URLhaus Database

You are currently viewing the URLhaus database entry for https://techafresh.com/ei/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2638780
URL: https://techafresh.com/ei/?1
URL Status:Offline
Host: techafresh.com
Date added:2023-05-22 14:53:36 UTC
Last online:2023-05-24 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-22 14:55:41 UTC to abuse{at}namecheaphosting[dot]com)
Takedown time:2 days, 6 hours, 32 minutes Poor (down since 2023-05-24 21:28:21 UTC)
Tags:geofenced js Pikabot Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-24DrattingUnknown.jsjs 2a273972b930b97cae5cce8d360815a15d0d900380ebd8570cc651967bc7c38dn/a 
2023-05-24Alcornoco.jsjs cb0dd5eb5043ddf2c17172e240509e68e0ea25f47257a8efa4fe401867bba254n/a 
2023-05-24resident.jsjs 98ced06efe1d3700af586d0b2898c8d23dacb27c1f55edfa972ed6b6f3bfc19bn/a 
2023-05-24doc_E697.zipzip 3b61dbf12bcad7759267ffe6a6ca7be98932dd85d6ea2fd76234b9ad1366a372n/a Quakbot
2023-05-24doc_F185.zipzip e0ffb37267b99c47d53aaa94ea2825a39b74edc0138b7885b99fbb4c18aa87bdn/a Quakbot
2023-05-24takahe.jsjs 3b586bf5c405603cc16065283af1f948f13464012173d948249a7c21a2f1aef5Virustotal results 28.81% 
2023-05-24benchboardDotishness.jsjs 73a27f42e5d63d1b9502af2920af9091383b0ce11022d33020c539184fd588a3n/a 
2023-05-24Immortability.jsjs 7e1a2621618dbab9d57e4cb30767013ecc03385775af5b78c7c57fbdf0a58c23n/a 
2023-05-24Nehemiah.jsjs aaf1816c64814e9b2d2563053c0adbe2da9706396b354b711f416ec2e4455055n/a 
2023-05-24routerResounds.jsjs 65169f91d615bb2b4f3e7da8a660d7effe82ab64ddaf3abbdf01652c024e16a9n/a 
2023-05-24whiskerageKernetty.jsjs 8f1108cc71119e2fb32abb54c8dbc829905fcd980bc147dd895e21377bfac102n/a 
2023-05-24drawknives.jsjs fb4e05c0f67729d77fb4fde28a1b3b94e39b8923a2818694b361d28ec58dc3f7n/a 
2023-05-24apiose.jsjs 4f27b1ef77d11d9659d3216fd59b588230f2d37b3f2957779b97e23ac25b542fn/a 
2023-05-24quasiperiodicVirtuouslike.jsjs 24cb0278721cf99dcaa577414065bebe42f13e3084b7e55b10af72a983bf248an/a 
2023-05-23PenuchleAssagai.jsjs bb5555800b615f6858fea831fb51fbf79a34740d9ff56a09a7935526c5388473n/a 
2023-05-23songbook.jsjs 2355ad66ca9c7955e6314983a23ac1880eb5d0f8b2a1b3351782381269bb6031n/a 
2023-05-23SnakeleafMazaedium.jsjs 941961ee37e4d37f366a072566547aaeb2925a9291c918b9e6d822d0b382e05fn/a 
2023-05-23tuberculising.jsjs 14c09bd17987e3e5d47f26e9beb3f2163dad68a344a8897778946c069aea86e0n/a 
2023-05-23Fogless.jsjs 6b465f227de6126778192c352ddd760a53b00fd57046fc6b1099a71c64e9c654n/a 
2023-05-23Ouvvnt.jsjs d6c9b1bd1df72bb86425eb80b56ec9d98b559c16ce09ed4930f0649652866093n/a 
2023-05-23Ivfz.jsjs fda4929571d495e2a3027fe1f5a3ed4b99c4d8b6b6c34b66eb5421375ea23950n/a 
2023-05-23Fbrv.jsjs fb71da85575c4cc779eb2d58b364454faa5c6cc465354aa7c0daed14e2556c82n/a 
2023-05-23Iroo.jsjs 5c71019e9a38b0cdaa0775092bc81b5036e9541481a6ccf539d5f8905668c1bbn/a 
2023-05-23Ioiofer.jsjs 2cac658dd14bbe891df262b4722a8f9f14db0161abf1641700a1e7f85efe316dn/a 
2023-05-23Zlcvwfk.jsjs b91e47277fde2a177b1133a386359d67c4b547a0193d2edde2f7b3a13b051ef5n/a 
2023-05-23Ymgc.jsjs 8148e18b22d69956b95a2ecf8456df5734ededaa54613e7ded014e44e1e7d614n/a 
2023-05-22Axbawoxl.jsjs 2ad23f9ead701cc6837bd0c091422661ee6f6b0292e91027cddf98cf2f44275bn/a 
2023-05-22Rpoq.jsjs 3d57b4e125a7fddbe76372bff701ae552a30211f5bd81655a3e98cecf9161cb9n/a 
2023-05-22Jnwetk.jsjs 8ea7f2d7cab5ffc06160e823e3ae5657ae7a98e3525d930b4ff5c96046a364c9n/a