URLhaus Database

You are currently viewing the URLhaus database entry for https://nladfk.com/teos/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2648945
URL: https://nladfk.com/teos/
URL Status:Offline
Host: nladfk.com
Date added:2023-06-01 11:49:19 UTC
Last online:2023-06-03 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-06-01 11:50:42 UTC to abuse{at}axgn[dot]com[dot]sg)
Takedown time:2 days, 10 hours, 8 minutes Poor (down since 2023-06-03 21:59:15 UTC)
Tags:BB30 geofenced js Qakbot link Quakbot link USA zip

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-06-03document_C489_Jun_2.zipzip 6a71c0261d8a1bc4232aea4f80d4ab34069d6c4782c5a15aaf629dc1c30f642fVirustotal results 25.81% 
2023-06-03document_B034_Jun_2.zipzip c6decb4e0b570d593567f265ee1e32f0e03d90acda42b13d3cdc5e056de6615bVirustotal results 25.00% 
2023-06-03document_F974_Jun_2.zipzip 5d27a2d16c19815e0f422fbc95e7d1a58f013cd16624104d3846083ccf4cd610n/a 
2023-06-03document_F037_Jun_2.zipzip 4065af03038ec743459112c4dd12d4a4bdc8f8d568036a74161fa6eeef7dd292Virustotal results 21.67% 
2023-06-03document_B508_Jun_2.zipzip ed90dddf4160dda732d2d92f29bdb2d3edfbb311329e12bc09587079f9e1ff6dVirustotal results 20.00% 
2023-06-03document_E614_Jun_2.zipzip a7866701e9483957cdd4592679838a4ad75c32df818d69111c8fc0dce9b6d7ecVirustotal results 19.35% 
2023-06-03document_F870_Jun_2.zipzip 3f81844c8c4cc2468c1451806c1bb63df702616ce3493eccc188580333f2d4a8Virustotal results 24.19% 
2023-06-03document_A691_Jun_2.zipzip 2e391f29913d6eff5111bc108381c1dd32dd75efe5977014947759bb0db1173aVirustotal results 19.35% 
2023-06-03document_A485_Jun_2.zipzip 9f5f884ef9949e3744f47ee97bb1d3f118c21c1150810051e1737f1ad5cc79baVirustotal results 19.35% 
2023-06-03document_C981_Jun_2.zipzip e18f6bb93fe69569bebfa652ba3643be8e6aa31ea9be32687dffac41082a2278Virustotal results 22.95% 
2023-06-03document_D586_Jun_2.zipzip 45e5b333b576adb7a6388f5aee2b5d8a9b35c565f795d64bd673f6ef757599e1Virustotal results 21.31% 
2023-06-03document_D354_Jun_2.zipzip c2a6e0ac1f8cc80822024fb9efb853efbd6ffe6fafa93f1d0df88955cd1be29an/a 
2023-06-03document_E745_Jun_2.zipzip ff93f76f072795fe108eb3130bf6d11f615adab1ce4f7b0651884c4edf6f6ec3Virustotal results 24.19% 
2023-06-03document_C267_Jun_2.zipzip ea45a31782644f08466c998d917b820625c3c9b00ca6f3ed2fb9130ec2a8fd5fn/a 
2023-06-03document_F507_Jun_2.zipzip e85186e9c3827318b4c4cc3444e8442310cf95faa5cbedb09d6498c3a0b63c8cVirustotal results 20.00% 
2023-06-02document_F061_Jun_2.zipzip 2ffad1c5e9f44bf1a7d7281db1bc67a724ad4e84c8678a9a6585544e1e3f7ff3n/a 
2023-06-02document_D819_Jun_2.zipzip 9515e8e4a8462fd376f4928b1eadd9284b06ce51a1edea42e8d3d09f5e7ff542Virustotal results 17.74% 
2023-06-02document_C832_Jun_2.zipzip d14c35bc7dd331b035902d08ba7e0cf5146c04098128b268172703dab9229a81Virustotal results 19.35% 
