URLhaus Database

You are currently viewing the URLhaus database entry for https://staugustinehairsalon.com/tsse/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2634323
URL: https://staugustinehairsalon.com/tsse/?1
URL Status:Offline
Host: staugustinehairsalon.com
Date added:2023-05-16 13:42:38 UTC
Last online:2023-05-18 22:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-16 13:46:16 UTC to abuse{at}hostgator[dot]com)
Takedown time:2 days, 8 hours, 57 minutes Poor (down since 2023-05-18 22:44:05 UTC)
Tags:BB28 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-18Gbwzni.jsjs 1cea0c4b1af9170b9ed2927f3b100d202bebd1b8e69ba1527336aaa6b2c0bffcVirustotal results 13.33%
2023-05-18Eosznbru.jsjs bbcdb87a842c5157acea98f0cedd358f764e2613b6a635e4f9f5946de8c07780Virustotal results 13.56% 
2023-05-18Kppy.jsjs d7522ab4f64ae0950e24bb00df9157136bbcb900ace0c77bd1a46f06149bf37aVirustotal results 24.56% 
2023-05-18Ixpyjozs.jsjs e2bbc65a1708a15750ebe9904c352d16d0b6a10f65665e0c8170db970a3e1708n/a 
2023-05-18Rmofz.jsjs b11ddd3e32db780631dee2546f8eb8498cf1976976b4f9b6229279881aff3e12n/a Quakbot
2023-05-18Hyxeu.jsjs fed0fa880fd9812bea44ff765356fb74bdc116ba4a93d3e22ad855b9e789e299Virustotal results 31.03% Quakbot
2023-05-18Perzr.jsjs 356f8c2ebf3f6ab97ed37e1195e6ccc8d5441e37c038c0c09c7f481b5aa205den/a Quakbot
2023-05-18Gojzbn.jsjs f14437be247480b6af38f3ccdd4ba46e6e55eb7b3d706b8df711f63558b8703fn/a 
2023-05-18Eivz.jsjs 399c7eece18438ba4f325cfc3863d0603d1237732a310fa2124a136ff2a335afn/a Quakbot
2023-05-18Rftajdiq.jsjs 819c3375d47e95f26e1466039e2ff5a096837d0761bed7564c2366b094c8895bn/a 
2023-05-18Osmhw.jsjs 8506e3c5de62fa6173656a51f4f41a0986ccb9fa55bea9cfcb878c6df2bd88c7n/a Quakbot
2023-05-18Kmxqn.jsjs bf6a2013ee6092e2d291a06d2f69e617b318a1e842a0d559b91fa1b8f8ea1a1dVirustotal results 25.42% Quakbot
2023-05-17Nlwhxbm.jsjs 2c6c3f6ffb898b9a29cc0a5ec84ccecf30800496946b378d5558f81798278c3aVirustotal results 32.20% Quakbot
2023-05-17Rcuwl.jsjs 35d190768891092e8f8616f00d3025020bc0f09ebb09adf865eae0b23547a459Virustotal results 30.51% Quakbot
2023-05-17Ibzui.jsjs 2ef6e700c619c1ace05075497393d8ac827d836ec052de9b6a71a0cdcd343141Virustotal results 24.14% Quakbot
2023-05-17Sajww.jsjs 6c9b5539e5f1f1b4e1d609c95278f2b4bd4386f4efc315a332648f1467d2b94an/a Quakbot
2023-05-17Qowh.jsjs b246dc6bd29b7f7bf62fa6cfdb10a17053bed892c03b79d0328d384cf96f799an/a 
2023-05-17Xjchrsxk.jsjs 77a97bbae92dc7a7845ded72bd28a849a3c41c2912628816d93ff4b9a27ed45fn/a Quakbot
2023-05-17Iizxtst.jsjs f0b4da1cc08b1bc28a0dcba33a80bf75f5d6f8ac289dade618d93357e29944acn/a Quakbot
2023-05-17Oweo.jsjs ad560a4a20c4e0b46205625b0c88951518d524873dc5998559adbdf061c196f0n/a Quakbot
2023-05-17Xrei.jsjs 3415058b2e37ffa250ef24a36af1b1f81cfc974e3740be0527fb6a87db2facb8n/a Quakbot
2023-05-17Dhkbc.jsjs ab75c76ec1406d4696cd9fe7b4a6d5861517476323a26c3b2b2edf01970e7385n/a 
2023-05-17Avzxais.jsjs e2bb1d9368960397766ea505bc793a8b480a692e928fced2e22a592f7f3bbab0n/a Quakbot
2023-05-17Rqzujr.jsjs bd08056f5812d939b4671be63fb58cd2c673c80881ac38935c949495fbee21e8n/a Quakbot
2023-05-17Auxmaq.jsjs 6f37c40fd311d6805512a508fa9fa8ca5aaf7a791decf61c68ad490e2f6e596fn/a Quakbot
2023-05-17Rgjdyxts.jsjs 0bdedbd741f6b8a78515df52e42737d6c475d4c72995731081297acb9fab47een/a Quakbot
2023-05-16Qldzfgt.jsjs 47803b533670e18238958ac89f96d9c84303a729c98868243c855f05be2f38a1n/a Quakbot
2023-05-16Zprc.jsjs 86f7d0b4fdd7bc199428b33087e2637cf2f67962726a1afae532cb8c931e95d1n/a 
2023-05-16Topiulf.jsjs 188650e6100ea8aec1eb506c6e23567c277b1fdaf0a81599edcd733cdb4a561an/a Quakbot
2023-05-16Lmbq.jsjs bfeb3c8a5f7d0e31abe95252c76681ccd468ccabcb130e6ab30fe65a74158745n/a Quakbot
2023-05-16Ezhw.jsjs a6632c32a6a1604f031682a57ddf1c0b7c262de8ef94f8e355fc6ac61486d072n/a Quakbot
2023-05-16Afkvd.jsjs d6e5c77f98125f63fdd91694bd18d9275e174c43bc9b0d1770af323389e46fd3n/a Quakbot
2023-05-16Plyxpn.jsjs 408f135a6392a0fdec4e2a09ba05d6f2d04c977469feba91a0f9aa7326d6db13n/a Quakbot