URLhaus Database

You are currently viewing the URLhaus database entry for https://pattersonoil.co.uk/qui/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2638926
URL: https://pattersonoil.co.uk/qui/?1
URL Status:Offline
Host: pattersonoil.co.uk
Date added:2023-05-22 15:02:14 UTC
Last online:2023-05-24 12:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-22 15:03:31 UTC to abuse{at}krystal[dot]uk,noc{at}krystal[dot]co[dot]uk)
Takedown time:1 day, 21 hours, 11 minutes Poor (down since 2023-05-24 12:15:07 UTC)
Tags:geofenced js Pikabot Qakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-24demigroatSymptomatology.jsjs 7f7e10433bece9d6405a05feeb9d18756ac6f75425bc0dc8eb7c964606a6d6f9n/a 
2023-05-24errhineRancher.jsjs ff8b0275dad9ca355c3df413d7208e4e4895921135e031ec55ccddbff48eb429n/a 
2023-05-24PraisefullyExpulsive.jsjs c15ffa0be4217a11afbfa68d5f529a0be2b6e2d4b7f31364d7a551b3f2186d31n/a 
2023-05-24Cinemas.jsjs 63d24ef24b2d2f71866d3ad3676014240933abca7c7b741a7d1a269105bd8f5en/a 
2023-05-24ungratifyingly.jsjs eec07a322f7c52f4aece218de83e60b7b9583686d44afb90286851db7e24afb0n/a 
2023-05-24CuvetteTetrapodous.jsjs 16fee1b1c7b2a67bd8761c2c64ce5261d8097ba33eb614ec2632343831a237cbn/a 
2023-05-24gemmiparously.jsjs 863387a78193c6c7befb849a9d73273f795492495cdecc88d0b31529e0e0eac3n/a 
2023-05-23idlesetTympanomastoid.jsjs 39dba7f3aeca33d1f4d8d40f8e5bd47ba678e5c8f8ca18d722ba1d97dfdf21b5n/a 
2023-05-23Glycogenolytic.jsjs ab30df6dff82b3d649495d0e712f1bffa6ca09cb8215925795e3b134c3e3181bn/a 
2023-05-23cheven.jsjs 7259acc65ab7f3b379a177e45ee8d359c24f15118f4788bfb9574cb15549c43cn/a 
2023-05-23ChirkestBonhomme.jsjs d04a0553ebe57af926a6c30ee39dd98c92c00a756ad13227b3cdc31bd077a1ddn/a 
2023-05-23DerrickmanBodings.jsjs 3ce2f10a738c462632dfd2765c34210da2022bf96f69314344278ee3d7d4c487n/a 
2023-05-23heterognathMeropia.jsjs 76987b7ff4e69301ce7be468701a0d92b954bd193e0bc933b0eb81daba70d903n/a 
2023-05-23Priestish.jsjs 00bdefabf5fbc966225175924e8a26eca85526e396e217ca97d9672d32ad0c6dn/a 
2023-05-23MessianicHoorahing.jsjs fe5d6189ee7665d2e679007c04396b8571e02cafbab5bedaa031864cb1ed6ec3n/a 
2023-05-23Xvktqo.jsjs bc4642080ccb99040e5e8d1abb9608aba7d4e88a316705d3a4118627dc620ccfn/a 
2023-05-23Nmakya.jsjs 194e48696613fe62b55b892a5b97ba82296f478e3b1b380536105651c5874d98n/a 
2023-05-23Aztaxunb.jsjs 5dee2a4aaaf3ddc013c7b8a0baf64e613e713dcdbbfa110d2a5fe7087c654401n/a 
2023-05-23Ndiart.jsjs e38635e6a7d0fcdf4f4d7d0ba333c7be0a0c9377ee18a0b85a927abc396213fdn/a 
2023-05-23Pjhtaep.jsjs eb670e957d7411390ffa4b033cddaf8496056aa56a09a6ce1769315f1be97b0an/a 
2023-05-23Narhaag.jsjs 4d03a3fbd166a96a5162ec93ccbaef8f164e5bee9162950c980e04520ea2761fn/a 
2023-05-23Hzkqr.jsjs 7fc83a03b1956c2a73b2cf0c71c5d9fe8532e19466a514544330c705b02be3b7n/a 
2023-05-23Amtjpjh.jsjs cbf5012ee2da91b699810bd931c9a2239135760255dd8e790e07375fbd91b797n/a 
2023-05-22Armog.jsjs d6398541b2a1b59c1748af03fa82870669771d930b9b848bdb3adf1ed3d6152en/a 
2023-05-22Lmilxmtx.jsjs 2dfab69d641ec6d2271c2f1ebd70bf4a41c279c9c7e26aa0fdf9a299f5669afen/a 
2023-05-22Hhbow.jsjs fbf352c73fac396ba8096fff2d68fbf08e048a709f7d7c9582eb46841034c93fn/a 
2023-05-22Dwofrk.jsjs b4f75ffdbaca34e6bd80b78a325850a98fa7cb3edd6e8b049a24fc952d39b65fn/a