URLhaus Database

You are currently viewing the URLhaus database entry for https://jagowd88.com/im/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2634543
URL: https://jagowd88.com/im/?1
URL Status:Offline
Host: jagowd88.com
Date added:2023-05-16 19:11:11 UTC
Last online:2023-05-17 20:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-16 19:12:08 UTC to abuse{at}cloudflare[dot]com)
Takedown time:2 days, 3 hours, 32 minutes Poor (down since 2023-05-18 22:44:15 UTC)
Tags:BB28 geofenced js Qakbot link qbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-18Sfwc.jsjs 1a2e818afb29521c8658d2a0643158af97370d69c32c0bd85cb900bd3e85b0eeVirustotal results 22.03% 
2023-05-18Pllyy.jsjs d76b1300fd995ec8def343df0450c11a58a217803fee3749db4afacebc64182eVirustotal results 22.03% 
2023-05-18Bkxxapc.jsjs c74cf0cb7927a8438a84c9cedbdbab3e4815550813336043f39674a67b6a021aVirustotal results 28.07% 
2023-05-18Otxz.jsjs 34b840f36f254f36514d603b5e90d29bd07a0fb3fb4b714c9486c79b9fdb7c04n/a 
2023-05-18Xjlee.jsjs e1f86c377a5fb822c6704735ae1fc4f80bddbea822ee597fe99762e575e05ba2Virustotal results 25.42% Quakbot
2023-05-18Xekb.jsjs a0c936769d05f511e808dc9d178d44c1b60779ae7ad0e7424e520b2e75ce335cn/a Quakbot
2023-05-18Zrfe.jsjs b3c3f0880fe1ebd5b9f5146a8164da0834ee29a37e5a1cd8e534efe15c786daen/a Quakbot
2023-05-18Cjolwz.jsjs 6880ce894904976fa0bcca1c18a48cf2a862737e355802fd26301563e6a09454Virustotal results 27.12% Quakbot
2023-05-18Uscf.jsjs 6da5adb44a26381ff077fb8a45c8d20a4888393b3fd5733d6fc8ac4519809c94Virustotal results 25.00% Quakbot
2023-05-18Zdupy.jsjs 3f14bbee3c8ce3a67b5dfc257b5cff8e6f131ed1b17c77a50e705cb44af1c616Virustotal results 22.03% Quakbot
2023-05-18Fpnaugzd.jsjs 1187259a79f3d0fa43b025751bffb4506d955db2a1072f8e61e3707c5250edadn/a 
2023-05-18Yqghlud.jsjs 3b413252866f0b4261ccf3b4972d86690f29353242c85733133be84940ad6fa3n/a 
2023-05-17Maocun.jsjs 42d74e9be0d442e0bbebc6134157922913abc72510b235bfa67b53092757a2f4Virustotal results 30.51% Quakbot
2023-05-17Znoluqy.jsjs 7e14e82b93e7a51daf3ab028772a41e20e60a31cc1a90985cf3598206b08805cVirustotal results 25.45% 
2023-05-17Zrzwlf.jsjs 7e29b555dd10291e663446073640ea5519a3e38a3655264511bf14299c86dccbVirustotal results 24.14% Quakbot
2023-05-17Cdaidlht.jsjs fb5908d59b642acad4cc8e4b40c8003da06b37e422221c358758d820f2c0a53fVirustotal results 23.73% 
2023-05-17Umvm.jsjs f95ae26c9bf7ecb6970afb88bfa12c71eafd8b35160d2c1658e57d36ea915477Virustotal results 29.31% Quakbot
2023-05-17Kfzvw.jsjs e8cadb2bfe88e91c6f0a88fbfa3c83c7cce944155ffde2920ad925df8ba77f75n/a 
2023-05-17Vgpoiuvy.jsjs fef7c15b6ad604bd018cde2f5440a4e04fbfb2866102378bd2ee983988efbd79n/a Quakbot
2023-05-17Rmvssrp.jsjs c56ed4215e9436c50dc85b905ac0c0f3cb717131668b4ecf088cf06f828e0d68n/a Quakbot
2023-05-17Lvlvoe.jsjs 915e7e92cc8b4f26e6758d50b64b04078596405b1059d388a9d6aa17bd453955n/a Quakbot
2023-05-17Sppaonsb.jsjs ee082dd242d01f5bfb81f7040e79953b8a39caefdaacb3d7a37add1786d035ben/a Quakbot
2023-05-17Ixpuwqb.jsjs 2eb12e9d74e06bcbdf07526c3ff6330c5dc0f0ecaf844e1caf9ded29b5c876f9n/a Quakbot
2023-05-17Czgesuii.jsjs c238c73351e8753ef9eb3b781299971b98fad4eb32e572043f7c9fd28daec5ban/a Quakbot
2023-05-16Vdkb.jsjs 29b5b580503483bd5fce368afb93aae62da29b512daec3b65bbd40133c46ac5an/a Quakbot
2023-05-16Rlwlkdz.jsjs 22db2d22830fb997be359babbe99ac7933ca0dbdc94193004e41ea8057e140fan/a Quakbot
2023-05-16Rkorylr.jsjs e0c34246752a6329e7aabf500a7c26c38f800f94537ae9e4991c278e6af06c14n/a Quakbot
2023-05-16Bbcsr.jsjs de4b1d7d4b8c8eeacbd8640be29cf05f24616dcc0a17ea006d3c038fc0012a34n/a Quakbot