URLhaus Database

You are currently viewing the URLhaus database entry for https://talentaspects.com/rnss/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2633724
URL: https://talentaspects.com/rnss/?1
URL Status:Offline
Host: talentaspects.com
Date added:2023-05-16 11:26:06 UTC
Last online:2023-05-18 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-16 11:26:37 UTC to abuse{at}cloudflare[dot]com)
Takedown time:2 days, 10 hours, 1 minutes Poor (down since 2023-05-18 21:27:53 UTC)
Tags:BB28 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-18Uzccrya.jsjs 1cea0c4b1af9170b9ed2927f3b100d202bebd1b8e69ba1527336aaa6b2c0bffcVirustotal results 13.33%
2023-05-18Yquhgd.jsjs c74cf0cb7927a8438a84c9cedbdbab3e4815550813336043f39674a67b6a021aVirustotal results 28.07% 
2023-05-18Kswzfy.jsjs d76b1300fd995ec8def343df0450c11a58a217803fee3749db4afacebc64182eVirustotal results 22.03% 
2023-05-18Cxlbtw.jsjs b5df1404d92586fb163f06534a371ec92eddbfe01118e767c72ab198ae45e81en/a 
2023-05-18Ydngti.jsjs f7bc14c8c137444d5d046f1c1304ca9eb96509ce61adeffaa967dc07f21c17d7n/a Quakbot
2023-05-18Pebuoa.jsjs 35d190768891092e8f8616f00d3025020bc0f09ebb09adf865eae0b23547a459Virustotal results 30.51% Quakbot
2023-05-18Nfchw.jsjs 16c00ed1c4eea2fca24d5ac64106a0261dfc36eb8ff64471f024d0f95efd140an/a Quakbot
2023-05-18Ramjapio.jsjs cd8a39cd43a8cbb2e0c04b201b7df230226fe2dd696ab5c20c9ecbb16cc723f3Virustotal results 25.42% Quakbot
2023-05-18Fhsts.jsjs b9c9809b0db8c089d16e6f9223ed8a4e5c74ac2b18b9f60ffdfb52ab0e82ab9aVirustotal results 32.69% 
2023-05-18Ujtyn.jsjs b80551abdf45ba18befb113fb4c02517cb49680bde72f8ae92ef07e61857ec89Virustotal results 22.03% 
2023-05-18Fcxxsyo.jsjs 36032c143a4485946e82aa6aab03ac420e5589d6c74224bd71b3b6bc62b6dfecVirustotal results 27.12% 
2023-05-18Rhzv.jsjs 35c35c65a46137ab025bfda60be1ea1c10a10b9cae6e337415b9c7b2ebd3df3en/a Quakbot
2023-05-18Rzjmy.jsjs 6e98b0ad9b6fe81e7dde4a5e76cddfdc25b19695ca702e4faf95f45dfc5a65e4n/a 
2023-05-17Rpzbspy.jsjs a22b66a10925ee0bc864c2b920e30792c9c23d171ffe1d926a43d0403fa0f1c5n/a Quakbot
2023-05-17Kjxe.jsjs d772a62298f946a1a964db9c0e6aa23473d6590e013fb3056502ad74b75a046fn/a Quakbot
2023-05-17Hxkpial.jsjs 9f58336c0b0f6cde0a91dbee871cad45a315c5413863ef2b29affc9c949ee72dVirustotal results 32.20% Quakbot
2023-05-17Hvjwhk.jsjs a5f0035e2f6ab21d643775a304ea994d963bc0ad712a5ae1a9ebb1a5298f7adbn/a 
2023-05-17Axzymdfp.jsjs 8b5a063138d39c424fbf7ce7022dc972afa3c2df792b3a030272c1c77490dc96n/a Quakbot
2023-05-17Ovitz.jsjs 34bf72fbc4370971ff89c72391aca2a8a5b37aac3f1cbb8f2ab5480a3df6ae0fn/a Quakbot
2023-05-17Ankzl.jsjs c2c29ea19d16a1a70e365c2161d223994c0610958fe527bfcb605ed47c4a4d44n/a Quakbot
2023-05-17Wxic.jsjs 1e51b573b4d7bbb1e1e51fe5bde0c87cef65407bdedd6330796f9ff44254a394n/a Quakbot
2023-05-17Nrowa.jsjs ba13ddb7ec54e4bc3a634c125067dc080ece5db996d50ef4ba9cb48beec4e7aen/a Quakbot
2023-05-17Rynu.jsjs 06a0e59aa76522ca7ba7f0ede19da5ecab66d8b0acc47a7ca453c0edd08458f0n/a Quakbot
2023-05-17Ykuiu.jsjs 8f465c373fc5a06a0d839fdff5e10d0c81fe51f29de8cfb7921dcdafa594d50dn/a Quakbot
2023-05-17Qwonk.jsjs 8ae145db52fba72fa1dfaaf2515f0f89e091e652d86c9e85a46daa5e1b5d00afn/a Quakbot
2023-05-17Nwwhc.jsjs adc02fc26eb36afcd5d2c2a36b90f22fbaef1d523d4ab24c6ba198d22d3f9d85n/a Quakbot
2023-05-16Uzwsf.jsjs 9a1c357184669d1758ab4998b73fa4ff105b514e84b550496015c002f1f193c9n/a Quakbot
2023-05-16Lovlhpjw.jsjs 15e6aee6ef0fb28484e4317cbebc82d642290e78e29ce8114eef06149359e06an/a Quakbot
2023-05-16Etjuah.jsjs 7d08028d65d4b07b3883077a4ce72e3111aeb0c115e9dced8968db273791985dn/a Quakbot
2023-05-16Jzhvl.jsjs ce1c0b601c0928c1575b9671f7df281f57a20344fe458866b2273a142564f247n/a Quakbot
2023-05-16Zmtskuq.jsjs 857f9bbf4905e7c6aa99ecdebeab878f946294180599cedc834cf2644c370946n/a Quakbot
2023-05-16Zetuxoq.jsjs 4667986290ede0ee073e86b13a696c75cf449b4206a606830e7ea936eab7a31an/a Quakbot
2023-05-16Ngbmu.jsjs d5fa1d0df414844d6dca76a0c070f9ff0a6a83690bc8a53690947b0ff4713ce3n/a Quakbot
2023-05-16Jpjql.jsjs f6231ddfeeb778789995d0846d87e1367706287c2806cb323715911411994f38n/a Quakbot
2023-05-16Acmrhi.jsjs 04828f31ad74ededf2dcc5cacdf8c5c818982ce929e9eced7a29db806475c9ddn/a Quakbot