URLhaus Database

You are currently viewing the URLhaus database entry for https://civilwarhomestead.com/atni/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2669005
URL: https://civilwarhomestead.com/atni/?1
URL Status:Offline
Host: civilwarhomestead.com
Date added:2023-06-22 06:42:23 UTC
Last online:2023-06-23 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-06-22 08:23:06 UTC to abuse{at}hostgator[dot]com)
Takedown time:1 day, 13 hours, 2 minutes Poor (down since 2023-06-23 21:25:09 UTC)
Tags:BB33 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-06-23Qudp.jsjs 32e25dc796400be387af4f15352e9e237693e69d952b85c287a5a2d8f781c3e2Virustotal results 1.72% 
2023-06-23Azbo.jsjs a010f32de9d4ee91cc0e121391fb2ea90fb41e1fbb9e229e5fafe874eac24e2cVirustotal results 3.45% 
2023-06-23Jnykk.jsjs d7d3280dc1a7e9e6d4eabfd2851ae30243a83b3dfb15a9c87fe467736507395eVirustotal results 40.68%Quakbot
2023-06-23Mubzn.jsjs 058155c461c3d5835509ac484c691c9174b6eb72bb92683138e04b437f6dbc5cVirustotal results 5.08% 
2023-06-23Mln.jsjs 2157b88664f0c7a0220a3ae8c9206587ec7a5404f777c552d381fd265d883de5Virustotal results 1.69% 
2023-06-23Fdwt.jsjs 444b67e1ba91713e3a0910dc6fb9d5f022fb686c61bb70afa4789c0f5cfe8ba6Virustotal results 5.08% 
2023-06-23Gtd.jsjs 70ceceb376ea2ff3c0fa89cb08ca00044664019b7f4d7b1c21a4273e25bf1c55Virustotal results 1.69% 
2023-06-23Xkam.jsjs d22179b1b04b3d513b6ae11f36dc7c0ec2d5809c84189d1ab0f65bb8739d1b96Virustotal results 0.00% 
2023-06-23Lv.jsjs 26fe755ac1ace0f8c9f5363a3c6e2cf7c443cf594d94c7ccfa71dfb3bd405fd9Virustotal results 5.08% 
2023-06-23Ew.jsjs 1eb14af62b3310dd72313a682381c1ebd02fc546c7e2f0ab971e064585ab893dVirustotal results 5.56% 
2023-06-23Uf.jsjs f72d8fe4fca0857452e37eae36ecd43ec8c98867d2c06249c514024c98aab638Virustotal results 5.08% 
2023-06-23Psslf.jsjs 70f8df476e92587bac21c518e33a363f26ec36efa154ea9b5236f43142592827Virustotal results 22.03% 
2023-06-23Oyqt.jsjs 81c395e4967a707011d92428bd129935c30b4e2562474a062490216fab22630cVirustotal results 1.69% 
2023-06-23Vr.jsjs d1cb8898935f297db1080b35a364623747da81fa67ff80490775cfe92e5ffbc3Virustotal results 5.17% 
2023-06-23Mhhb.jsjs 05ecd959d2e092558048d2cc6adc8265e08553430b213b323d43e9c3561a12a5Virustotal results 5.26% 
2023-06-23Fidom.jsjs e17124d59ad5e3d559b316280853d816996af377f6602322d3a379ca7e167364Virustotal results 1.69% 
2023-06-23Kif.jsjs 3c9f87528a73e2dacea47bb34d323993309d951f9c52f185b5dd79e126082b0aVirustotal results 1.69% 
2023-06-23Srj.jsjs 661c08d41175a46b465e18a3cc3fd8bb40ec825a53e1098a217d49bcb0323219Virustotal results 1.72% 
2023-06-23Qrbwn.jsjs 3c46a5d432ba856efe10206226137fe7400604ae169809b4e0ecf8deb0f2668cVirustotal results 22.41% 
2023-06-23Qiz.jsjs d7fd6bd0d8a9b992518ebac6f6623e4ff1875721f1afa91167e79951a4792a80Virustotal results 5.08% 
2023-06-23Bwdch.jsjs 81678fca61d5ab2f49a9614132e470f94ae6c8c93a3127de3b3c373679b59364Virustotal results 5.17% 
2023-06-23Zxd.jsjs 96d78de6f6b19c684e24e7a8f5726030b4fc833bb3eb9c3c23b1a6cdb74edd82Virustotal results 5.08% 
2023-06-23Bik.jsjs af73698a53c9532eeb4f99e54449bd558c6d27e6e56bc92957de359e0f0c7d77Virustotal results 5.08% 
2023-06-23Obnz.jsjs 1b5866ce8f4a73492afbf25f6c0b01254d532ed75bdb29f13349b8be2a4d065aVirustotal results 1.69% 
