URLhaus Database

You are currently viewing the URLhaus database entry for https://batsamco.com/lvot/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2649275
URL: https://batsamco.com/lvot/
URL Status:Offline
Host: batsamco.com
Date added:2023-06-01 17:07:22 UTC
Last online:2023-06-03 22:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-06-01 17:09:05 UTC to abuse{at}hostgator[dot]com)
Takedown time:2 days, 5 hours, 17 minutes Poor (down since 2023-06-03 22:26:35 UTC)
Tags:BB30 geofenced js Qakbot link Quakbot link USA zip

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-06-03document_C817_Jun_2.zipzip 6c78cd9a7448ec0b69cb16055919ea281528cf2840c362bc7b8916a5299e34d0Virustotal results 8.16% 
2023-06-03document_C421_Jun_2.zipzip 8c04f5997577ccf7e56627d47cfc11d65170d286f596ceb4c267767579f579caVirustotal results 27.42% 
2023-06-03document_C035_Jun_2.zipzip 0b0245629ec403817b48ca40a044d65592138eb90fcb34c4838513969eb0ab60Virustotal results 26.23% 
2023-06-03document_E960_Jun_2.zipzip fbc7e41f171ae548cd1b9065d9942393d396dfaa9b0fc041481c8e70af1126f7n/a 
2023-06-03document_A367_Jun_2.zipzip 87476a00147c96a6ee5228a2d452f8e0f09d5e8f9585aa38999511e0e45813b3Virustotal results 27.42% 
2023-06-03document_F152_Jun_2.zipzip 5cc588aa2600fe50cf0e1993b0c34360d7e3d952242b810e21f5fca655bdcf41n/a 
2023-06-03document_B184_Jun_2.zipzip 3aaab780ac02ed8dde4c8f233f197052eb97c2e839b7ce7c9af835cce9265e0cVirustotal results 20.00% 
2023-06-03document_E639_Jun_2.zipzip 35d6447ffc76da07b4a5c383b4ea38345a8c9474f031a6a67a707cce1ef45268Virustotal results 22.58% 
2023-06-03document_E704_Jun_2.zipzip a93c73acc2198b7e34e2462b8e36e2de1388ea26f206116baaa3507d458a95d2Virustotal results 25.00% 
2023-06-03document_D160_Jun_2.zipzip d8c144ed265335177141852466b71e90d37d3dd97c1486cecafb24f3f496a748n/a 
2023-06-03document_C023_Jun_2.zipzip 630504ed45ddf598df1d67322f704ed21602d932371e29b74f258140c1096c96Virustotal results 17.74% 
2023-06-03document_C917_Jun_2.zipzip 91d4942e2e5d57acbe576e9ec7054470592a806742a6af4f2cb821e91549b338Virustotal results 18.03% 
2023-06-03document_A490_Jun_2.zipzip afa396addb15923c47c855184609e9aeb3dc3d36e872ab5ea9b9da40d3726625Virustotal results 17.74% 
2023-06-03document_A742_Jun_2.zipzip 948d8bd7a88aebc7fbeacac67aed552ddfc02d3d4a3f09c84f87e80d8dd6483dn/a 
2023-06-03document_E810_Jun_2.zipzip fc2613c48304e9183ffb33e7c1fdffc99a896b334d9d21f952d7873af62943f2Virustotal results 19.35% 
2023-06-02document_A019_Jun_2.zipzip 6727d8d0d7bb0f0f203ae55b96bc1a875945c254c4516418540e3f3001c3b733Virustotal results 19.35% 
2023-06-02document_D865_Jun_2.zipzip b629ddce4b60e28eefd657f574877b54e4388cd7799b918949981ab615ba9652Virustotal results 17.74% 
2023-06-02document_F813_Jun_2.zipzip 24e9688c7925b58fcdcae4502b1a01a2820616768be46f754d19e63050563a70n/a 
2023-06-02document_D043_Jun_2.zipzip b589343959cb2e73786668aaa854a0853eb164713a63d2f994f687da7fb72c7bn/a 
2023-06-02document_E958_Jun_2.zipzip 79102f8967f21f1d20e93ab4b9867d0896722e21ccf0c945eab4cb6cd65d4895n/a 
2023-06-02document_C746_Jun_2.zipzip ba27277cc3f761a8fbd1ab312ecff09831ecd502bc6f95f3252b33f4f2082fedn/a 
2023-06-02document_D942_Jun_2.zipzip c71a0c4cd4c9593f0a9683dc3d0213bbb52bfe704d3dbb4c1027f1fb41ed71c8Virustotal results 21.67% 
2023-06-02document_F581_Jun_2.zipzip 6e234b0deac13e2ebeab11375205ccc7bf4ae74eca49513b3088686cdc2a7b5an/a Quakbot
2023-06-02document_F298_Jun_2.zipzip 1ce3bd17d19db02176a0f3983ed548650de0e2980d3f58c62a6a62cb00ea0244n/a Quakbot
2023-06-02document_D718_Jun_1.zipzip 9076ba271a9539a688385f805aa72dd69613e3a07dbeb37a73c5926b8d2f4d29Virustotal results 21.67% Quakbot
2023-06-02document_C485_Jun_1.zipzip 72c4ee1b31458241deac61c1c6d995a4a7bcb8e525678befbe322655301bac64Virustotal results 19.35% Quakbot
2023-06-02document_A951_Jun_1.zipzip 9973d08df4668a26e95f891547427143a878be8ca8576a1b7c1c20a4617643f3Virustotal results 18.03% Quakbot
2023-06-02document_E149_Jun_1.zipzip 6af12d2ce533dff3297ae1061a495b44edc3b6e88e236480ee7578cb6740a71dVirustotal results 19.67% Quakbot
2023-06-02document_D836_Jun_1.zipzip 34d6c1b15daaa1356e0b4a97c56e0e9f7b4c26f1ce9e806f66638768f4bcf497Virustotal results 19.67% Quakbot
2023-06-02document_C163_Jun_1.zipzip 8fdb01e7925f23a50e3377568cb4ae45b24653de8bb1605c39e10a5b0ba352fbVirustotal results 19.35% Quakbot
2023-06-02document_E526_Jun_1.zipzip c0425fcc3d4efc676bfc3fbb0b977b1385aa5e5351c4527c0031820050b3edc0Virustotal results 20.97% Quakbot
2023-06-01document_C041_Jun_1.zipzip 1dc24e9adae226a9ec97fdb286dadfc4c81f81977843818b294314611e15fdecVirustotal results 22.58% Quakbot
2023-06-01document_D819_Jun_1.zipzip 00dd903917624c1aef8abb46a49e627267c13fd473ea3af3b94388c8c8345919Virustotal results 20.97% Quakbot
2023-06-01document_C659_Jun_1.zipzip 942d7484e715e2bb07e4413b91d5cece42aea34298345d062932dbc4929959c3Virustotal results 22.58% Quakbot
2023-06-01document_F208_Jun_1.zipzip d86fe31d1b6045c76ee42f82434ae6a673b4594e2b8ccce4d4c60a5201ac782bn/a Quakbot
2023-06-01document_B524_Jun_1.zipzip 054ff34c8e00e5fc85679be4e02e5f9978bafe9a78869a7db58e9e8a49f853bcVirustotal results 22.58% Quakbot
2023-06-01document_C465_Jun_1.zipzip 65d0edde79413111c2f65253527203affb13571e2d260947a88c8472a2b74bb2Virustotal results 22.58% Quakbot