URLhaus Database

You are currently viewing the URLhaus database entry for https://techitacs.com/lp/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2633933
URL: https://techitacs.com/lp/?1
URL Status:Offline
Host: techitacs.com
Date added:2023-05-16 13:14:35 UTC
Last online:2023-05-18 22:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-16 13:16:41 UTC to ocloud{at}stablepoint[dot]com)
Takedown time:2 days, 9 hours, 32 minutes Poor (down since 2023-05-18 22:49:06 UTC)
Tags:BB28 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-18Kzof.jsjs 76443e093ed6d6e3961cb5f9bbd546bab2d05f6bc2536c5744dc86f7a769bea8Virustotal results 30.51% 
2023-05-18Nlhnrpjh.jsjs 1cea0c4b1af9170b9ed2927f3b100d202bebd1b8e69ba1527336aaa6b2c0bffcVirustotal results 13.33%
2023-05-18Hwdwu.jsjs bbcdb87a842c5157acea98f0cedd358f764e2613b6a635e4f9f5946de8c07780Virustotal results 13.56% 
2023-05-18Cipkolfo.jsjs 84f88cb5d237f92983784e59b2e2dccf236a5a0f3181edad8ad8c9b6a3f8c9aen/a 
2023-05-18Bwranrx.jsjs 8deae0dc00f63d06da4b8491f06c909682b192af1c7ae4467703241c34a509ebn/a Quakbot
2023-05-18Asat.jsjs 86f81887bb6051cb0f8b8b3d948a6e4bbff1538e986a71386da56590e614f26aVirustotal results 27.59% Quakbot
2023-05-18Qpxl.jsjs b80551abdf45ba18befb113fb4c02517cb49680bde72f8ae92ef07e61857ec89Virustotal results 22.03% 
2023-05-18Sajlhb.jsjs 62497d1af3f04d7da40a34f39d4cb3b28e855a47c2507372bfa759e66adfa3f6Virustotal results 11.86% Quakbot
2023-05-18Jafofhg.jsjs 3ff223428a9d2b7b897fd823e4add6ae4cc119c86e47eb073bdbf5a578a17226Virustotal results 20.69% Quakbot
2023-05-18Chprkao.jsjs 0eb7615075853fea63154c3bbd2be5b4bb724f0717a67082633fe348e45b49ebn/a Quakbot
2023-05-18Alro.jsjs ef1c6b9ad4a7758ef25a4557fa7bf0a20ab6dd57c36474a91ef75620edd0974dVirustotal results 25.42% Quakbot
2023-05-18Iwpbo.jsjs 2a893ca454c8da14c3b8682420a27dee70132a6fc3dc8975c4ff49a12a7c64d6Virustotal results 27.12% 
2023-05-18Siyyw.jsjs a9c6050bc229b2d8d2b411d575194857f0f0b908185bcc15cd09d5c25f330867n/a Quakbot
2023-05-17Htyjme.jsjs 9079446bd4c7bd26e207e6897766f15bb65c2e6bd4802d253ec23072dff72e4fVirustotal results 27.12% 
2023-05-17Kashkkf.jsjs f7b76f7e79498990be74945924e01e7f53e3b42e5be51e93dd0c4c7a5ecb47d3Virustotal results 27.12% Quakbot
2023-05-17Essozob.jsjs 1187259a79f3d0fa43b025751bffb4506d955db2a1072f8e61e3707c5250edadn/a 
2023-05-17Jrmetyi.jsjs c28a0689fa744ad9aa6b9113d992a9fc9d303cf30f2b622975fb5e9a82ac02e6Virustotal results 27.12% Quakbot
2023-05-17Cqdxdi.jsjs 2ae86821ba6902bdc957f61f92f752f51c37b2620aa00688fc6affc9b9b6c9c3n/a Quakbot
2023-05-17Gujgb.jsjs ad9d5d545cd208607067a384f752e68873813a4863a25840901805e6778a5f43n/a 
2023-05-17Gyep.jsjs b4bbe3eb6f77c745b1c296728e15c69c6b766df2aa51d6d745ce4e5fee415e06n/a 
2023-05-17Pzaqz.jsjs 9d605284d7fc5a29b23abee427ce1efd35f128d456b6f2c16f9e8ffb2e89b056n/a Quakbot
2023-05-17Kexlv.jsjs 6d956b2334481b01dc80038885f61465ac8754a83df6c0c8fe38dfed6b4e98c8n/a Quakbot
2023-05-17Ypfo.jsjs 092ee462b6cd692e961e82f2de4d955bc916d9ea9188563d30d99e1a12d3a273n/a Quakbot
2023-05-17Exnnydx.jsjs 5b3956e93e9528f8bf49136d84f92ab682ffeaf95e7ac548778fea9cb8222b3cn/a 
2023-05-17Lskp.jsjs 807b5ca442b0c79aae921896cf3a9145e926bd2c4f308a0affc53c434b4d4194n/a Quakbot
2023-05-17Zexx.jsjs d69d66717e483710224073fecb701e4d1f22b5b01ab1ceb4fad7a92f616f5b34n/a Quakbot
2023-05-17Ycin.jsjs 381e3c5c55038aed10592e90e58a149eb77f2d99200eef0a11602530ddedea8en/a Quakbot
2023-05-17Dhat.jsjs b991dbf3b33f5e2b96bcfa7b0490e44e5a6434c5effc2fa77a2edf239665d5c4n/a Quakbot
2023-05-16Orpqho.jsjs aa8a55c7b3945cc3676cb54db0859660d95124d4fdf31f997f3bdfa287a9c729n/a Quakbot
2023-05-16Kmgltw.jsjs 85e01f527247c0d929ac687c6f6e7f29d3222aeb33d72c7f64854fa0cf8c6daen/a 
2023-05-16Xjgkoklh.jsjs d0d8a3d1d5eb3f16e94fb60606eade177a713401392b6e179e6cab8d9f1982ddn/a Quakbot
2023-05-16Grjrl.jsjs 8d73dba72e8d27b4b7c2ea58486cc75044ff0b9646140ce48b7d6f5cd243d039n/a Quakbot
2023-05-16Mbkuovwy.jsjs 490b2800feeb157964ad89537f41bf2271753e4c6ca60b0e10ae575146260388n/a Quakbot
2023-05-16Meupex.jsjs 2994fc5ad9b35a910ee2dc893a5dbbe15eb8646c166509b9217f6b8f4fc6a1f1n/a Quakbot