URLhaus Database

You are currently viewing the URLhaus database entry for https://cgscoaching.com/tu/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2638899
URL: https://cgscoaching.com/tu/?1
URL Status:Offline
Host: cgscoaching.com
Date added:2023-05-22 14:54:09 UTC
Last online:2023-05-24 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-22 14:57:27 UTC to abuse{at}godaddy[dot]com)
Takedown time:2 days, 6 hours, 56 minutes Poor (down since 2023-05-24 21:54:07 UTC)
Tags:geofenced js Pikabot Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-24bournesGlyptodo.jsjs 15df47cdfacd8f32aa935b64d465b87171107d43af256be06fe1483e0cce7e17n/a 
2023-05-24probablenessAbu.jsjs 6d62e5c42b97bb7a43855d40f6bc58cecfabced56c96bebf8c547e4b255493adn/a 
2023-05-24ooecial.jsjs b340284ded44913d5ac304fe0ff7c1d6cfb7cf8beebfe09d2389375edcfd57bdn/a 
2023-05-24PhlebectasyMuslin.jsjs 15ac6b35f4c8e1a0b8580a4a4141ec29bb10242313fc53805b30b05ca3a9a843n/a 
2023-05-24doc_A703.zipzip d347ab413fc836f10b6ac7a8653c9a58e00e7fce2b87a44cf9d50f59cb7ce6d6n/a Quakbot
2023-05-24playwritingCarbonizing.jsjs 17ca73fa6228dc1b4672ccaeae33cf0214f9679ecc84c92d21a63f75b8ae1c22n/a 
2023-05-24UndistractedlyActinistia.jsjs 02c1ad761f9b6c0ee7ec39a00e914f78bd2274e0a4e4112513a774f7b89b822dn/a 
2023-05-24alienage.jsjs 7cc75461c3cda34c3434a19331076c1ad962e0a5e8e93b78dc483caef4eef5a8n/a 
2023-05-24routerResounds.jsjs 19fb3be334f0ec44c5ed120fc624ed1d4e080f6035bc766849b16160635c0fb8n/a 
2023-05-24Chinookan.jsjs 4ac540c9528d56851ddc50529e6082fd0335b94df85f18c40b9e79a646b0fae0n/a 
2023-05-24TransmissivelyPrepublish.jsjs 8763c2411b1741821ffd88bb8a56f87bb12fa283ae5a9d49e083a692faa76824n/a 
2023-05-24HawkmothsIsagoges.jsjs fa68d257152b116c285efdc7bfa2144cca3f1f9f5ea32ece8cc020cb4bd06172n/a 
2023-05-24Canalete.jsjs edbeb5518052c00f61b3b2da18b691103cb6a35820af0ec05fd61238af449b52n/a 
2023-05-24tetrapetalousForlorner.jsjs 79f5c295abdc98d55ad9c914de65dec872ad4ebcaa0dd5b1d014f8ba1cc4fc33n/a 
2023-05-24stolziteSomebodyll.jsjs b71d46fb4491d1229b7a8e71de90178de2b2d530b58179105a58194ed20e8369n/a 
2023-05-23bourgeoisiticLigularia.jsjs 1c1dd6df48d596c329a7fa5aacc7351cad5faf4e5c17709cb11fed2423809981n/a 
2023-05-23larikin.jsjs f11403670e7787c0505297358114aa134ab3ca857d0bf1f9ab1b9d92a58f8bcfn/a 
2023-05-23Suffruticulose.jsjs 2dbc5e7ad4470bbb33233ecf5bfd53dd70ec77c77e8483bb45c16e5c1c251860n/a 
2023-05-23PseudofarcySmoother.jsjs 9a9cb9c3b07e824fc79c20c84ac332522d25ec2d35c9d079a4f134240250c78dn/a 
2023-05-23VictimizeCaresser.jsjs 67cd23b0399a26ecaebf569b668565514b4a781085e544ed9457d76ff342e714n/a 
2023-05-23Canthal.jsjs c66266a906fb794e5b326113fd8eb757ad15a6f85612890c43e6df5ad7ce9a2bn/a 
2023-05-23Pmqju.jsjs 58aea2b8e30ddfc4dbf2bb0a59c26e4cdd4cb05b8072c17973f715fdab9bb58en/a 
2023-05-23Gvbh.jsjs 31d689f4def42d03e9bd0eac618e8bbd15be43cc6843bc07df04bdfa98320770n/a 
2023-05-23Fnupfbet.jsjs 1aa46ce998f5b2e557dfbbf29551490e1d88de4f7a532144b08c86459799af84n/a 
2023-05-23Uqvsv.jsjs e8223699635f53fe8fbeb05c776570e3924e2a59bc13365d40141acdbcd5e76an/a 
2023-05-23Xrsx.jsjs 915e9a81b9614b1484df4e849ac5042bd413d800423d4101e1b4a164106d2eb9n/a 
2023-05-23Javpb.jsjs b3e0e89556d14a2514e30d8d15af935bfe5687405611163bd934ac05c06be379n/a 
2023-05-23Yfpupyon.jsjs 97bd05b516693783d01235ea1e527702df14b461b934fcff97672e0ce0829d0bn/a 
2023-05-22Jmhdj.jsjs 1ff2853cd31b5d9b8717aa20092e182eebbf05736f60fcf38b2d38079d044963n/a 
2023-05-22Mynfq.jsjs abc176248f4d5c990c8d58bf736620244930c72adfc04d7613f57000818e8f59n/a 
2023-05-22Fipxl.jsjs 08d2b42a7ed1366d6d543644f88d8b079195969166cd64c2d8e9737f41c31a65n/a 
2023-05-22Flhsl.jsjs f65f321e8e796b9111edda063f78c66782e79d1daeaf4bff13119428afd3d015n/a