URLhaus Database

You are currently viewing the URLhaus database entry for https://techitacs.com/sso/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2659216
URL: https://techitacs.com/sso/?1
URL Status:Offline
Host: techitacs.com
Date added:2023-06-13 15:52:06 UTC
Last online:2023-06-15 16:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Status unknown
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-06-13 15:53:07 UTC to ocloud{at}stablepoint[dot]com)
Takedown time:2 days, 0 hours, 24 minutes Poor (down since 2023-06-15 16:17:42 UTC)
Tags:BB32 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-06-15document_AC658_Jun_15.zipzip 122054255780367a817c7a653e1e58fb6f936939e3f4e832ac1cd0920dcd6566n/a Quakbot
2023-06-15document_CE317_Jun_15.zipzip 8a352574c5af02a539f0cf4669f3e6c66d0cdb3bc0cd299d814c25224cd59d09n/a Quakbot
2023-06-15xPSVD7BVNM2Lz.jsjs f9e1d33afe56dd1b933b2bc42cb0e8a9c36f6718e0d5f768b11612af42e19a14n/a Quakbot
2023-06-15Hr6APGI0tKpG.jsjs 107e0ffaceb1a7b74361aa8e067177794668b315befa29d16d11a2cfe54f8a97n/a Quakbot
2023-06-15J0vZE6y4k82J.jsjs 9fe844a4f79cf1dac17102badc66005239536c4ac4138a1a818643dd40bcbf44n/a Quakbot
2023-06-159QXKFUbpfChJjl.jsjs 421136241a6b69a8dd429ad689daa2d9c3b615417f58a330f7558d77c314f49fVirustotal results 3.39% Quakbot
2023-06-14hPHbF2lrOOgiO.jsjs 542955275b0f35fd91b253006ec75e2f3ab1c3378e63daf5a6e8edbcca8f071eVirustotal results 0.00% 
2023-06-14GlBsGeWzWAP1L4.jsjs 502241c7083fa69d943aae980e29d19b09830575e950dbf268a5cf49cb05684fn/a Quakbot
2023-06-14docu_DB168_Jun_14.zipzip 3c9a67744f244d67edf1a6d3bdd196be7d930c8dbfd1577c6d979502f3503683n/a Quakbot
2023-06-14docu_EB891_Jun_14.zipzip 12e90f282fc9a5e776eae206c358dfef40c9721c31b68467fa43750a358db35an/a 
2023-06-14AE6jPJTuUhWxA.jsjs 101efaef7fd7a11d04dd50a9221b45134faa88cefe1b076544adc0cf04709f6fVirustotal results 1.72% Quakbot
2023-06-14Rinsr3M7Nd0p.jsjs 87c2c690b9a4ccd266848d48dcddec5f21472f30e1684066638c44e7f287e51fVirustotal results 16.95%Quakbot
2023-06-14ul55aRmIS42e.jsjs af171d05433cc6663e48cbfe0ef80633ab73d5a415889b1112d6cd62f2916517Virustotal results 15.25% 
2023-06-14INqV1l3nrTCH.jsjs 7d32715f3f8dc44578cb8ead94479208f0c0128cdcf337880d47a1dc5d1fc023Virustotal results 15.25% Quakbot
2023-06-14RFAPF4c7ZlcF.jsjs ace7e54ad918b9e0d402b739f428fc4ab0e95c43b528047136339fac1caca828Virustotal results 0.00%Quakbot
2023-06-1401hZTqvKCaIvgP.jsjs bd485cf1bc655c2a73b499c7f956c50fcbf14d2df790508b92cdd75e2ee1ec41Virustotal results 0.00% Quakbot
2023-06-14rxh5CoDP6AunbX.jsjs 7065e4c6d3f55f711d6212a95a634d74296bf2b391f5b1cd8b211c0bd09ec128Virustotal results 1.69% Quakbot
2023-06-14tHtrJWsTSDWd.jsjs b536742f4c71b3e6ebd5f9c0bd7755c1b4ed815fbd0bcf3b8c1b9a8f5fa0e0d0Virustotal results 15.52% Quakbot
2023-06-14cW0i4FvDUQOMc.jsjs be8bda9b2381310721ec9c6984328de60aba2660ca5c45193af121363547cae1Virustotal results 0.00% Quakbot
2023-06-14Zf9XEL6Je2Vd.jsjs b0a4887bd2cc2532abbfc931767cd93fc025b0d06f89e99ff2dd90e48830dce6Virustotal results 0.00%Quakbot
2023-06-14Y7U0NQroXSikb.jsjs b9ffb402836bd3d588877a6c08f403f6668733547cd631d175d9ff91e19e5516Virustotal results 0.00%Quakbot
2023-06-13AxRwQ0w307yAs.jsjs c4e16cbe8bcb1066d85844e23bad6796cbbd4a68bc00ce9d63ee4201f63d88d9Virustotal results 15.25% Quakbot
2023-06-13Pmp48RAtNdcvRK.jsjs b0234d241c2e2947f7b6e107c8a00868e98cfa15f4dc4cb91dcba8122c3520cbn/a 
2023-06-13aQ66Vbd4nPTH.jsjs ddbdf8827c8645e4d3c86f2a770adccaac5370409f0db46031078e56af9d71ebVirustotal results 0.00%
2023-06-13u6vxqC81HDYt.jsjs 2c0eb730bf95ed68473c18275de6e8fa29ca3e48e96a78a75ac8b1126fc3d6ben/a Quakbot
2023-06-135bYZUm8mbxW9.jsjs 0938ff83e25f07fbe63f7c8e04a4d50995e5314b0b34876ca203048489c02bb9Virustotal results 15.25% 
2023-06-13FHdwBW8K8dyF.jsjs 0bc7bc660d3416887b5b85abf92b6f7800489500b972086d6f97e8a6efe422b2n/a Quakbot
2023-06-1327yyOqu1o4QP.jsjs 3d55202b1a9776a7256b39a84998cb94072704c3734ed9be257ce06b7f8cfefdn/a Quakbot