URLhaus Database

You are currently viewing the URLhaus database entry for https://govinacademy.com/iat/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2628662
URL: https://govinacademy.com/iat/
URL Status:Offline
Host: govinacademy.com
Date added:2023-05-10 15:37:14 UTC
Last online:2023-05-12 23:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?):mail Yes (Ticket DCU100113339 created on 2023-05-10 15:38:12 UTC)
Takedown time:2 days, 7 hours, 37 minutes Poor (down since 2023-05-12 23:15:55 UTC)
Tags:BB27 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-12Ltphw.jsjs 7c2949b0f901aec2086c8a7df3aa16b584a2f03a3f83bb1b4d4cdfbe115b249fn/a Quakbot
2023-05-12Qezsjh.jsjs 2c4f0d27dffe3352bb022d65b566c8f1798685282294db97697f45447a38e27cn/a Quakbot
2023-05-12Fpkkovjf.jsjs f56761eb14fdd75814b2cf422340a88f8cf757a622675a4e2fb50d9006c1a4a7n/a Quakbot
2023-05-12Llkz.jsjs 7bdf5330f19865a6787b70faa47cb69414cb30868f2342a9ac1316f7c170afa8n/a Quakbot
2023-05-12Jdfn.jsjs a3371a6bb767397740d2076091cc73efc8907af677d77180ad5b9de39b2e0f32n/a Quakbot
2023-05-12Lbdkdzld.jsjs 9e22722c0efedb605b0328ed7b222e1df2226f3df1b86bebfe751dbc9779e37fn/a Quakbot
2023-05-12Tiezf.jsjs e0f5e4f170eaa1b6d26a39a82d32909bb1febe4de634a2147e40706f222cc949n/a Quakbot
2023-05-12Ociq.jsjs 832acc787740fa36f8ed5d3667bf31d001c286f92b8464de6e463f220085b353n/a Quakbot
2023-05-12Fzkth.jsjs 54b9678083a0d14bd5f95cdbac6c3998c74afdabfcc7d8065409abad85e66f46n/a Quakbot
2023-05-12Dsuaxq.jsjs ca2a0dff0057a5ce85d9f9213b0a3df60c01de74a2972a3997f01936f49ac9f9n/a Quakbot
2023-05-12Kcvpek.jsjs 0a2508f757428dc5584cd643bb086286ee21f4d2bd8030bef14dee502f26c983n/a Quakbot
2023-05-12Fokw.jsjs 62341d389e6485320e2d641f84809e80c958ef9937e52f88d3d557f64f7c1144n/a Quakbot
2023-05-12Hhchjez.jsjs 9bb6cacae5816092fadf34b002fc8135881a50162656aecde541c98209b93703n/a Quakbot
2023-05-12Khzhz.jsjs 1f6cc68fc351e95c883c4e778a62b4812a8cdc14d41100f332c6ae5fde1982d2n/a Quakbot
2023-05-11Kswgl.jsjs b5539962be25ae9b5ff6151f3e0c8e8818b008dd8de0ae3f69e9af2a25afb465n/a Quakbot
2023-05-11Aytctdtq.jsjs 45062906a308a0337f647905bfe09b21d71636ad0d1e09f606f56d18b709a23cn/a Quakbot
2023-05-11Wqje.jsjs 3f427ee13d34f3d76fde43cd501f67c66a082ec4f6ab37f9be2f938d7a28e9ccn/a Quakbot
2023-05-11Clzyk.jsjs 12e3f1dffbb6349f7adf4570c4e7ae36ea586915edf3121b8c9ad9e793087befn/a 
2023-05-11Zmft.jsjs 6aea729f0133d555242a0d02b4d13b4774cad8953169944ab142f9434f18f25fn/a Quakbot
2023-05-11Xptiqew.jsjs 41928fa019fd63a368272d3b44c88b128f05f8c5681ebcc4ab1b933c6262ac30n/a Quakbot
2023-05-11Quboa.jsjs 8f027fa47150b98d181d2eb0dcc521606c366598f521d104aef66cba77ad9471n/a Quakbot
2023-05-11Evifyqx.jsjs d90f2cda5dfa64d82996062289991731bd0c945c9b30d5393864903c61174386n/a Quakbot
2023-05-11Xzzcoh.jsjs dcd53509a05aac32ebc6a4942c8f7be31d289d88e91d8d178a98ffe362c26e71n/a 
2023-05-11Eourskam.jsjs fe6316e38b83143ea6b90d7bd35a2835364652b40e62fa0f3b668e395bef3bden/a Quakbot
2023-05-11Dgofvm.jsjs a9dd8b503123f493118e4607e6ed9eb918254aa105dbf9d2d3e517f031e9abaen/a Quakbot
2023-05-11Vapyvzz.jsjs 41580059981eef813ac510270798114d60e3326f138c172e06dd3ab6550dac3bn/a Quakbot
2023-05-11Hpwkzgvf.jsjs cd2ff1ff8da4321e75138051e9abccc791c44638e3b39fbbcdd58faaf52a392bn/a Quakbot
2023-05-11Lintmd.jsjs cc7cb9528a1798d1ddb506cede677dffb62a320eb3856beffcbc5e781797322cn/a 
2023-05-11Viso.jsjs aeaee0a81fb346dfcfa22c101dbef69a2a3a2aaf4dcfb27159c1c198bb7cafben/a Quakbot
2023-05-10Gpkls.jsjs 2d421f4d3d9b55ee0d7ba828676d5245759318a605afd00405d7eb61aa857e9dn/a Quakbot
2023-05-10Yhkbum.jsjs add945100e333ffbc3f110a1783ddd5998c2ae06f9db1546c7da4d7f229e40c5n/a Quakbot
2023-05-10Tkamza.jsjs 35d9772b449e48475a2db56a761f424ff3d90b2d9df8651bd17615043b48c15dn/a Quakbot
2023-05-10Scqlvz.jsjs 4db48ff87fcca56868fd74732aa458a37e0f78e6fb6c898be86a12d25e12d555n/a Quakbot
2023-05-10Izxgri.jsjs 336f5837b46fb18c4001b478848b1bc0f839b55935e42f29f26782ff323b5710n/a