URLhaus Database

You are currently viewing the URLhaus database entry for https://datastatresearch.org/st/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2634320
URL: https://datastatresearch.org/st/?1
URL Status:Offline
Host: datastatresearch.org
Date added:2023-05-16 13:42:37 UTC
Last online:2023-05-18 22:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-16 13:43:34 UTC to abuse{at}namecheaphosting[dot]com)
Takedown time:2 days, 9 hours, 3 minutes Poor (down since 2023-05-18 22:46:52 UTC)
Tags:BB28 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-18Geyklmtv.jsjs bbcdb87a842c5157acea98f0cedd358f764e2613b6a635e4f9f5946de8c07780Virustotal results 13.56% 
2023-05-18Fzwiczy.jsjs c74cf0cb7927a8438a84c9cedbdbab3e4815550813336043f39674a67b6a021aVirustotal results 28.07% 
2023-05-18Bhpqykc.jsjs 51ffefa8a10b6da720a80cec4735fe173669e7c974946e46c8dda908e824d8a4Virustotal results 22.03%
2023-05-18Jtyccjhc.jsjs 3791005bb7c150da45103290488187fb0481b87d48c158038849416c4b99ce41n/a 
2023-05-18Mxhi.jsjs fceef22558799ba34afb830f44f63ff2d0386112e3506a24549d220e7ab2f4d1Virustotal results 15.52% Quakbot
2023-05-18Msucwg.jsjs 6debfe0d45ae5dd2dc9622ccd7c9480a487bacf847087e1fc8c10ca87a65e7a2Virustotal results 27.59% Quakbot
2023-05-18Cfvo.jsjs cb296a47f490cbc70541030b87a0b2d9eb6c1253da849e9e37e7912f2fff796dVirustotal results 35.59% 
2023-05-18Sxtshms.jsjs b77866fad79584d4eeba2fb19ac488731b788c0c7c1ca30001f91741db44e06en/a Quakbot
2023-05-18Ehvk.jsjs 561eeabd5f230ff8d733b3aa53f761558b65f54ba6d32241bf0350b4e136b808n/a 
2023-05-18Vwjftx.jsjs fecdae98fff4b89aadb8c35ded8061bdaa126fc12f3fd482cbcecd53246c1c0an/a Quakbot
2023-05-17Bvzdj.jsjs ec038ef76ec39d36971e8a801105bd271b7e7c72a23435f57313e54e0faaac27Virustotal results 17.31% Quakbot
2023-05-17Bindgxc.jsjs 5cc7756639a24d5a8e14f7884507a76c1eb16843689035a0792202694705accan/a Quakbot
2023-05-17Ptbzf.jsjs f0071ab8efac63f43a57e5ce10cebfd8f2d18f0b8df63002a484d4acdc24b4dfn/a Quakbot
2023-05-17Bwiygt.jsjs 1187259a79f3d0fa43b025751bffb4506d955db2a1072f8e61e3707c5250edadn/a 
2023-05-17Cjfyjoa.jsjs 0473836cfc335949eae38f3049dd3932d818dc6cbbe8c178f72c74370912d088Virustotal results 28.81% Quakbot
2023-05-17Zmjzox.jsjs 71122ff461bd77e00f131eb7f52d813ed7a1fdb3262bba2adb83ee04085152f9n/a 
2023-05-17Hyoruf.jsjs 8a1f226245e5f15e87409d617437e6d102c8267d28d1bdb3f198a89620b090edn/a Quakbot
2023-05-17Vxlaanf.jsjs 4a2d1d02742e1dbb3fdee1d9ff6862a5a45e7920404df24a06740007d4b653d5n/a Quakbot
2023-05-17Qfbx.jsjs d0a2820869aa6e82a828d44c740dbcf45db0c41fb7ba11f087afd4ba1a64f8c8n/a Quakbot
2023-05-17Frpj.jsjs 4182729e74cc22fd0c07f83f7fa4facf719be2f0d4623cbe24c6165fd0954f96n/a Quakbot
2023-05-17Ypdrmk.jsjs 3de84860a7a30e8c96320f4f1bab46a21cfef6cec35e2cdbb64fa9450bd9b6b6n/a Quakbot
2023-05-17Rnkru.jsjs da4a166e9031311a2821d0513359752661f997c87e2b7323c17fad9cd82a93c6n/a Quakbot
2023-05-17Bpejms.jsjs 978311f9eb2a5ba41ccf2970eed2a4edc20a5b40e111aec00b16a23b53d76a52n/a Quakbot
2023-05-17Vfmlt.jsjs 1fb841d9b58106e294720dc884764a999cd030a50cfc209713a01bd421089064n/a Quakbot
2023-05-17Ohxohtgd.jsjs 6e60a1caf9e8839475f957f50a0b5f4905118abd1ba12e3602c1f57e03a6457bn/a Quakbot
2023-05-16Mbqysy.jsjs 08cd90c3d109923266e69984ad66f877be8cf7146be99371dc295cf9e727565en/a Quakbot
2023-05-16Bcgmiwe.jsjs 2e023196d07ec94b7d8b326b185dc16c31c832bc8380d2fe527496f2ea5067cbn/a Quakbot
2023-05-16Zvztyx.jsjs e82b9c0daf8951d1cf676695006d5a863019d19dcaaa24af15cb87a94fd00ca4n/a Quakbot
2023-05-16Lmmr.jsjs 9e17d8b855d4c99399a1daed20bf83391dae5e17854c70a57add1d3b51ac810cn/a Quakbot
2023-05-16Bjmemsu.jsjs 345e4766810924eedf9de0f24b7ee3499df234af6f036f33c6b9721b6f094fc5n/a Quakbot
2023-05-16Lgmewlej.jsjs e1001d90eddfd6729bf7c39bf50d6719f853548839920a85aeaf615972675a40n/a 
2023-05-16Ljifbnav.jsjs 24d8a2adb3390190565c73a8e8a9cb1c332db3a932187755a5f2ac8707506005n/a Quakbot