URLhaus Database

You are currently viewing the URLhaus database entry for https://nladfk.com/iu/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2648911
URL: https://nladfk.com/iu/
URL Status:Offline
Host: nladfk.com
Date added:2023-06-01 11:49:15 UTC
Last online:2023-06-03 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-06-01 11:50:42 UTC to abuse{at}axgn[dot]com[dot]sg)
Takedown time:2 days, 9 hours, 26 minutes Poor (down since 2023-06-03 21:17:04 UTC)
Tags:BB30 geofenced js Qakbot link Quakbot link USA zip

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-06-03document_C917_Jun_2.zipzip 91d4942e2e5d57acbe576e9ec7054470592a806742a6af4f2cb821e91549b338Virustotal results 18.03% 
2023-06-03document_B798_Jun_2.zipzip add82ad74071f2e9f40816ed2d2c2a8ff36e93ba10f73fe6f6ed80486b826f5fVirustotal results 28.33% 
2023-06-03document_D913_Jun_2.zipzip c635964953444f9f141331f46739f9dac06b661fa74df5e9d659b1629859b126Virustotal results 19.35% 
2023-06-03document_A740_Jun_2.zipzip ca759e114958e8328511858681b9cc8696e85707768cc8693786ed708354f44cVirustotal results 22.58% 
2023-06-03document_F953_Jun_2.zipzip 63579b0f5a59a15abc3d51fcee89ed8f4c86cac3adf6f574102fb26e14b1da93n/a 
2023-06-03document_B768_Jun_2.zipzip 86b82c1586b14f7929252ad2229bce46e2109ae7368d6eb742d68fc680778187n/a 
2023-06-03document_B437_Jun_2.zipzip ae91586de9ec5b760226434fc11ed55f7f06427be4b2651c36a922239de3064fn/a 
2023-06-03document_A820_Jun_2.zipzip 6bda5d7637471ca21591c5a6c3316be73ef77832bd69dfd37a1f550aa2374f1fVirustotal results 22.58% 
2023-06-03document_B302_Jun_2.zipzip c117850dcdaf680609ccaad4e4c959b3c59519d8e2e51ca8371dfa4b796816b8n/a 
2023-06-03document_C938_Jun_2.zipzip e56baac8e0f34faab2f0bb47734f4d0ca2185baa727eaeb9a7f4a5682da51db5Virustotal results 20.00% 
2023-06-03document_C910_Jun_2.zipzip e13f3ea35c41c2a004fe370a2b943931e25787c7c0f4ed091371276b5a63aaf3Virustotal results 24.19% 
2023-06-03document_F058_Jun_2.zipzip 079c610acf4dd9fa013f0041136b87361a0dddc1e21aaa9f496acfb18989fd10Virustotal results 19.35% 
2023-06-03document_D128_Jun_2.zipzip a208ad911bb5a4ba71e4b04b0167ec2e8681630391a9f517f2917bb8adcd2aa7n/a 
2023-06-03document_E910_Jun_2.zipzip 01af9e5d95c64f571144208d75b88796a2f85efc9be2ecf6bdec23e49d6ae4b9Virustotal results 19.35% 
2023-06-03document_C753_Jun_2.zipzip 89c5d3b65d732fa817d747241c477ac5001c9dabebd7894ea804b81f87b4c627Virustotal results 19.67% 
2023-06-03document_A496_Jun_2.zipzip 9338852664285c0c8c490f981ad014089d3d8b4e9469a3305a7a5e0a0a266bb7Virustotal results 18.64% 
2023-06-02document_C981_Jun_2.zipzip e18f6bb93fe69569bebfa652ba3643be8e6aa31ea9be32687dffac41082a2278n/a 
2023-06-02document_A263_Jun_2.zipzip ad8ae8d52cc17197d998da451a3c2d16076c08dcdac87415b0cc0ecf61f4d32bVirustotal results 19.67% 
