URLhaus Database

You are currently viewing the URLhaus database entry for https://shagodambeacademy.com/pus/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2634175
URL: https://shagodambeacademy.com/pus/?1
URL Status:Offline
Host: shagodambeacademy.com
Date added:2023-05-16 13:42:13 UTC
Last online:2023-05-18 22:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-16 13:43:24 UTC to abuse{at}hostgator[dot]com)
Takedown time:2 days, 8 hours, 23 minutes Poor (down since 2023-05-18 22:06:27 UTC)
Tags:BB28 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-18Oqvaxc.jsjs bbcdb87a842c5157acea98f0cedd358f764e2613b6a635e4f9f5946de8c07780Virustotal results 13.56% 
2023-05-18Hrrslu.jsjs d76b1300fd995ec8def343df0450c11a58a217803fee3749db4afacebc64182eVirustotal results 22.03% 
2023-05-18Eicml.jsjs d3c6e06204212c1aeeef29809460056535cba3beca8cf163b7c8719671ef0c9fVirustotal results 22.03% 
2023-05-18Urook.jsjs 6016f12710a18923ed029eb1dc62882b5f1a032a7424e0169dd8c2228598f59dVirustotal results 28.81% 
2023-05-18Xvqzime.jsjs 0013b6eb65005d875790752758d524a6ea87f5b3c18dc8e1714c0c917e870ab4n/a 
2023-05-18Rpal.jsjs 3657123d41437d5c2c4b48b03e14153b367398907ae10d30021c974941a5b64cVirustotal results 32.20% Quakbot
2023-05-18Lzbnfoma.jsjs 7a4ab56c0029ea06eceabbc4e8b9f005b37b97d1ea376ed3db95729269780e17n/a Quakbot
2023-05-18Zorszzh.jsjs fa4e13a9e0315137813bc3fcecc4a2ea7b145377cfb5cdd4d412a5b2256be037Virustotal results 27.12% Quakbot
2023-05-18Dyou.jsjs 11ef57c233cd2baa14c4cfb9579839d381fbdec85d01923f9679f5ed21935f52n/a Quakbot
2023-05-18Awzl.jsjs 93492712919e0adee85ebe16363f99eb8fdbfe7f055f8645bf21322ce803cc13n/a Quakbot
2023-05-18Wdzqe.jsjs 50181b4f3b73fded444a5822e9aae57537b05f693c1a1887d0f8b54f0f597de3Virustotal results 24.14% Quakbot
2023-05-18Izub.jsjs f44e30ffb57afcf688c00896ca7384786ee3ede05210094b66c6d9d6c83675e9Virustotal results 18.52% Quakbot
2023-05-18Pjphoj.jsjs 743cf712f367f3c69cc6bfc3a3734a66d19bef6e76aabcc6a8b97c534a3b5557Virustotal results 30.51% Quakbot
2023-05-18Tgoyryk.jsjs c6acb46e483e7792474a50acd3a7ad70626f538da57050c7153b3061376b4f02n/a Quakbot
2023-05-17Gkdgjsc.jsjs ac2f114a6bac8df9444849169360217c9656b866153cfc42dc444cbc6b7b6e35Virustotal results 15.25% Quakbot
2023-05-17Qtybkr.jsjs 0b8b2630460c4baa473d458c5dfe165acc6e1cd41d684697d22599bce6fcf623n/a Quakbot
2023-05-17Bapr.jsjs 29d88d7a73d988b2b2c5ddc76ac150742366a2a8c379758bf47f13c2fcf01346Virustotal results 27.12% Quakbot
2023-05-17Yfxubasz.jsjs a5e07fd19c36096b65281a4da6788fdb724e4cc4be6fae21497a969c1255a622n/a Quakbot
2023-05-17Mamdiexs.jsjs 73abfbef5c169e5239c78d4c04f3d18f7f72490c2ca0cbbb33d92cac9675dd16Virustotal results 27.12%Quakbot
2023-05-17Vgmej.jsjs 7217ae2adc382459d109d0ca1135074318d85578de92f3c231dd520402b6d647Virustotal results 27.12% Quakbot
2023-05-17Kzklf.jsjs 939b394768f864f5af2b1e196cb9982563bcbf1157f23f9a873030ba262566c3n/a Quakbot
2023-05-17Rtfqcard.jsjs 09f5fb6ee4bc11aa6850813c1a55baed45b52577f90340ec7b74b216d1934b0dn/a Quakbot
2023-05-17Ffcepbrf.jsjs 16eb6619e2db364fdd53db62cd8b8e56cfce4683fc85296150e51460c53ec06dn/a Quakbot
2023-05-17Jmcpxuv.jsjs 5e235d57b8fd858834d4e65d3c66fad9e0acb563e8251ad5bf7518cc448611fen/a 
2023-05-17Irgolsys.jsjs 3887b65f19c3d4f6baf8e25e4268b0df840900015067841bb49cf47f21acd722n/a Quakbot
2023-05-17Hcsj.jsjs 04d534a0393a6792edd3b66af77032fdb6e2d1a770eda3ca5b3db8cc9f1e15d0n/a Quakbot
2023-05-17Hpiiph.jsjs 59e88190fa7417e63647daec548b6c1f458885ed9a3b64257e6067b0f273e9c6n/a 
2023-05-17Mkxjs.jsjs 3faa1242d471d655826ca6fa0a89cb1ddf9f8c2c9ce67ed2df0e6bd6e97502f3n/a Quakbot
2023-05-16Dghun.jsjs 67575e8506471a51f376f404a62e46737ccf48ff67a182b3e4c91c32757142ban/a Quakbot
2023-05-16Ikufzdft.jsjs 7c7d2111ad8da56b04711847cbfcae752715d7cd11df9bc49c7af5ec1002524fn/a 
2023-05-16Rcau.jsjs 48d96d566fc7b49e78297091533e49fa8165fde4aa2ee54272fc3e0e83ad978bn/a Quakbot
2023-05-16Jcag.jsjs 3199ff22cb2fbffeaa725ef73b7a170d7155242f9cb10c9f13ebd100ffc950e8n/a 
2023-05-16Gbyxtf.jsjs 7cbd90b069fd00d5fe86a0ee30962f5d025ca98cbd4f867f5d915a59c72ffa8fn/a Quakbot
2023-05-16Rlrhx.jsjs 50f1df9cdd243e30aa0a0879ba9df9b53398f4e6a7e8ed39c9b92e0ccc6e06dfn/a Quakbot
2023-05-16Uyfkbsyh.jsjs c1b810870a6e245f3045e5df8e55d9161390e06facf43633cea3fa3884b7d1f6n/a Quakbot