URLhaus Database

You are currently viewing the URLhaus database entry for https://alphawarriors.xyz/imim/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2659474
URL: https://alphawarriors.xyz/imim/
URL Status:Offline
Host: alphawarriors.xyz
Date added:2023-06-13 17:54:11 UTC
Last online:2023-06-15 16:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-06-13 17:56:07 UTC to abuse{at}namecheaphosting[dot]com)
Takedown time:1 day, 22 hours, 26 minutes Poor (down since 2023-06-15 16:22:17 UTC)
Tags:BB32 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-06-15document_CA183_Jun_15.zipzip 08ace880c3bf6c011ceea3880ad4a56692e921fde6e7605fa45674f15aa34c39Virustotal results 6.45% Quakbot
2023-06-15document_EF276_Jun_15.zipzip c46d3492fb5589695c115cfab615a04dcb51d29717f94b72179ffe381bf7e4d5n/a Quakbot
2023-06-15pljDnS0RyILy4f.jsjs 090c51bcc2dfd52ffa021fc2bd776bf7c90fc37f05b1d90f0e8b5fc41ba4b320n/a Quakbot
2023-06-15O2IpDlQHA2mH.jsjs d17a2d6bdc468cb11c8dfa8e1648a0c7e81a0f20c498efa0abcad537a92bb675n/a Quakbot
2023-06-151j6bnz7EhMcl.jsjs a0eaf8e387155b224fb28399043b608d1b71684ccf888cffe17cff2d59f8355cVirustotal results 10.34% Quakbot
2023-06-150Tc3FqsHB4ep8H.jsjs 6d765e2a4dfb5323d56bd3c9f1b843f7a03a6d5b408dcfd20b4f1e5f28e25967Virustotal results 3.39% Quakbot
2023-06-14wGG087dLjJTrI.jsjs 3a373e62b81d89650a5f5c61d8209a75bb2f46d1d684d03345cbabe608b9055cVirustotal results 0.00% Quakbot
2023-06-14DWk5ua5ulkSZg.jsjs c8bb62eb4bb6e62bfacdb832780804900abc32cdcd2e0e45b1992a7905727926Virustotal results 0.00% Quakbot
2023-06-14q6MFvxsxdniz.jsjs 23220a0fb2c2a0f8613095d184bd7fd50166f416bf34b5fd63e50ab3b12f5368n/a 
2023-06-14Xzzt1z1QPK74.jsjs d4fd807d3e0143d21c92c708cf9d6b19e0b421a31f9679f12fe34e0a7354633aVirustotal results 15.25%Quakbot
2023-06-14n9yhBafNPHs6.jsjs 896baff5c940aaa946cf456e15a0dd62a2da2a1c6288c85743f10d77db10f611Virustotal results 15.25% Quakbot
2023-06-14uDe7C5lgLo0K.jsjs 8e742b604ce524f9dae969250e9d4fc193536863d6eea1a842e167b04a2f49fdVirustotal results 1.69% Quakbot
2023-06-14dF24jdIjfW3g.jsjs 1e567b4015164976fee603e26a6bff005f1d0bee5c66f2b55c5a715d318a3699Virustotal results 0.00%
2023-06-14uxRIFAgje21o.jsjs 8670dee51f9e9588f77e0da71d324085bd9f779001244b568f807e6e24782340Virustotal results 15.25% Quakbot
2023-06-14n89HWHIyaiPTk.jsjs 977e2a9d32b2a1f31f955ae93c6ca9c68aed5c1383bbd537ed305d24b4b7fe2dVirustotal results 0.00% Quakbot
2023-06-14WJGd01YkiHTz.jsjs 5eddb9f95ecddff8a626830f3439a863a744ca2be7539c838ad2ebfc2813c402Virustotal results 1.69% Quakbot
2023-06-14sKaVPuHPhU0Jw.jsjs 1066f6fda2d727388157da17dfc7563da241e7e0ebc666911b180aae03187bd7Virustotal results 1.69% Quakbot
2023-06-1437ZkaJRCQ6AfzS.jsjs 6fa5e91f83aca5ec1ba097f04ffc440759eb42b64d28687afdf548a7b75b1ea9Virustotal results 0.00% Quakbot
2023-06-14cSnaeh4qLDCgsd.jsjs 376afcd300ff145b0bc7977fd15c1cdab89027aee13f3ff6090a46d6d722c7d3n/a Quakbot
2023-06-14rsmHuyQlHZRA.jsjs e8f11d5725c45f10ee276cff16e598b904bf476dec5490e6ddb1e8f4a36324adVirustotal results 15.25% Quakbot
2023-06-14XibV3kFdRqNzBI.jsjs f71d30c1de2bd1e746b4d2d866804d7f4a8dc3df95760c8c40afebcd300106b1Virustotal results 18.52% Quakbot
2023-06-13FmdlfRNledGNT5.jsjs 7f6436c40c2b2d104add09034d693f6871edd26b6798e272e5e4a3894ef5bc65Virustotal results 15.25% Quakbot
2023-06-13f0ADIPqU2CuN.jsjs 56b609a268af95d2d7641eaf52367a0438cded8eb26f98a02bee6aa399eb81d8Virustotal results 0.00% Quakbot
2023-06-135gyvKi7zZsiTM.jsjs bac9cebf108823865b264e88078ce7267a60426dbe23db0b5a8d3a2b8f7e1f50Virustotal results 0.00% Quakbot
2023-06-137GxS5269hKg0o.jsjs 5dd98aa1f6ac0612d94036e46ff6f1fab80be4d1c4db9c1940bd5544e7b5ffd7n/a Quakbot
2023-06-13TK9VTRtW4eNz.jsjs 8bac1e1bc404a9d9bddd15d2807b739c8f9ba94d70dd28f92faf300a043ca784n/aQuakbot