URLhaus Database

You are currently viewing the URLhaus database entry for https://techafresh.com/qu/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2639532
URL: https://techafresh.com/qu/?1
URL Status:Offline
Host: techafresh.com
Date added:2023-05-23 13:07:21 UTC
Last online:2023-05-25 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-23 13:10:00 UTC to abuse{at}namecheaphosting[dot]com)
Takedown time:2 days, 8 hours, 48 minutes Poor (down since 2023-05-25 21:58:32 UTC)
Tags:geofenced js Pikabot Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-25756.zipzip c8f5aa26e55b2aa40ac4cacf80420414924954e0883b7e1c47503380130e3362Virustotal results 17.74% 
2023-05-25235.zipzip a6445d88bf8cfd196918bcd7acc4c6150cf33c5068b160085987b97bd4189029Virustotal results 16.39% 
2023-05-25188.zipzip 0c4bcb4e446eeb924946b82b4b5044b7f40f1ba0137166871487bce23207020fn/a 
2023-05-25256.zipzip 623ca1f8e163e02d67a7091f2c1539a4abd06d07b950552665a3776984290661n/a 
2023-05-25664.zipzip fe13f49617435ad6dfcc0b1f340b159f538e0b43b9f1b4fd3985c60a30b30b4en/a 
2023-05-25LambadiHocused.jsjs f6c7348a6d00d389e5002212a464e231c800f4c246e9bf4421a45181aec74afcn/a 
2023-05-25Afterwrist.jsjs b7859628f4b813d7348fff9d02f25c8b3e0ffe293e8a353ab1cfcd90632a5ab5n/a 
2023-05-25quarterdecks.jsjs 4cb1bc332d32f57e12258b78ebb788f19e7d252336d148a6c0cf21b169ae0a0bn/a 
2023-05-25dipterocarpaceo.jsjs 2527fcf939f127ee6e94040cd38c00c18c987c7642b7b436f6844d7715f860cbn/a 
2023-05-25splenelcosis.jsjs 1d807cb32879ee496997f00fa2f74b007ec891b9ed609e3424dbc84e080e8981n/a 
2023-05-25creeshes.jsjs b3bb8080d3b22f82408850c3c9e979db834be23d8442f835631d4cc880592851n/a 
2023-05-25TittupedOdiums.jsjs 598468de991cb8f18f96b28678bdecc1e21edbdfc0e2cac7d4f9599b6740560cn/a 
2023-05-25Rhinocerotiform.jsjs b3e95c561a3fcdbdb65904c99dd2da1eee854f99a60c71238e6b7015c4047a87n/a 
2023-05-24virelaysJacobin.jsjs b176f7b9b9176b8e7d87cc0606b44f01a54edce35d4cc1bc9cb35e6ab8f2f31cn/a 
2023-05-24speared.jsjs 484e6d1c76e38a9af72f840f8b217f333069e517669dc66bda4df4eaf3ae3b07n/a 
2023-05-24Ineducabilian.jsjs e5c19271e354ec1a3cabcce6c8531d615524d4e3dc592d4c9d56435b88888a6en/a 
2023-05-24ContumacitiesPl.jsjs 5f3b4022f4c1fd09b080c6b803e8f72be0d45fe73e6287e53b38627ad9d38195n/a 
2023-05-24doc_F274.zipzip d61a5c12eb761d97f17e34f5235325f28a592d59eacafe7d521e39f90ce5c9faVirustotal results 19.30% Quakbot
2023-05-24doc_F273.zipzip 0756580845fe2d223051e1320f2e4f6ce7f3b1ebe8a33ded57014feae474673cn/a Quakbot
2023-05-24doc_A590.zipzip 3db3ddff2b215036de56ab7963ea79d19de395af3ec785641cac66b780d99bb5n/a Quakbot
2023-05-24quadrangulateSemipacifistic.jsjs 092a6d612166efc22bf52287d77d505c1c1107dd9a24b57c4d795ad2ee616d74n/a 
2023-05-24Athonite.jsjs c54653f111a151a96b8592936f3f79ff0a7cc0b9ff3b41ee967d877d2df2d519n/a 
2023-05-24noncalcareous.jsjs dc4f6e66633cb7e625e5790a9052831a20ca16a275475a249c9bbad7abb5e73bn/a 
2023-05-24Mellifluate.jsjs 57593e83b92f2c1d168e64ef28a8e7e04beaac251c004877c05c56b856a18f5dn/a 
2023-05-24takahe.jsjs df854fd5b17f7230e1bcec7d7ac81f9f6590daa0b2f74bde41919f2ac7ee9766n/a 
2023-05-24echoizeWhooping.jsjs 1193419d4371f4480f2db6508551bee2d7adf5619ce67a6bcb774e5fd2eab1f7n/a 
2023-05-24terroriseStoppably.jsjs cc5d670c2eda87d8077ebe63aaf0203563cb4591ef6c46aaa37e385250b0d956n/a 
2023-05-23carlotArtichokes.jsjs af7aa825a33a4528750554edd00ecb0d59058390cc20cfbd973286c88781f75bn/a 
2023-05-23ShearlessHacklog.jsjs 58feec1fec86a13f220f92bc1a124b4f01a2dbf7c546aaf9667ca87606128bc2n/a 
2023-05-23radicolous.jsjs 367d41e901d4eb99e8bcf657c7722310a8e8de0a79aa26e2f15eb486b4fe0b14n/a 
2023-05-23DispleasurablyPhaneroglossate.jsjs 4f8ddd698279463648feefaf06d3fce288d4e2c022e838146238ad7ad0064cddn/a 
2023-05-23Organizationist.jsjs 8d09ee6333e51be8c8b257372a7506109530d0fc2222b6e997d040061dcda1dbn/a 
2023-05-23cheven.jsjs 19cd372c8b2122c9efb69c828763a88c578d7f7dbc0156dbd7552ba2dde78543n/a 
2023-05-23LipotropismGorsechat.jsjs d6449305514e561a7dac895c4a5bf1f110f428adcd36f23bf1c1bc78d7c4d8bfn/a