URLhaus Database

You are currently viewing the URLhaus database entry for https://udghoshdaily.com/itvo/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2633731
URL: https://udghoshdaily.com/itvo/?1
URL Status:Offline
Host: udghoshdaily.com
Date added:2023-05-16 11:26:06 UTC
Last online:2023-05-18 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-16 11:29:08 UTC to abuse{at}hostgator[dot]com)
Takedown time:2 days, 9 hours, 46 minutes Poor (down since 2023-05-18 21:16:01 UTC)
Tags:BB28 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-18Ywlc.jsjs 1cea0c4b1af9170b9ed2927f3b100d202bebd1b8e69ba1527336aaa6b2c0bffcVirustotal results 13.33%
2023-05-18Ljknhjal.jsjs 1a2e818afb29521c8658d2a0643158af97370d69c32c0bd85cb900bd3e85b0eeVirustotal results 22.03% 
2023-05-18Vsxquwyb.jsjs c74cf0cb7927a8438a84c9cedbdbab3e4815550813336043f39674a67b6a021aVirustotal results 28.07% 
2023-05-18Fmimsmo.jsjs 42493182f269318d70873422d8159bfca90531a259ec1aeec6bba55f2b748ce4n/a 
2023-05-18Edcqcm.jsjs a7559adb58fb8ca343a880d3a323c7307621cf7e95fee410922b0ee0d24d8bc7Virustotal results 31.03% Quakbot
2023-05-18Iqroxz.jsjs 076515d52f5219c37701ac4b38e72e4f6a809dffce463343615c3fb079c9ec89Virustotal results 26.67% Quakbot
2023-05-18Loxu.jsjs 9f16a38888bf7c130dfc15dff72eda59b2621e7c1048f157a4cf51e9bcb2e280Virustotal results 32.20% Quakbot
2023-05-18Rqibil.jsjs e5c5a60b175cb60af996c9c06d7956eb02b365460e950ac7662bb4ea5c87d9c0n/a Quakbot
2023-05-18Eryl.jsjs 64dbefc6ce8b2caf9b441a36490ebed30319eed28e49ddf95d43659494906f10n/a Quakbot
2023-05-18Vjooy.jsjs f744aaa7347e22e22b0047605341e57c431a9dbcdd028ca5713a221c51107aa1n/a Quakbot
2023-05-18Pygimzip.jsjs d2087d9119d773d88b9ed612b2300de62865eab8a6dfbab02955c20d0bd11582n/a Quakbot
2023-05-18Sblwerg.jsjs db756aef0c52e6f31a7cb628eefe67b0cc7d656427dd2d71c87ecce62165b562Virustotal results 22.03% Quakbot
2023-05-18Hvegot.jsjs 9162c26ac66cb673664c91b6a22e788a008db7c2bd2b4a9b7788a47fe85f33eeVirustotal results 28.57% Quakbot
2023-05-17Ojpqyofn.jsjs 8eec4b2ca78d1d8b62a875c3a6b16a0a9053aeaf65f1e6cca22000629ab71432Virustotal results 27.12% Quakbot
2023-05-17Mtxmq.jsjs d112f357338680817dc9cfe7ce64d7ab03de74008f16c43f1ef94b38bd159af8n/a Quakbot
2023-05-17Qbfhd.jsjs 584680760762a6814ff84e38f5de401a9ba356c834f6302e03634c8883180fd4Virustotal results 24.14% 
2023-05-17Alcgj.jsjs 245d8b4566da1f99cc5bba4998955421b38764ee0718c94a6fe8019674ccfcd1Virustotal results 27.12% Quakbot
2023-05-17Fach.jsjs 08a4ded15b1b100031a7d4d5816c32a45f5bf29a74bb677f99634db21d3cd646Virustotal results 11.86% 
2023-05-17Fejgc.jsjs 3b367e99561731587beb5622ae151a88c15c2153723768a743a9b7f635cf1303Virustotal results 30.51% Quakbot
2023-05-17Bnwlk.jsjs b9c9809b0db8c089d16e6f9223ed8a4e5c74ac2b18b9f60ffdfb52ab0e82ab9an/a 
2023-05-17Mmrz.jsjs 935f59c565eb9bd23a5ace3644db79dc0601e0a9d56a665e5afc55c8ed4b59c5n/a Quakbot
2023-05-17Mxhpsfx.jsjs 745a875d598a20e5320249de1c22cfebcd3a8d4fdfdf77795bc127730e467b7an/a Quakbot
2023-05-17Kbtla.jsjs c2e54508f1aff9c478811d5341ec901c5c2a0c44b51ef7d442b30466261d5b3bn/a Quakbot
2023-05-17Uwuug.jsjs e5e8c423394a59e943b3c672dc2642a443b20c3d7d4b16fdbe65847c2917117bn/a Quakbot
2023-05-17Kyzlxdn.jsjs 2a40a985f626eca9bd9eeb5bbfcc6733f695b1265e8578f112de8750c45d9505n/a Quakbot
2023-05-17Hccr.jsjs 8c4acd4cb0a182914aeeffa60b59044d7fc946a0b6aa554b885ec8ba1cc7d6d0n/a Quakbot
2023-05-17Qhlme.jsjs 39996865161a1afb5495a4bac9c2e190b47d06b9079913075e58c049f83295d7n/a Quakbot
2023-05-17Enoc.jsjs eac312d7c89e2007dba70720864bcd74d2b2ab5d46e4961b3ab31652e8d9d9d9n/a Quakbot
2023-05-16Iben.jsjs 7d98543405a0b9e58b952268c1f8fc3d8a0ecd0d019ee874624108b085fd969an/a Quakbot
2023-05-16Fsmqaug.jsjs c0d0d1d134e96278440601a6fc5fbce7ec5eb75f4987a09153ab27c25fc6d757n/a Quakbot
2023-05-16Ajetb.jsjs 54322fdc9a2fb92579da8b6be5f5160345abbbaedf7b63764afe71a5bbfee97dn/a Quakbot
2023-05-16Bknygu.jsjs c3bdf920ac6b2ed3b815806fef63c2b6243ce0283b62e9a6c6c42da5f48a8847n/a Quakbot
2023-05-16Gkspv.jsjs 401d3a5d11e621ce682bcb3472ff37a7f2d847bca17b7db5f0ef6881d88aaeb7n/a Quakbot
2023-05-16Ciotps.jsjs 1c2411e4cccc15b26a45ad15dda466d9389d021b374f00afd3d92a9a6fd6a6f1n/a Quakbot
2023-05-16Qsckgaky.jsjs 7759bc3bf59217ee5861de089f019e851b252b93f1b4c8efa7e93665d0e23237n/a Quakbot