e490e2db4f3de5a0a2175c45f0f900de37f7577en/a Quakbot
2023-05-17Qlsemfub.jsjs 98b8b1827d29a122f1b5b6e4ad56209b2ac057f3a42810c84e63a489d3eb1962n/a Quakbot
2023-05-17Vndiz.jsjs 280310eea8c8a535de322638165c52ead5f35dc3ea6e16c3db1c8f250b5aa7cdn/a 
2023-05-17Jujkyvex.jsjs d0dbd0bc131ce2e5779c1635546cf7f55426346650ef94aa1633adba9a5317d9n/a Quakbot
2023-05-17Wcpo.jsjs 5762969b20a05bb0f13c9e4905928a42920c458c7a84ab2a726a418aee95d364n/a Quakbot
2023-05-16Iowhu.jsjs ea437a491f53a9e4b809502e4359e79df0372b28ff8ad07143ba2039b8d46415n/a Quakbot
2023-05-16Soglhfez.jsjs 2087443798cceebb156f2f6d39b862441070eef7290e6a5ff4905dead5eba93cn/a Quakbot