URLhaus Database

You are currently viewing the URLhaus database entry for https://isac.net.in/anmo/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2633997
URL: https://isac.net.in/anmo/?1
URL Status:Offline
Host: isac.net.in
Date added:2023-05-16 13:14:50 UTC
Last online:2023-05-18 22:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?):mail Yes (Ticket DCU100116530 created on 2023-05-16 13:15:22 UTC)
Takedown time:2 days, 9 hours, 38 minutes Poor (down since 2023-05-18 22:53:22 UTC)
Tags:BB28 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-18Fsbfew.jsjs 1a2e818afb29521c8658d2a0643158af97370d69c32c0bd85cb900bd3e85b0eeVirustotal results 22.03% 
2023-05-18Natsbjp.jsjs 51ffefa8a10b6da720a80cec4735fe173669e7c974946e46c8dda908e824d8a4Virustotal results 22.03%
2023-05-18Cxccjgc.jsjs 1cea0c4b1af9170b9ed2927f3b100d202bebd1b8e69ba1527336aaa6b2c0bffcVirustotal results 13.56%
2023-05-18Pxour.jsjs 06357d6dca8ba662f1e3b162bb7c7934dc192d476792d3ef008ab8f6bfd48d0en/a 
2023-05-18Mugdto.jsjs 946d5e2c822a804863dd95b51f9cf5738b216cacbfd4e739d28af66952e4821cn/a Quakbot
2023-05-18Fzph.jsjs 7fdeda1296a36cffb37a03dca1e25125b27333e53ead2391247d2790dffd0e7aVirustotal results 32.20% Quakbot
2023-05-18Amaiv.jsjs 24cf08aad92d93dfabb65546276958ba1bad72825e0af1a4fe5d2a2f0d2a451fn/a Quakbot
2023-05-18Hjxxiob.jsjs 4763068a93fa58650c7a913bb253b59fb9f5f7da3d041d28302d9d1b4d301008Virustotal results 27.12% Quakbot
2023-05-18Gkqokwj.jsjs 33f33ebc5ae78bdbf3a9afc064c64f1121c0214e1305d5567232cbc8779ab8c3n/a Quakbot
2023-05-18Lzbsuyxj.jsjs 4df2da0e1a60159c49866a7e3899e305f80766c9bae6b676bf18955d4e2ee8ecVirustotal results 15.52% Quakbot
2023-05-18Drsh.jsjs 3a16d7765c95e4f1c085fb18814d67ba3d65e6bf93e38d064ef74c1f9d15ac83n/a Quakbot
2023-05-18Dvhaffa.jsjs 447b96999dd079d4e5bbdefc464fbae41be6c1d6f55fa0d6dc0cf9db6f3490b2Virustotal results 23.73% Quakbot
2023-05-17Okubuce.jsjs 1bff54d9504766a1b23df7d6c83ffbf3db9ac0d0cc9ded739c34a0f1114f5717Virustotal results 27.12% Quakbot
2023-05-17Xwhna.jsjs f21a9095152b5a7124af37bde4000f76717ad002ec5e40bb2b86dc71839dabeaVirustotal results 30.51% Quakbot
2023-05-17Akjrthfo.jsjs 112fb3f4fda57d58405f842081f111d4f583c40ece7f17fd6805832360da7072Virustotal results 28.07% Quakbot
2023-05-17Wlwpv.jsjs a0220d487566d1243b11c30ea5d37349418d84e8f6eb6013e0792aa4b11236c6n/a Quakbot
2023-05-17Wfqdkt.jsjs 72495f905e654ea365738e7e3ac93200be27ad81df4327197c8d1a1427209a25n/a Quakbot
2023-05-17Skekeyt.jsjs 9da26f54018ef7b69e7ca172d1ef9d1de643acee030e0b25c66a5f27867c8833n/a Quakbot
2023-05-17Vdtfd.jsjs bcf9e05bff1a4453dbe187a142eddb6857e41bbaf3869f7ddc598b6ddca0d276n/a 
2023-05-17Gadekzs.jsjs ff8e2c9863798d9a0459db6ab2b807acc255c0e8f301061f45be86a40e412a26n/a Quakbot
2023-05-17Mcejlefy.jsjs 54193bb82ee9ae14554ab84172043aaf56ac7812fe40e4fec596cb7ae1b27b02n/a Quakbot
2023-05-17Okqbna.jsjs 21fb0ea58fe5661932a1c8ed9fb98a3d5481dd06a9e429ce9a05d7e28db98b7en/a 
2023-05-17Jaqbae.jsjs efe303ae1809ec28adae8784afa65352ab9e50bb7ab5f560ccc790886bbb33bdn/a Quakbot
2023-05-16Swdv.jsjs 1d0bae1da67d8bc407f987b3432831f06cc6ce2f0192b1d39b2fb1ea65a036cdn/a Quakbot
2023-05-16Puyqqjcz.jsjs 41deb6c8bb66731fa4ca2bc61d9eb64277707fe6895db10c95bf413f2ddfaf92n/a Quakbot
2023-05-16Ddcjud.jsjs 3aa391f80dbc69608f5374318e676dc94fc32451330e0b489792a2cf8cb1a502n/a Quakbot
2023-05-16Vzskt.jsjs df30da658716d6cf9bf6bcde36f76a72fe971a5eabcc42cf5ddb5b6de456c354n/a Quakbot
2023-05-16Berhfaj.jsjs 8250827d2d44bdd7fe377341ce4bb5e480a9844a4678cc0fd7792c5d8c0c702bn/a Quakbot
2023-05-16Ovjelaqy.jsjs f4a280ed0d90c586b891ea91c9a2c7a5bf57ba5e1c5a80ac48bdd5de2f3944dfn/a Quakbot
2023-05-16Tscv.jsjs 6aee1b19c5c2f6fb412bdc3af40c22037a1cfd6b7c66569dba9dc1a32f0f3983n/a Quakbot
2023-05-16Xeyxym.jsjs 9cf65739c3c4831233b0811245e0dbdfd12af65ddb0d94b12a3ae42252c67af5n/a Quakbot