URLhaus Database

You are currently viewing the URLhaus database entry for https://tagi22.com/aeeu/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2632716
URL: https://tagi22.com/aeeu/?1
URL Status:Offline
Host: tagi22.com
Date added:2023-05-15 15:14:56 UTC
Last online:2023-05-17 22:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-15 15:18:18 UTC to abuse{at}namecheaphosting[dot]com)
Takedown time:2 days, 6 hours, 58 minutes Poor (down since 2023-05-17 22:16:53 UTC)
Tags:BB28 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-17Ifnmb.jsjs 4f9c04f40501ff342f07c66108d89ffff23f8fa85ac574a2829cd65a757aeacfn/a Quakbot
2023-05-17Aashoy.jsjs f39cee789a4050e31f3f61e2dae48c0b5328d480424a439ba3c06fdf7d12ba43Virustotal results 29.31% 
2023-05-17Vzfkxfou.jsjs f44e30ffb57afcf688c00896ca7384786ee3ede05210094b66c6d9d6c83675e9Virustotal results 18.52% Quakbot
2023-05-17Ftjwhnll.jsjs 4422126c61949a9848ddc759de968eb699c5364973a271dc9aac631121591d13Virustotal results 27.12% Quakbot
2023-05-17Kkgrrgeh.jsjs ee8f7825f5b87fbdb90f5bc8eff0cfadc358c64cfca2dcb37acfd398d5b2f201n/a Quakbot
2023-05-17Wocs.jsjs 51d4353b689e493619fdc807af49401cbf78a5db38238f2a4a533c2593b18ac3n/a Quakbot
2023-05-17Hbiy.jsjs 38caaad439a4cc6863b905420296f56597651a3ce72ffa1d1be91614481e8375n/a 
2023-05-17Goqsqbiz.jsjs 540dfaf9b8943559ce9b4d05d8f717464274c98ae4a534a34ebb460fc1146b45n/a Quakbot
2023-05-17Pzbqycmc.jsjs 38d1e4ee602d1bc87ead12e60493fba1a3d76842e0a5425b1b9a04e53d0e38dbn/a Quakbot
2023-05-17Hqogr.jsjs e55678616a877a874b9b3a5ce6860d4b80feb97e1cac0be78339fa49f8054847n/a Quakbot
2023-05-17Igbc.jsjs aedf485c9ddbe90b4e18ae71002c1585fbce3b1245c950436b2a120e82a8c55bn/a 
2023-05-17Ocfy.jsjs 2b2cc65bd8571faf8e9125484acfb38340adadf25a8a08c006efa03bd8646e69n/a Quakbot
2023-05-17Sfbvzv.jsjs 36d567f650a483546f952ed898ccbf5e7c16b70264c41667a1375cc04ab5c3a1n/a 
2023-05-17Zjhuls.jsjs 8df83f61899c13f1904afea2a8f0db346aca1bb530dbccdf2b4bf38410b22a6an/a Quakbot
2023-05-16Qrxgkfpo.jsjs 11161b4815e59c4e872e617b0223e68587889389e6b52b70d5cb18ba39cac249n/a Quakbot
2023-05-16Ywblfqg.jsjs 61b10eaf744cdf566d78dd9597aa15e96c7c75816219e458aa1d149f6fc02030n/a Quakbot
2023-05-16Zykacbc.jsjs a8074efb325b61dd19db66befa39c43f3d96126fbcb357b45f89aaf0cebd1b87n/a Quakbot
2023-05-16Hakfn.jsjs f83ed6a0de9b5b213ca298246498c59560867a1ff87d478285422e6e35251a5an/a Quakbot
2023-05-16Ndparub.jsjs 154639f42604577ed723db37797a2c2453fe1ae16d007b45622a1c5e7ad7807en/a Quakbot
2023-05-16Qbwi.jsjs 5ddf823416f0b97d00a55fd7b0d016bf5efcc49aafba72816de4d30c463eb4d2n/a Quakbot
2023-05-16Pbyl.jsjs 7ee490c85223e250e2463c89046273190013550b74e503d8a6d1bd16cf57dc94n/a 
2023-05-16Vjcltgf.jsjs e66db6a064a7c291e2883cf139522d9b4690abe28f6bd12bd4b04e7fbe8b46a2n/a Quakbot
2023-05-16Artjq.jsjs 55d259341eb84a2fd474fe69f17acda92ed9b76019c963755a526358fdc09a04n/a Quakbot
2023-05-16Ialp.jsjs 7eb1812f113ee6ca746bda07ea4b668a82037b9c74514aa8de86dd03e25bb9e8n/a Quakbot
2023-05-16Zwwsoa.jsjs ac52286236998ca02d488ba1282c85191476f17bdd140276a4f6c97ca1fdbb70n/a Quakbot
2023-05-16Jafgr.jsjs 9cf5d885a75422af730b078addfc7ecc87af6eaf74a7852f5680db75ffeac4cdn/a Quakbot
2023-05-16Pbjrv.jsjs 9924e0d04e8b345cb150b1a2052047b36ae25f79fbbd365ed4ba6cdaa4bb837en/a Quakbot
2023-05-16Bwmzl.jsjs 38d1712b8725a158e9afc4f6707fd36c2b38d2ec831cb27c48d30eec3bf33163n/a 
2023-05-15Tlqycqd.jsjs 2a76d2c5426b57c4bc1f682b2ef5e5dea30ae46e58fe3ff2eee80c4b9be85f4dn/a Quakbot
2023-05-15Ulpmj.jsjs ec319218e3d345a58870d6ba726ec71a3c9eabeb35d5c48d4ba32b477f1b1ab2n/a Quakbot
2023-05-15Qkabfpsh.jsjs 80affe422fca040fb91e896be58e1b9e524f4814d1ca591651d9745b4ffaf060n/a Quakbot
2023-05-15Dbrm.jsjs df3ad3b59d3afd138737db5665e0159e665c15752d5cf2c0aae3e6f157ab8c50n/a 
2023-05-15Ckcn.jsjs 0c12d5bacc77d5bc8b136a0b4a8087e6bfa053cb91f7d22be559a2647f68d4aen/a Quakbot