URLhaus Database

You are currently viewing the URLhaus database entry for https://gasak69.com/os/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2633588
URL: https://gasak69.com/os/?1
URL Status:Offline
Host: gasak69.com
Date added:2023-05-16 11:25:29 UTC
Last online:2023-05-18 22:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-17 21:25:10 UTC to abuse{at}cloudflare[dot]com)
Takedown time:2 days, 10 hours, 40 minutes Poor (down since 2023-05-18 22:07:03 UTC)
Tags:BB28 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-18Vgnxdm.jsjs 6016f12710a18923ed029eb1dc62882b5f1a032a7424e0169dd8c2228598f59dVirustotal results 27.12% 
2023-05-18Izpwuhpb.jsjs d3c6e06204212c1aeeef29809460056535cba3beca8cf163b7c8719671ef0c9fVirustotal results 22.03% 
2023-05-18Czntp.jsjs 51ffefa8a10b6da720a80cec4735fe173669e7c974946e46c8dda908e824d8a4Virustotal results 22.03%
2023-05-18Ppoprsr.jsjs d76b1300fd995ec8def343df0450c11a58a217803fee3749db4afacebc64182eVirustotal results 22.03% 
2023-05-18Qcrj.jsjs 1cea0c4b1af9170b9ed2927f3b100d202bebd1b8e69ba1527336aaa6b2c0bffcn/a
2023-05-18Zunooti.jsjs a64cebdd853596ce95beeb112b9dfab6eab26ff09b77eaad1c909cb1b6cff48an/a Quakbot
2023-05-18Zjxsani.jsjs 8319c01bce9a24d28eeb4e926938d179f37c880ab2aaa26290056ff5089ceae2Virustotal results 27.12% Quakbot
2023-05-18Gwqtbinn.jsjs 3833419abb83fe2369255a23b3fa983e65047ca005c0dee0d772efbdbf8ee75fn/a Quakbot
2023-05-18Epyerxg.jsjs 170ceff8d051e5addeb6beb1128383fe814b7b40738b54c0f99409de5ccba2c6Virustotal results 25.42% 
2023-05-18Eypwq.jsjs 69d10bf1c18cc7df540de106a1056c5af79f8b60f1ffae762d06532cc84375d8n/a Quakbot
2023-05-18Galb.jsjs e6473de8eb0f10d14a04ffbd68eec65c5efe6755a2bca86fa2fce1a0f317a9c3n/a Quakbot
2023-05-18Ueufrc.jsjs a18a3c0e37cfc92a00d139f4aebd7996690f4428dea318f028570bf9037d8aban/a 
2023-05-18Tzrpo.jsjs 02caaf8685c239c1d2e1a5e8440a7c9b39c4b12921ba12cfce6caf0214ea2df6Virustotal results 15.25% Quakbot
2023-05-17Fnoysdz.jsjs f51bc0d7dd86e4e6db698538eca1063e4e4936ee3f57c669e347f143576749d9Virustotal results 30.51% Quakbot
2023-05-17Uajhcxad.jsjs 73b1e3fe01be0b7a83d8ac43d397530b110d3ece6e3ff93d424b36d0b7336aa8Virustotal results 26.67% Quakbot
2023-05-17Zpdqa.jsjs a7a7249194b741b44bab1befd74e783ba57af2f211b597961892dcbe975544c2Virustotal results 30.51% Quakbot
2023-05-17Dfonsllt.jsjs 2c91bde6a534aee746616dd47460479f4813dd91fa6b608246e4cbd908aedf83n/a Quakbot
2023-05-17Wqttj.jsjs 7001d12f0aff0c6712230ed17f0fa70b2b0f2f7f58554663f28e687b643386efVirustotal results 24.14% Quakbot
2023-05-17Hagnfzzk.jsjs 64dbefc6ce8b2caf9b441a36490ebed30319eed28e49ddf95d43659494906f10n/a Quakbot
2023-05-17Rnpmzri.jsjs 9d4e35c32d73270df3c5bf64cd693e2933e614075af8f15eeacb3fcd142f8ceeVirustotal results 28.81% Quakbot
2023-05-17Uthspl.jsjs fbf34d1f59eea01ae0ec44fb3d7e93d4a06dad0b411065a5d6292f3ebe7081acn/a Quakbot
2023-05-17Zrcdyjul.jsjs b4b9340a057e2f27555df973e95af7d75b991cadbf943c5f48de2cbda1e3edcdn/a Quakbot
2023-05-17Ojje.jsjs 1f38fc948ffff32abe116b565e2cd767b28c46ce234e6c221068b27dd4652f7fn/a Quakbot
2023-05-17Jorl.jsjs fa343b072ba0eabec88f88c9daa3df5ea9e9eeae9482ab03912a5878f98bb1bcn/a Quakbot
2023-05-17Dgiq.jsjs 4e1be7b6f02722eaf6b5c016eb732386326bc69f8bd29ad02a665c8b2d767041n/a Quakbot
2023-05-17Bxzqwu.jsjs c171a52a641d8bb1cfed1590d823e6ab725929a1fc569653b8fa1b44a861309bn/a Quakbot
2023-05-17Shrashno.jsjs 430c72e9d70d760103e65a2a3159e6e75716e498eb43cbe3a6fa2880f87f75c5n/a Quakbot
2023-05-16Opyab.jsjs dc84ad486a7ebd44576619e3247f6d2f050771317944a6c681e7903372c3df96n/a Quakbot
2023-05-16Bximy.jsjs 950ef5be18f891cc71c28c539b7d922c94dffb01926ad11d0dbcc44de07c95d7n/a 
2023-05-16Izncrenh.jsjs 582828696ab438d2f085fdda7b8e4ccd957661a78b9d85228a53a0076ecf2c51n/a Quakbot
2023-05-16Rfhw.jsjs e3b9fbdf8c4a4b45ccb30d5fad5cd9bda74412394869e496d2f06ae630a65a24n/a Quakbot
2023-05-16Lxymulmv.jsjs c01d8c523a4e6d3ec0fee196cb2533409baeec6b284a0000d297fad017a0ee06n/a Quakbot
2023-05-16Kwyasoq.jsjs 3d25df008300e7eaf8f61743a6dd1e1f72387fb3a5215549851d5907a0949b44n/a Quakbot
2023-05-16Hhth.jsjs 43de23792cc027155452d684e244afdf788b5af0e1b32f5cc73e956fb8aceaa0n/a 
2023-05-16Pnjqnzk.jsjs c21cb5d83f613d37f371801d891741ccb67d01302c72f37de49b71ad287a6159n/a Quakbot
2023-05-16Fzjeckar.jsjs e243e4b7c6a9a0c55c1cf1eda207c253c239f2fd08065c6c61df8d8789dc5d95n/a Quakbot