2023-06-02document_D850_Jun_2.zipzip 33652c1bb9165af9d5878aff5f504a97359398fa3b076edaeefd9153d399d6a9Virustotal results 20.00% 
2023-06-02document_F523_Jun_2.zipzip 7fdf45b15c635f8655169010818f1ddfbd7dffa1589b846a6891dc26377560d9n/a 
2023-06-02document_F439_Jun_2.zipzip fc5382522f16bdbf5643a10d14650eca48b48713c1ebcdc38d2ec396cfe3a46dn/a 
2023-06-02document_A142_Jun_2.zipzip 957fa34ed8166798d5f5c8c62831d4b85b09354cb4bb1304c2dc6e3b7becfb46Virustotal results 19.35% 
2023-06-02document_B406_Jun_2.zipzip 9d1a5cd61ef69997138b0f263ecc29298827075999be6f3b2da4032958c107e7n/a 
2023-06-02document_A473_Jun_2.zipzip 9ee7717ecb94ac20a4710481c1971691902a76d0d81a3316ab7eeddfba2d6dabn/a 
2023-06-02document_A609_Jun_2.zipzip bacd1bd3d8dd7084ae1c0a964e9727101491700f1e6d14cbd014782779c5cb2eVirustotal results 20.97% 
2023-06-02document_A726_Jun_1.zipzip 13579cafdde79b3cbc95cfc2445e305677aa3ff05dda21d8f8bc1b2feb5ecff0Virustotal results 20.97% 
2023-06-02document_D942_Jun_1.zipzip 84605f93e011070e572317d9c1a31d1d497d8164ffa629d8ad22740f696b66f1Virustotal results 20.97% Quakbot
2023-06-02document_E805_Jun_1.zipzip a96219a9209fc1da125d7c84713a261175e43503fda52c3527a150cbc0a4dc53Virustotal results 19.35% Quakbot
2023-06-02document_C316_Jun_1.zipzip 648a001e21c3e2d6c5bf3ae22ff2eb3b5ff1cca231b1fc1e3f488587362a3b97Virustotal results 19.35% Quakbot
2023-06-02document_C059_Jun_1.zipzip 3f5bf5f762bdd9aec1b25dce6c802792674bf03248412630a6d367570086ab69Virustotal results 20.34% Quakbot
2023-06-02document_D501_Jun_1.zipzip 2c5937f94554233b267649413d12feaf6d7a47dc82d935f617b79aac42d611caVirustotal results 19.35% Quakbot
2023-06-02document_F965_Jun_1.zipzip 92e2610c319ea17a236af319cdeaf2fc4b9e1f3d5b51ade5cb419914717f641aVirustotal results 20.97% 
2023-06-01document_C073_Jun_1.zipzip 52908472819c1f3c9fb5031fac0a2e84755519a33240dfb4467f9c3da2a2f065Virustotal results 19.35% 
2023-06-01document_E683_Jun_1.zipzip 675b4c867be7ae67715477494b38ae993b381ba63c9934534303258e88caad70Virustotal results 20.97% Quakbot
2023-06-01document_A456_Jun_1.zipzip 37a94cc48141c101e68ef1523d2729a63995c64057739b837ae68185e59b9a4cn/a Quakbot
2023-06-01document_F361_Jun_1.zipzip 6d359fbef96c947b0fde253043f1815815374151b4fff902a102ab1cb222e271n/a Quakbot
2023-06-01document_E578_Jun_1.zipzip 9d4786097e22187617c3f837093e18c17a1b65865bf8ac064af5e71e6c149685n/a Quakbot
2023-06-01document_C138_Jun_1.zipzip d53c1e9a919107d3c7dcefdebde0169cba7eb61618f99f75b920653112f73bd9Virustotal results 19.35% Quakbot
2023-06-01document_D350_Jun_1.zipzip eab9376dcc11ea76b5bba98e076dd2ed6498220365dccb2af1c3b5599d787b76n/a Quakbot
2023-06-01document_F263_Jun_1.zipzip acfa6f73963ee0127920a295cfbd7c71d785fec5fc41f5f19bcd21120dada617n/a Quakbot