URLhaus Database

You are currently viewing the URLhaus database entry for https://js-hurling.com/icbcontent/timetableschedule.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2434936
URL: https://js-hurling.com/icbcontent/timetableschedule.exe
URL Status:Offline
Host: js-hurling.com
Date added:2022-11-27 17:40:13 UTC
Last online:2022-11-28 18:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2022-11-27 17:41:07 UTC to abuse{at}hostgator[dot]com)
Takedown time:1 day, 0 hours, 52 minutes Poor (down since 2022-11-28 18:33:15 UTC)
Tags:exe QuasarRAT link rat

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-11-28n/aexe 04ebf82354a507d9df2c5405db3e7f8c959310754ce4bd34755c32fbe7c08ec3n/aQuasarRAT
2022-11-27n/aexe 7adb4c8f360b9eb480b7a576a1450e12db198da2f7cf0cf71c0ddf9410db538bVirustotal results 37.14%QuasarRAT
2022-11-27n/aexe 136eb98aff2b23e84a6c07c1bf90ac429183ffb04e108560448410335699342cVirustotal results 36.11%QuasarRAT