2023-06-02document_C168_Jun_2.zipzip df1bc9def9e43f40534db83cbcf373ab94b0743ed5aca66e4b52a6aeed47bcd0n/a 
2023-06-02document_E789_Jun_2.zipzip 360d1c4a0416cddb9c257c05ddec916dc8f158d51467d6e36a1216b4bcc35360n/a 
2023-06-02document_E715_Jun_2.zipzip f55412c18a488aa6017d83c2aa7a2ba5a5e506c03bf66042780c3e08dc7a99ebVirustotal results 20.00% 
2023-06-02document_E935_Jun_2.zipzip da69124124654fbeabd8b8eaa2f54d2553892dbb427efb0ab3976d4552926d76n/a 
2023-06-02document_A729_Jun_2.zipzip f0b2c8cb3644674d5366101f3a0998f315908831292536f47f700e9abe60373bn/a Quakbot
2023-06-02document_D947_Jun_2.zipzip 060b7043ea12d4bcec1da29073b91f7d927f08f4288451fbf122958aaf2d676dn/a Quakbot
2023-06-02document_B984_Jun_1.zipzip e19c4469139b1f860cb707176db5542b60787c2bea19607f3730b4b40b115ec8Virustotal results 22.58% Quakbot
2023-06-02document_C416_Jun_1.zipzip 6fb563ac2c144318897b7e91c8c5c334ad32a62c4f136bcbc2bea165f0b8bc12Virustotal results 20.97% Quakbot
2023-06-02document_C384_Jun_1.zipzip c90c75e8b2c3795bcba4f1a3371a0490a94790b416eb72dba2caef67cc7a7d7eVirustotal results 19.67% Quakbot
2023-06-02document_A706_Jun_1.zipzip a04222d2b09432f1812f283df1898afc20f671cd34979753c4a499de6affe242Virustotal results 20.97% Quakbot
2023-06-02document_E267_Jun_1.zipzip c9aae2119c9a7ac0a45270230f8d2dc1f67978a0f4b07a837c38633a4130b3ebVirustotal results 20.97% Quakbot
2023-06-02document_D623_Jun_1.zipzip 3e2c441a80c60d798921421a01e5b28370b150ec281b124306123c487c71d8aaVirustotal results 19.35% Quakbot
2023-06-02document_F724_Jun_1.zipzip 8ce75a50929e7ed362198ffc1bd3a28ca97aaa64b75b640475331af16c15c768Virustotal results 23.33% Quakbot
2023-06-01document_A691_Jun_1.zipzip 158ec299695641f09073fcae0184a0caa3a4527fd4ff9756f9146a7c320211d3Virustotal results 19.35% 
2023-06-01document_A402_Jun_1.zipzip ca190b16948d28fc2f2d39fbdb3811597848cfe3ad0406b46fbbc30cec6bdd51Virustotal results 20.97% Quakbot
2023-06-01document_E921_Jun_1.zipzip 08710705db7365aa8ad943568ddfbd0a9ee106b72cd8ee0b5338dfea4b90aebfVirustotal results 19.67% Quakbot
2023-06-01document_E971_Jun_1.zipzip 8ec90ce3cc580a3e4835dc3088b96a1e2d3ceedfc902190cdadd3d5c4c7b91a4Virustotal results 20.97% Quakbot
2023-06-01document_D092_Jun_1.zipzip b99922e0eabd26c3ccc636a76976dd969a2fd3b62fd98f504de8f0736b1fa0f9Virustotal results 20.97% Quakbot
2023-06-01document_D749_Jun_1.zipzip 0c1b3112f2f4b9e8abd6714c60ff43261bedd8b7d4b41d8300e07dac8c59755fVirustotal results 20.97% Quakbot
2023-06-01document_D409_Jun_1.zipzip f0692c23108d53d47de75cb5e0391e55b70becf272f4811ceef628f5e4f2283an/a Quakbot
2023-06-01document_F540_Jun_1.zipzip d4fe205ab472ee062a2068e0c58462de62ec04db2224b143006f674e1af6149dVirustotal results 22.58% Quakbot
2023-06-01document_F431_Jun_1.zipzip 8843e3d19b25245f014676f21756c65b3a291b5e553c8260e110113d6de4b5ecn/a Quakbot