URLhaus Database

You are currently viewing the URLhaus database entry for https://thekingflix.com/itee/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2635117
URL: https://thekingflix.com/itee/?1
URL Status:Offline
Host: thekingflix.com
Date added:2023-05-16 22:01:07 UTC
Last online:2023-05-18 22:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-16 22:02:14 UTC to abuse{at}namecheaphosting[dot]com)
Takedown time:2 days, 0 hours, 32 minutes Poor (down since 2023-05-18 22:34:41 UTC)
Tags:BB28 geofenced js Qakbot link qbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-18Onwrh.jsjs d7522ab4f64ae0950e24bb00df9157136bbcb900ace0c77bd1a46f06149bf37aVirustotal results 23.73% 
2023-05-18Mmtpj.jsjs 51ffefa8a10b6da720a80cec4735fe173669e7c974946e46c8dda908e824d8a4Virustotal results 22.03%
2023-05-18Abgjp.jsjs 6016f12710a18923ed029eb1dc62882b5f1a032a7424e0169dd8c2228598f59dVirustotal results 28.81% 
2023-05-18Hyvkc.jsjs c74cf0cb7927a8438a84c9cedbdbab3e4815550813336043f39674a67b6a021aVirustotal results 28.07% 
2023-05-18Ojtmb.jsjs dd4dbe40490561c6c41a75a7f2330438761a9bc46628f9a56ce3587f48ba2dd2n/a 
2023-05-18Ekvk.jsjs 83a6906128b93fb8777e46c5a7c736321ce2cabe58ece643b53dd9884a1c6c77n/a Quakbot
2023-05-18Ouiohif.jsjs 5b903308829f5c7410c0e53ec748a05a9e2205f4400bf2941199cf2223c0e1f7n/a Quakbot
2023-05-18Osqis.jsjs c66769c1beccde8a71bc20172ba3978dfa20fa8e27c21976b94c10327af6d4caVirustotal results 27.12% Quakbot
2023-05-18Mzjso.jsjs a3a82b0e5a194f3c627df166b34ee132214dd6dd7f04b7a684d1b93af75f7591Virustotal results 32.20% Quakbot
2023-05-18Flofnirb.jsjs 8e028afe5e530bff241456519d98c4afe35e4e8432ca6929cb4a327144ecb765Virustotal results 29.31% Quakbot
2023-05-18Mwsg.jsjs 70a531a610e47641bb1c9aa721282178341c6ccae5578f0ba31a38cfc5cad76eVirustotal results 27.12% Quakbot
2023-05-18Fwiyvbth.jsjs ca9502bdc52560b18884b4483fd8adca417142d736bc92b2039511c11483e4f0n/a 
2023-05-18Ifqoftg.jsjs 0857b5e40844024689620ed0e9d9fbef8b9b295f54e11fba7dd9693f59ce40fdVirustotal results 27.12% Quakbot
2023-05-18Apmker.jsjs 0f8aac75339d21d38c89f545a30c35990759d0f0123017fad73ed0c8ce34b51cVirustotal results 25.86% 
2023-05-17Jsjiqqs.jsjs 1518f10a4a3e1bb0772544083dd21336675b9248d73c59f8dd75068406de1474Virustotal results 23.33% Quakbot
2023-05-17Fjrviuwh.jsjs 59eafea575993fa2b9b1a5a60ec2852f5cbda6491cc6c163e79d91e7fc9b1d7eVirustotal results 30.51% Quakbot
2023-05-17Cmcl.jsjs 23fb378ba68beb5c6b1281c46215b56754ce9f89836c50f35b59615c2f79b455Virustotal results 25.42% Quakbot
2023-05-17Xqtlayi.jsjs 2bcfc438cf9c0a4f72832a134f6709c7596645ff3d738abe3b2fd53250ed50f9Virustotal results 22.41% Quakbot
2023-05-17Tcro.jsjs 02736e3801e700601d6212804b2d824ae4771d32fb369044887fdc9f2076ddfdn/a 
2023-05-17Sdroo.jsjs d1a4226b93ce7e197a1d0a500323d097493998ae6d92816b4793bac2150218f2n/a Quakbot
2023-05-17Spilxpkg.jsjs f6bf73aa768753f4379e2df6f0094dda46beb48b879c76c983896434f67c0ab0n/a 
2023-05-17Zfteru.jsjs 6010812ff1a2561047b31495eed298a6581e5429556f0eeb3f52571cc6c9ffc5n/a Quakbot
2023-05-17Wvzwkn.jsjs 605794b360e158aeb6b60c861e654cc636676a4d4b486505f5465e3ecec6cea2n/a Quakbot
2023-05-17Niiklebj.jsjs cadcb668a967eec06bc107d217d78fa1192c0f5836fe921081d12b791df34848n/a Quakbot
2023-05-17Dnjuz.jsjs 2c0430aa5d6143f2d89e9f3632a070c1c5913c0a7fd8b922f89c31c210d6c310n/a 
2023-05-17Ajzrmog.jsjs 91dbe7a95662117fed6bd484b0a342a68a99f62d968729727e7044f15bbe74d8n/a Quakbot
2023-05-17Dskmjmt.jsjs f504bfee83582ecb35b0b836c4397fffde5605a1e8319cbe427eb9f1aeecabcfn/a 
2023-05-17Zjxo.jsjs 5af052d708d9e4641f7fef55effd0106d56b7bf127dc841ec8316f77667a2dc1n/a Quakbot
2023-05-16Ailrfw.jsjs e2ba57430b5cb6cc72721879911fc530ffdb0d8e79052a64bd8d2434a8bc867fn/a Quakbot