URLhaus Database

You are currently viewing the URLhaus database entry for https://thekingflix.com/ia/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2638811
URL: https://thekingflix.com/ia/?1
URL Status:Offline
Host: thekingflix.com
Date added:2023-05-22 14:53:45 UTC
Last online:2023-05-24 22:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-22 14:56:08 UTC to abuse{at}namecheaphosting[dot]com)
Takedown time:2 days, 7 hours, 53 minutes Poor (down since 2023-05-24 22:50:02 UTC)
Tags:geofenced js Pikabot Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-24cephalophorous.jsjs d40a6209fa78bf6928abe66dabe48723f319b74e1f65514148432da5737ded3fn/a 
2023-05-24EsguardNeutrali.jsjs 1df3646da3977c39d0a8be9b59f16cf852a8d1a70202a4b5d58c11f06edbee9fn/a 
2023-05-24nucleophile.jsjs 446ca8a801629f183a73961e37a793332daf21bb1e7b92f562efe416afc5e2cdn/a 
2023-05-24doc_C589.zipzip 41edb8baab6b7daec8c84689a48fb6f3b3ecfae87dd9620fbd57db103021fd2cn/a Quakbot
2023-05-24doc_F641.zipzip b3009cf51034d03c1eb0e934a333bec2bcd93d344a4489e3f8dd99ea91a3b490n/a Quakbot
2023-05-24hartake.jsjs ac8b98b277ab9bf49726b1036a3bce6ee4b6c324cddda3ecf8835b0d6530eddfn/a 
2023-05-24mysteriosophy.jsjs 40f202792b82c548845722d86a33650268fdec03fe40588c38dddf06d4f7737en/a 
2023-05-24physique.jsjs 330a13a513f123ff14abc3a70f5a244a38b875bc408bf49260bad14fb034822fn/a 
2023-05-24Tetrathionic.jsjs 7d223dee2723a92da6087f233f6c6eb6575fe3adcd86121a2096ccdc98a43360n/a 
2023-05-24ChirkestBonhomme.jsjs 9e6c31b9664624ed72756d64650ab0076b46c97bfc83583e8fe9af547c22b944n/a 
2023-05-24oversews.jsjs dea12e26ab98990224923ed99439f8dfbe1ba3dfc80a8dde1bb7c00e55426dfan/a 
2023-05-23CaravelsReasonings.jsjs 1c44a6d5d67b04a126a8c7f3ddaddbc70502b43817050338df5ea13488742403n/a 
2023-05-23ungarrulouslyBrochidodromous.jsjs 28f6d1daeb473b04b9b478b2d5232c4d5bff20e6023b51b9a8fde2c290125a64n/a 
2023-05-23paraphenylenediaminePirraura.jsjs 7094bfecd2a662234955b12cbaddbc89d129a2d800d2735c6a84080979087d07n/a 
2023-05-23victimiser.jsjs 82118600912778c5d888b7bf543ea7dabb9209d0b67dc0263387b7826d815dc0n/a 
2023-05-23DiaportheCorinthiac.jsjs f8917141fdde5cc8a7a0556c9d6e7660e9afa90a5997a381b82ef24bf5c62dd4n/a 
2023-05-23anchoring.jsjs b777c58ec3a533fbca7903e3086f95890671fc7a877cd856e65793ecfd5cd0bfn/a 
2023-05-23Karyon.jsjs 017604636924d012e7439f9b660a342ebc7f7bbeca4381488735afb010327e56n/a 
2023-05-23SoughingProvisionary.jsjs a25dfab1146814af13618c1045f90cbf34c6969f7402790084f614ad6b0f5641n/a 
2023-05-23AcetolSipling.jsjs b17dc19c86c46a140762c047fb28a7084b0c59f1f013e703dbf88993adad6ddfn/a 
2023-05-23Wrgu.jsjs 71b8c21a9474cc42a7c858519c2e4d15fa3b8f011337343f6837d68401d3a306n/a 
2023-05-23Xcwh.jsjs 2b9c12dff1753b5f1c07752f69b30845ff20e422643ed32d58b282d7bb66e3a4n/a 
2023-05-23Pvpvml.jsjs 841dd91eacdbc0e9ace481693cda0f973d61c9265d55696f866863c9772e7b6bn/a 
2023-05-23Fnnl.jsjs 2cc12aa1605931bee71e06c824e36136b16afe1f8f40b0aa95ff7545fd40d6fcn/a 
2023-05-23Jkkbvfar.jsjs 32b12774e03542970b28fa90467ff3ab85fdd27e21563cd1abe49f56bd177a6fn/a 
2023-05-23Auuy.jsjs 3d1478605688d1e2ed19f4a8f144e4aaa179ce00141862b1be111a99fb62d8dan/a 
2023-05-22Hjfviw.jsjs 47c049d70c421d5c48b220cfbde482621d72c1b81c668d6783eefa09a789410en/a 
2023-05-22Ikumuedb.jsjs ff236a7c5dded05f491f4335ffde00b849021b52f79696217029e1fcbe16eab1n/a 
2023-05-22Voqkw.jsjs f7c056e3e9f580c7f325aedf7960d4c9f0c47699ed7535a8cad4ed946bd9c646n/a 
2023-05-22Eauvko.jsjs dbcdc09b4893e8c1adbaa8f2c6ea08a4919ea56639adad5713c80cbe54fc769en/a