URLhaus Database

You are currently viewing the URLhaus database entry for https://studemate.com/uutt/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2634624
URL: https://studemate.com/uutt/?1
URL Status:Offline
Host: studemate.com
Date added:2023-05-16 19:14:12 UTC
Last online:2023-05-18 22:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-16 19:15:20 UTC to abuse{at}hostgator[dot]com)
Takedown time:2 days, 3 hours, 41 minutes Poor (down since 2023-05-18 22:56:34 UTC)
Tags:BB28 geofenced js Qakbot link qbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-18Qgrouptb.jsjs 51ffefa8a10b6da720a80cec4735fe173669e7c974946e46c8dda908e824d8a4Virustotal results 22.03%
2023-05-18Aujn.jsjs 1cea0c4b1af9170b9ed2927f3b100d202bebd1b8e69ba1527336aaa6b2c0bffcVirustotal results 13.56%
2023-05-18Rhfv.jsjs acffec733f9e3bf8d275d89635b55024309a49cd993a7b97872ac940033d4374n/a 
2023-05-18Dqow.jsjs 5b2d175b18348c26ef8ad20f51fdeb4aa6ab4076aa57cc05caa3cc8772385077Virustotal results 25.86% 
2023-05-18Wjjlqu.jsjs a2fee1f921c59d61590ed86bdd9e19a12b68d9722d228d0e5bef678bd31d461bVirustotal results 30.36% Quakbot
2023-05-18Rkft.jsjs 17c3055ce856c6ee8bbfdfa36ea81dedf3d495e3aa418145fea73358747d4cd0Virustotal results 25.86% 
2023-05-18Pyuzldpb.jsjs c82de2729716408ddf8dadbc7c96d591774e13040bd782c4b2f6f56ee2b039d5Virustotal results 30.51% Quakbot
2023-05-18Rudjb.jsjs fc35a5a51f420de2456b7dcb8c59dfcfc4a5a995abb8201286aa81cd0c391508n/a Quakbot
2023-05-18Lbjcfsl.jsjs cb2b2c5c8e0ff33bbc082310f5ad09305fb6f7b7e6d660efa2c02393341d6fd3n/a 
2023-05-18Jerppgu.jsjs d188bb106c47296a6f358dc69226ce3c9b48abe1399e7cf924fc4afa813b1505Virustotal results 30.00% 
2023-05-18Jhpdwz.jsjs 8fd76523c7e024c9c533983f3ff94e884cdaeaef4e3cf5f935a5bdcfc242678fVirustotal results 26.67% Quakbot
2023-05-18Dgzscfym.jsjs 8f330d0bd33cae1207a38406d6db47ef79a72bd8d18681a4a0f3a3a33ec3e4f3n/a 
2023-05-17Seek.jsjs 72c9727d22512473f4aa27d93e0c15ae33a95784d9804b057275d0d7d8b0a361Virustotal results 8.62% Quakbot
2023-05-17Hswh.jsjs 8116e7914df0a4fae9adad12da668660206754557fac016131c53fcd305d537fVirustotal results 32.69% Quakbot
2023-05-17Qjdnhs.jsjs 4a224a82cefc07c64c7c22363f17593d43b9ab03d82d39624000798d29cd331en/a 
2023-05-17Vrfgtamx.jsjs 94482ada3a27f9e8cf8f7b554597969eef03e0593d496ba95205fdf735ed010an/a Quakbot
2023-05-17Cvcflgzk.jsjs 3b521273a1f49f0fb7c2f4ea15df405e5c77af2e36c653ca0e352ada89db0c6bVirustotal results 27.12% 
2023-05-17Iqhvpjw.jsjs d307232640d2944029109ca441be49052d7c8d24590a54096c256c48e4d7da1an/a Quakbot
2023-05-17Mfkabcq.jsjs d2338cd0376171b31bef79e7bc05e3954d3c61c6f23184804a1a1110dafa3d36n/a 
2023-05-17Dvydutea.jsjs 60f1e6475feb4788051ef47e5915d71377ab736adcb20ece6a6b64e3ca14a7d7n/a Quakbot
2023-05-17Wnywki.jsjs 62f8c42c24e11ea036befd22ad4f76c05286f621be79bcd2817d36c5bf0517ban/a Quakbot
2023-05-17Ukuurrz.jsjs a1e3be51fafdf55c187980ddb65dcef38d8d867c4f95aadb664a4c30d62a6af2n/a Quakbot
2023-05-17Yoqtyi.jsjs 2f23ac78138ea9a92f0a8c57b3e16368ba2ceb92bb3edf3528acbdcc103396a8n/a Quakbot
2023-05-17Pyemt.jsjs 36ed5c374041c849b8f7e01552c5a9ca8801c3000932d25b345a23c4c6242140n/a Quakbot
2023-05-17Jbkfcnf.jsjs 5db3e223f8121ca23708a8912a2e1e00ca0881e1f14a9bae11dae26661014eb9n/a Quakbot
2023-05-16Qqkjeck.jsjs 31fb26197ed6978fa89fa70bf1827f188de0c75f74dca9bda6f3472031deb519n/a Quakbot
2023-05-16Muxqidej.jsjs 97463d6e99b4b41605bdf27fd3b6163fb4b0df2b394e64c967e5cc3315f2f216n/a Quakbot
2023-05-16Rpobjf.jsjs cbfc3972ed2138b6cab35a9d9fa0cf053591735b70cb57ea1b135a5e2414f188n/a Quakbot
2023-05-16Lywkr.jsjs 82c469b42ecae995bc4f58221c134ad6c46e7faa4cf69452e69c3bd1cf6a7ad9n/a Quakbot