URLhaus Database

You are currently viewing the URLhaus database entry for https://ar-albania.com/qi/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2638764
URL: https://ar-albania.com/qi/?1
URL Status:Offline
Host: ar-albania.com
Date added:2023-05-22 14:53:31 UTC
Last online:2023-05-22 20:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-22 14:54:33 UTC to abuse{at}cloudflare[dot]com)
Takedown time:2 days, 6 hours, 37 minutes Poor (down since 2023-05-24 21:31:52 UTC)
Tags:geofenced js Pikabot Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-24FeudalisingPhyl.jsjs 14684986632e2207dc96e1d306a4cdde705abcd3c56ad7d447c69d47afc3ceb9n/a 
2023-05-24Unsteadfastness.jsjs 34a064ac0a0a5b989273a5176a42c5ff677438ffda0d3f3da3b7dcd2056b6cc7n/a 
2023-05-24Semiconformity.jsjs c4f751b7ec15211c95c63b5d169c48ad9b772b9fad73b36a402613521df3d064n/a 
2023-05-24doc_B580.zipzip 3a01e8872bef9f14a9de05c2ec35b7f637ed5146eec5f43a22778910c5cd9a40n/a Quakbot
2023-05-24doc_A645.zipzip 04fe3e6dd5b87a6bd5f75345974a7456ff33765e7d02136bf09f9657f87adbfdn/a Quakbot
2023-05-24crunchingnessExcogitate.jsjs 6a24765e4e521566571edc099295b072e8521dd9bb9350ab9ae51de350c3d8ecVirustotal results 20.34% 
2023-05-24ectosphenotic.jsjs d354be3bcfbf347bcbb9bd7460295e711c934315803c8461bb10bf07695b25d5n/a 
2023-05-24Pinjra.jsjs 9daf6aa72e3484abe3ea612336958006c6f44de01bacd529419102628cacaf4an/a 
2023-05-24SecreterUnslack.jsjs 453eb4cbb1fc1543254a69fde4b8e7bce06f82e61cca75fe4e63d4826fa14047n/a 
2023-05-24Accessaryship.jsjs 697a1e57cf3191279fc13fab51e467f5325d452ab765276b7402a9c07e332963n/a 
2023-05-24Postalveolar.jsjs 97c8f71de0498758c4cf78d8f0ea34f34c1a78a30ea2a274ddcd2af984fa4cben/a 
2023-05-24Slypes.jsjs c63fe7551913c0f3d67276e5f0fc4960918805549db0fafffcb5b29d09db0cc4n/a 
2023-05-24MessianicHoorahing.jsjs 737455ff8c0d113666713769a90e723dd8b093390ca1d0553db0a304d9b89e5an/a 
2023-05-23delaceRushers.jsjs 79073371d54f0a64cc11a745ece8c539b08664ed5d22040b0dd793a6b7d536cdn/a 
2023-05-23NeglectsCoinheritance.jsjs 40b3fd4d4f3a2d2cac336c165a50d2acbb7c00facef3d6a2ce58320831dd39e1n/a 
2023-05-23whosen.jsjs 7864a474703b16a8c7b971e831bb6ec14c697600bdbeb8d14d92aa6e41c661e3n/a 
2023-05-23ectosphenotic.jsjs e2b94a1e7afd6b33fb3f0dca0b11b6433616291c994f98d2acdbabb25dd5c110n/a 
2023-05-23UnfinitePyonephrosis.jsjs f3176a1308bc441db1f14121a8d988e12f6eccf54c433b87988882e882237c77n/a 
2023-05-23PhilosophizerCountries.jsjs 73057f17cd43959258351d47e68d5a8978b8241fd47b74bb0271c7243ca28097n/a 
2023-05-23IsoperimetricPlacentary.jsjs 1fd278caa7fff1f568eb56c86ea5652f43edc9ae66208c78a04b863a1a6f6f8cn/a 
2023-05-23nunnify.jsjs 41b80c34e635013ac6ee403dc38ea16c97290e3d50c5d6bab568753678bc0806n/a 
2023-05-23Spiroscope.jsjs 1d68764271debbc48a61020069dc81c5fd10a79af8445f32438d8fd5e244659en/a 
2023-05-23Maagzcd.jsjs 339e32959f769010bdceb7483226118a0b8427709d31051b58edf80748fcd081n/a 
2023-05-23Rbamcy.jsjs e4d40e3428fbacf17a68a0c5dc64f955340f14333d24c4b54583da71f0c5a03an/a 
2023-05-23Qgnnjosq.jsjs 91b0c0ce849b567565f36b0543b287121c840777b8cb95a04e077422019fad61n/a 
2023-05-23Lipy.jsjs 2f0baaee598131765ed6d8749aa1eb33611ed04ac8c5bc1ba79448c0fd98375bn/a 
2023-05-23Sxxllynf.jsjs e9774cfdd12c07c9aa755f4bff5453afb26440c555f7ef5e797b15326155289cn/a 
2023-05-23Eghvxrw.jsjs 422ea09124d7c9d8d4c18653b414c5b89cf94414d3136caec04f21e7dd85e54dn/a 
2023-05-22Jemwfkr.jsjs 242834b4b82be48ddc68e3bf4685fd5b9f3ed78cc3b727bf49defbb0c3307df8n/a 
2023-05-22Bzoq.jsjs edf7f366b42b6f7e6c2a7f04313f1788868dc327dd59e75d3e330286ab4f6b0cn/a 
2023-05-22Qavrtwrq.jsjs 85198e4ee3d2be3d2d689b420d453b916f40a1194d6ffda08337a3eb5ee72c18n/a 
2023-05-22Xvdpeqf.jsjs 3efa1aae7c169aa0d490f22478a81612e1f835cbba9d20a80d13472661c1074cn/a