URLhaus Database

You are currently viewing the URLhaus database entry for https://riddles.top/nt/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2659440
URL: https://riddles.top/nt/
URL Status:Offline
Host: riddles.top
Date added:2023-06-13 17:52:44 UTC
Last online:2023-06-15 16:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-06-13 17:55:03 UTC to abuse{at}namecheaphosting[dot]com)
Takedown time:1 day, 22 hours, 8 minutes Poor (down since 2023-06-15 16:03:25 UTC)
Tags:BB32 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-06-15document_DC698_Jun_15.zipzip 9ae0fb088e8835e9c0b9d889ecc2d025d72e73ef686b032ec4f1f7fd41ef5ca0n/a Quakbot
2023-06-15document_DB032_Jun_15.zipzip 7c4b60f4da6ca1854167a630b36f73cce9139c31e26f524e6d5b4022dc23d952n/a 
2023-06-15document_AB290_Jun_15.zipzip 7c9c625b781be20e0528316644d6fda0db54868931492fd5869114bc344f1a6dn/a Quakbot
2023-06-15UquzQGnCFpRjM.jsjs 29abddb9e067137ae20905f5f9438ff579fb8bf19ba7404a63ded9373b5784ffn/a Quakbot
2023-06-15d0rEYGXfvDEx.jsjs 8aa060b9d25b0f1dd0910ac3342533c0749f1cd7e0ad95e5252cd9b553f34474Virustotal results 0.00% Quakbot
2023-06-15InV0CjkkLKzQV.jsjs 43f9f8d38a8f2031b639bc1229843e4405e231f92dc3dc4fdcae14def57d6762Virustotal results 16.36% Quakbot
2023-06-157ITukdBegjdHfC.jsjs 8dd7f9fc6529e804c348f1800adb2643d8485c94592be362d2e4cd33b3f4688fVirustotal results 15.52% Quakbot
2023-06-152BEp7In8c9wV.jsjs fd6b3656de6f024c1ee01990e323b112b48a94dbdae530d7fe6139421d6f9191Virustotal results 15.25% 
2023-06-14cC8m4E91gLrIf.jsjs e2d0a153e946c901ff3c5cfeb0d51d9b7988d699ca7ccc24c7d05995b35cf87bn/a Quakbot
2023-06-14GRS9EDIVNangN.jsjs 1caf8faebee5e2102cc72253475a6974fac48f5fa2c66f415b2d526ddda91cf2n/a Quakbot
2023-06-14docu_AC574_Jun_14.zipzip c6ef6be91731c26f6f16bf0cbcc3b60fdadb951d23dc508de4f147f5c62b1ae3n/a Quakbot
2023-06-14DXaaPzEG4V1JO.jsjs 43ab69d42b8f5ee56207c459572b0287c8749f71a833d58c4ba5670f148e609eVirustotal results 0.00% Quakbot
2023-06-14Opz5RNVKnrS86.jsjs e68554a95cdf461f6691aa1c71be49677f938229e88a9f4e74b66fb04d81e6a0Virustotal results 15.25% Quakbot
2023-06-14JFCHDDgRhAxkP.jsjs 483228cd9dbc746865382146bf2237e1f145e9abe508ce213389b481bec31c45Virustotal results 0.00% Quakbot
2023-06-14B2qQrZh97Vfe2.jsjs 39a742588af367f30c7bf2a1427b3fae0c2538272168039d5ff104802ee49bfcVirustotal results 15.25% Quakbot
2023-06-14R6A0y0i9F6qERK.jsjs 643280075b03577256f767d9f5ac21dd0b9e0139def94cbe9313a8323d192151Virustotal results 0.00% 
2023-06-14jlcCn1rAoRSNa7.jsjs d087bb4774a6b5faba84742262dbc66c00f8251681a2ca8016515f158c0863e3n/a Quakbot
2023-06-142cqywQRY2KML.jsjs 7dfd29f00e336c863f636f640d8483f1e532289aa0ab4a8d2ae7a8c998b20eadVirustotal results 0.00% Quakbot
2023-06-14qQPNdkvTiDdwNs.jsjs e7cd21fc50018e3a9d2df41a2c343698e595a11ac49619bbf9d7aaf657545e65Virustotal results 15.25% Quakbot
2023-06-14Rinsr3M7Nd0p.jsjs 87c2c690b9a4ccd266848d48dcddec5f21472f30e1684066638c44e7f287e51fVirustotal results 15.25%Quakbot
2023-06-14Zm5xOg7p7dDy.jsjs 4d829bbf95d3859910511aa1e3b95071dce9f8a2139416483a57eb6e3a3349dfVirustotal results 0.00% Quakbot
2023-06-14nmV4mshfVwKnFB.jsjs 784399d6d2e3875a39ca8acaabbdc39a65ab09bb8ae606316725238361ff2257n/a Quakbot
2023-06-13HyiHSOFOeBsn.jsjs 1d5987017ad620b3a02294aa2012ee88929b0de6562a00bdd17e5faa0a9461d1Virustotal results 0.00% Quakbot
2023-06-13qvVYXxZIFfTTq.jsjs 3c19cbc984a71031d4442b05aab1f554603a6e5369d8f2c176dbc33a2f36a2cfn/a Quakbot
2023-06-135TdhwLxlcrsMN.jsjs bc9fdb71a012132f26b7fffce864e303e8a69e2fac6b2de206d12fa093ae3729Virustotal results 0.00% 
2023-06-13V5znx9WhhuXNI.jsjs 0e5588d92003690ed51f62d78db1a60077090098ca4ea350a99bd0a93e96d0een/a 
2023-06-13LuTEqhaKztlUy.jsjs 768c7f7dd8a5c0704094fe92cc77d3d667040c32f88658005ea1730725376bfdn/a Quakbot