URLhaus Database

You are currently viewing the URLhaus database entry for https://v2technoconsulting.com/ptt/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2634641
URL: https://v2technoconsulting.com/ptt/?1
URL Status:Offline
Host: v2technoconsulting.com
Date added:2023-05-16 19:14:21 UTC
Last online:2023-05-18 22:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-16 19:15:40 UTC to abuse{at}bluehost[dot]com)
Takedown time:2 days, 3 hours, 34 minutes Poor (down since 2023-05-18 22:49:53 UTC)
Tags:BB28 geofenced js Qakbot link qbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-18Dlgid.jsjs bbcdb87a842c5157acea98f0cedd358f764e2613b6a635e4f9f5946de8c07780Virustotal results 13.56% 
2023-05-18Nuyem.jsjs d76b1300fd995ec8def343df0450c11a58a217803fee3749db4afacebc64182eVirustotal results 22.03% 
2023-05-18Gehhre.jsjs 51ffefa8a10b6da720a80cec4735fe173669e7c974946e46c8dda908e824d8a4Virustotal results 22.03%
2023-05-18Czyqa.jsjs 1cea0c4b1af9170b9ed2927f3b100d202bebd1b8e69ba1527336aaa6b2c0bffcVirustotal results 13.56%
2023-05-18Jhxqgvap.jsjs bdf6b3c77ce6b3ee6105669f23654ea6ae181e320196070b21a7133735a3cfa3n/a 
2023-05-18Pgrr.jsjs 7e29b555dd10291e663446073640ea5519a3e38a3655264511bf14299c86dccbVirustotal results 25.42% Quakbot
2023-05-18Tlpvllnx.jsjs 0b3324b249fb9e33cb3970056ed6166b271c1f678d65d34cdff6079bbd95f2c5n/a Quakbot
2023-05-18Undktjo.jsjs 3f14bbee3c8ce3a67b5dfc257b5cff8e6f131ed1b17c77a50e705cb44af1c616Virustotal results 22.03% Quakbot
2023-05-18Qihsfice.jsjs 42c81982e5f4b734f8ff57da5bebf9b6d8f79c468dd97a2b69b831657bbc8258Virustotal results 32.20% Quakbot
2023-05-18Ompj.jsjs ee8f7825f5b87fbdb90f5bc8eff0cfadc358c64cfca2dcb37acfd398d5b2f201Virustotal results 26.00% Quakbot
2023-05-18Qjnkln.jsjs 7e14e82b93e7a51daf3ab028772a41e20e60a31cc1a90985cf3598206b08805cVirustotal results 25.45% 
2023-05-18Ejfv.jsjs dfa59aec9d3aea04d54bc6bcacf0f7a1fc618f9981bc4a0955947134999d2ae9n/a Quakbot
2023-05-18Mbph.jsjs fd32fe1312ed075ac00d30123df24382ead0744d83a1a8787e5f0303d68f70caVirustotal results 30.51% Quakbot
2023-05-17Sjvlu.jsjs 9e158a8d22dc98e3ae057267f1f3abc2cabc910f829c052269762460d602479aVirustotal results 25.86% Quakbot
2023-05-17Zkbvem.jsjs 7cfdf6db2bcad8f5b911ac39a8da45e6a8bc3e53c287742c8afc09821a544c0fVirustotal results 29.31% Quakbot
2023-05-17Swdyydb.jsjs 2643a0ad4d4922d9f4428188cfe85112015c48ec78826051b8fc118affc60fa4Virustotal results 30.51% 
2023-05-17Rhqadobp.jsjs e5c5a60b175cb60af996c9c06d7956eb02b365460e950ac7662bb4ea5c87d9c0n/a Quakbot
2023-05-17Fznrdw.jsjs 53b3144d6c4d4163d5317d32d6bfcc11069a721edc167234c3599a6e2aae5274Virustotal results 25.42% Quakbot
2023-05-17Fqlfm.jsjs 148425d44762a381cbc5cf7c9e0e7fb44d71f7162439e78b219929274f34d19fVirustotal results 25.86% Quakbot
2023-05-17Kyxyoc.jsjs 4604c9a02925f680aa68df7691aab5b247d61f74fa2c2c261a58ed40e9680327n/a Quakbot
2023-05-17Igoowr.jsjs 4fff1e6d7e2ff84a798e78f59321dc743062cb87f81fd4fa7acf2f26e62db759n/a Quakbot
2023-05-17Bwyj.jsjs f2576a2428041dc22ea5feae6bd59d71138a4d7ad1a2fe259ab1bfd9168847f6n/a Quakbot
2023-05-17Cttbr.jsjs b5691d259c2107ee89c5068efc406bb3dc32ad19e37996812f9e2c35d6f0e3f3n/a Quakbot
2023-05-17Gajuukv.jsjs 637ddcf6c4bc151d4430fefc7d5e5078f731b19333a829779a7d1ab4d4504caen/a Quakbot
2023-05-17Vwncort.jsjs 2ef6ef60814a4380f268a762e4d0eb85c4d77d800d986456cbd893ca56d69fbdn/a Quakbot
2023-05-17Jxezlml.jsjs f8e53cd28c5f006a4951e63c58a70835e6828ce659596264508e0b11bf8cea3dn/a Quakbot
2023-05-17Kwtsy.jsjs 55fe3a0518db3071c18c0a8a26474886ec48f2734badbfcfac7e768f3848be05n/a Quakbot
2023-05-16Gjijayc.jsjs e7340d14bf1e9678bca83cc4d263a25e83b9239e6c7d534781b2a13efe60a25bn/a 
2023-05-16Godjqr.jsjs 04a3f46e6a112d501cdb487061aee9e4cdc785800331584fd80b7f5fa71882a1n/a 
2023-05-16Hjvq.jsjs 0388a98d003abf2c81f66eb851bc58d1334a23d74899d7b8beccf428fa7f3724n/a Quakbot
2023-05-16Xidcdejy.jsjs 8dc587f57bb80399b45f3793a838c623f4779d388e7ee44b873de0640a51bd73n/a Quakbot