URLhaus Database

You are currently viewing the URLhaus database entry for https://jokersbusiness.com/su/prmtaeeo which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:2369027
URL: https://jokersbusiness.com/su/prmtaeeo
URL Status:Offline
Host: jokersbusiness.com
Date added:2022-10-13 15:44:35 UTC
Last online:2022-11-29 09:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-10-20 14:11:11 UTC to abuse{at}publicdomainregistry[dot]com)
Takedown time:1 month, 9 days, 19 hours, 1 minutes Bad (down since 2022-11-29 09:12:44 UTC)
Tags:BB01 BNO87 iso Qakbot link qbot link Quakbot link TR zip

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-11-19P4.zipzip 57dfb3463d3cb7a411aa954d821a2ae3780018268e3c3daa8b5e418b3c00022aVirustotal results 0.00% 
2022-11-13k3.zipzip 6e7dcd1b317fc4543616cb0e3c37489919758b981011cd4b0a1f13b549110b49Virustotal results 4.69% 
2022-11-10k1.zipzip f9d081dfce59f1a1707d653a9227fd1169534c15f5912f47dd1e17454759595dVirustotal results 4.92% 
2022-11-08D10.zipzip 96ceb6b75a7a8027068356ef3da84390e42300ec3e033309fa79aca9fad5b554Virustotal results 2.04% 
2022-10-22Contract776.zipzip 3e8239b781ee3fce03918c229321af47fe867ae3e5dcfe81078e7ecf2c146b89n/a 
2022-10-20Contr2010221710.zipzip b006b215f94c1d02631fcaf8c210cd4b0f6c63bc378e6de9d1f86b98eafa9961n/a