2023-06-23Tbrqk.jsjs 1c1ce105a35cc26f9d12370ea10ae184fddf016d6ac4cf33c9f0a065cec7e857Virustotal results 1.69% 
2023-06-23Ct.jsjs 3751e5057f981add7870e763e60ba4c02304ee87eb46a39ab894d0db9cbf412cVirustotal results 1.69% 
2023-06-23Toynn.jsjs df1b155072e0edeb295bf29456c86333739427eb44cc4d12272716c24f195114Virustotal results 5.08% 
2023-06-22Qtjeh.jsjs 481eb99e35a2fc2346a3d2274cc9509c7476d64b1228254557b485601b6df10fVirustotal results 1.69% 
2023-06-22Tnl.jsjs 4e21aead495df0d503ad401f2391c3e476d7abeec002eeffa8b0fb9124aecc19Virustotal results 1.69% 
2023-06-22Tpvm.jsjs 74d244640f765a8b8a931ef26fc8c99b6cce1936d677e78fcad9b761a0ab7953Virustotal results 0.00% 
2023-06-22Vv.jsjs a516c25fb69da9aa8fcb999a594300689660e4bf5682116037553a6733864bbfVirustotal results 1.69% 
2023-06-22Bjvd.jsjs 025c913ba2a7c985bf2c8bc89c3dce0eeb9c809e2227c8f4f9a6076a70cb4214Virustotal results 1.69% 
2023-06-22Rg.jsjs 0a9b45fa1950877ce9b2d3077658ee87f453e8ea69d227edea0d85d9712af428Virustotal results 1.69% 
2023-06-22Gq.jsjs 75090a138e71c9be73101136577fd0afe26d0080f060e92ce297a07007aa2cb4Virustotal results 1.79% 
2023-06-22Wds.jsjs 2e438e565cee75ae926f7843ee64c6593cc19d8280adb9c915be4fb465014f67Virustotal results 5.08% 
2023-06-22Olvvb.jsjs 8b0dcce0b4f051311bf3bd5a69e3cccdeb059023fe74fd23937453a699079224Virustotal results 5.08% 
2023-06-22Zg.jsjs 8fae32c20744d1ac06055f267a7d87f55c570848e10a07649259d651d5294b61Virustotal results 5.08% 
2023-06-22Et.jsjs 5b39901d5cc75b191fb3ae548d86fcab00a756837e6fea234164dfbbce9241d8Virustotal results 1.72% 
2023-06-22Lwgtv.jsjs f69606d45fe605d06d0b603de730fc865dbbc89322a16927b9bdbe65a2aebb42Virustotal results 5.08% 
2023-06-22Hf.jsjs b4c1f28446bf1336e3bfbbd203da2f2558b16a1e2eb7071bc70d64a0039493ccVirustotal results 1.69% 
2023-06-22Su.jsjs 9cee0a9e3972ac5c904464c3634f475690ad6f3ac96ee3d5c0fa0a3c0b770f14Virustotal results 5.08% 
2023-06-22Tizcu.jsjs 8ac7ed7f3d464194125a12340acd23a90efe18c0d6cb5ff2e64cc510f691ab90Virustotal results 1.69% 
2023-06-22Dkwt.jsjs 637259dd0906c9861fed744db21ec76da8a4cdf9ed91859f725b34fa4fe55591Virustotal results 3.45% 
2023-06-22Bgem.jsjs bca69e8698bb6b9e41ebfd88a553e93efd51e157d51e44c12cc6a7f859922d47Virustotal results 5.36% 
2023-06-22Gx.jsjs a9e65ee00179a693dae9285a5922a2a6a631ac9a81e109d571df25ff24c0e7ccVirustotal results 5.56% 
2023-06-22Nf.jsjs f4583999d73cb94d372f56eeb7111fd403986130c1f2edf638fc232829e04459Virustotal results 1.69% 
2023-06-22Dezf.jsjs 959d71125c431593ac12b3f11ca66af592071ef087e29bca04a59a13156bd59cVirustotal results 1.69% 
2023-06-22Fv.jsjs 5d94e342839f0772679ec1cb4ddae5a75ea6701ded8406294b259b236ba3adecVirustotal results 3.39% 
2023-06-22Off.jsjs c85d212ca808f19bc03a5814e740e3159def8bc488a8daca0295d8c85c100f94n/a 
2023-06-22Uppqp.jsjs f78d06641c6be48ef1156fe3c4da5d6c7178326b5ba46363bf445b6762a35794Virustotal results 6.78% 
2023-06-22Tnuo.jsjs 9147dec08731642b11ec788df48c2e51f1d8eb12d740b41879f6144e061b4625Virustotal results 5.08% 
2023-06-22Jqg.jsjs 4dde5d08a5345684faf0010fdfbba18c722a3028c083a56b5bbc6f0d28401f78Virustotal results 16.95% 
2023-06-22Ncr.jsjs 6f63c7f7edda365db2e452b9dba20f4ebda7ac83d50c528ff65d0491087cd2dbVirustotal results 3.39%