URLhaus Database

You are currently viewing the URLhaus database entry for https://fortunewheelindia.in/neuc/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2660075
URL: https://fortunewheelindia.in/neuc/
URL Status:Offline
Host: fortunewheelindia.in
Date added:2023-06-14 09:02:39 UTC
Last online:2023-06-15 16:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-06-14 09:05:23 UTC to abuse{at}cloudflare[dot]com)
Takedown time:1 day, 7 hours, 13 minutes Poor (down since 2023-06-15 16:18:56 UTC)
Tags:BB32 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-06-15document_BD453_Jun_15.zipzip 11bfd0e31a6e5f1155621fed4aa0774145c7822ebbe6fe08d574122f87fa6fe7n/a Quakbot
2023-06-15document_AE461_Jun_15.zipzip 70f5f5a0a2d487f65925d7788cb607ea48659c99af5e29c0117272c24f7955a8n/a Quakbot
2023-06-15m08c5l0j2Rpsz.jsjs 600e7a625fe321590ac2bf6928bab149529a54eda8dd623d52eb437ef71479edn/a Quakbot
2023-06-1538NfRk7VPx0z9r.jsjs 9b45256a35b13935112db58d1458688c2cc1fb61377a2cc9b2a76c6662d493c8Virustotal results 15.25% Quakbot
2023-06-159ViB8AjXvc4n.jsjs c61e790b06f83727a0be47b44da12c074a42a7449d6059874aabfd61b38c1870Virustotal results 0.00% Quakbot
2023-06-15KmNDC0i7QvfuQT.jsjs 935ddc7d61fd41e0485a3888528cccedfe25e895f5caee28bf3685266eaef591Virustotal results 3.39% Quakbot
2023-06-1523DjEfAPuSciYq.jsjs 993dc734b9e5b5d49b5289df98acd4829aae53b6aa73d994c2a150ba71392784Virustotal results 0.00% Quakbot
2023-06-14uuAlkBbugJUER.jsjs 2da3e0486d77f135734771f4a9c2f769de99c4756bb71f55fd0da6e48f2923b1n/a Quakbot
2023-06-14t73iYQHiy8w2E.jsjs 7c9a4b14bc8fd45216d4582579b03a195997a45eb1ba285ad2931993c28475f4n/a Quakbot
2023-06-14a8wU6f0MPcjYu.jsjs aa3b90a263a600deea80ebf948b7497631bd26618e5a626e3a54fbbd42c63e07Virustotal results 1.72%Quakbot
2023-06-14drYPiOsgKA43ff.jsjs d7f93c007acdb729ac24d4761820b3ced62648e526e6371d353be39c663d6649Virustotal results 1.79%
2023-06-14WuFbcLqsftEkW.jsjs 80cb6a04650549de1867cd400061ba1e0e95db2b60fb64c17d44dbef1480b39eVirustotal results 0.00% Quakbot