URLhaus Database

You are currently viewing the URLhaus database entry for https://ozzyconstructionusa.com/tso/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2659258
URL: https://ozzyconstructionusa.com/tso/
URL Status:Offline
Host: ozzyconstructionusa.com
Date added:2023-06-13 16:33:17 UTC
Last online:2023-06-15 16:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-06-13 16:34:32 UTC to abuse{at}namecheaphosting[dot]com)
Takedown time:2 days, 0 hours, 23 minutes Poor (down since 2023-06-15 16:58:03 UTC)
Tags:BB32 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-06-15document_CA365_Jun_15.zipzip 1e5a01d1fa13163af570f038f4838cd0857dc9af386ab6f07bfaf937fb07b803n/a 
2023-06-15document_DE973_Jun_15.zipzip 858defc77bc332bb3c75e54993558dd1555f413afc48fc6c971a068772b699e4Virustotal results 6.45% Quakbot
2023-06-15document_EF652_Jun_15.zipzip 67600757786c355ef86cbc7c32cb999b1464ef44769a8f975033ddb211f8e140n/a 
2023-06-155A1aCKHA1zDS.jsjs a2e08ccca21178be2e130306290582edf2cbab0542461d5a135a59213eebfc81Virustotal results 13.56% Quakbot
2023-06-15GgDIeYn4uZap.jsjs 45f67841346812bbef2081e234e635d1f3dd0602e6351e9e6f23a9b77ba4e6c4n/a Quakbot
2023-06-15LDYIEa7hHxUwpr.jsjs 13b4deaf9b56574e5ddac8327c9b869f0e67d4ba95e2c7cc8fa058cafa378cd9Virustotal results 0.00% Quakbot
2023-06-153BzceCvUGQrU.jsjs 322f3399ed3749bbf8528a1e0e57750d0577f62e51e295b16ebec1e0da9e8f8en/a Quakbot
2023-06-14uZQzBHIBzDik.jsjs fed73bb72665df766b827a6a17b1dab5c93a68f1fc0329d013e79139e16af547n/a Quakbot
2023-06-14IMqM5zR2UAnnB.jsjs 643a214f4dc41098296f77a6a7cd8e92c3b364c3a391eb1641ee96830915c0b1n/a Quakbot
2023-06-14docu_CE680_Jun_14.zipzip 9e6e2acbb3f2a3238e8972c1aaf3541353fe11d56111809bb726ccd3f9107349n/a Quakbot
2023-06-14KsPX0kGCE0ilH.jsjs 39529cf01b6641f4cad2804c27898a3ead37efe55721232dec0cbed99e95fd04Virustotal results 1.69% Quakbot
2023-06-14UtKd6cil1O0Pmq.jsjs 317249c0887df8cbc272cae64fcabf27c5b218d5ad3af51f28b138ddc1c7deadVirustotal results 1.69% Quakbot
2023-06-14OS3NR3Q073Bc0.jsjs 320b00d1b37b326c3ea175b31ab2f6c06d6da56545c455c1570eb902cc3946a6Virustotal results 15.25%Quakbot
2023-06-14vWnfDG4oMUlf.jsjs cef236290fce0aa372364acacef0e4d551963d3a3774df2a383c222069ee6fbeVirustotal results 0.00% Quakbot
2023-06-149iaXSo4sNpSy.jsjs 95f39895645fa1cf28a00404995ea9e9463e30da69c3607fc718f06046175eb9Virustotal results 0.00% Quakbot
2023-06-14b5AuCHa5iJKiU.jsjs e00b5fa036bb07b42f390c7b3eb5414cc5621d482cc388c023c2e064451b61bfVirustotal results 0.00%Quakbot
2023-06-14AbrdaljlH4Br.jsjs fad9ccfb9814d3cf157aba42fe74cb64e5b2be71e40f0c1b89bbe7d02bdaa9baVirustotal results 0.00% Quakbot
2023-06-14r8u8Ey7N5eOn3.jsjs d8146e5c45a6f274784050acaa8e5c008ddcfad41d1985ee60e747a25303ca00Virustotal results 15.25% Quakbot
2023-06-14fyQRMaRpjS4Qi.jsjs 51d66452c150941cf614cd6c61b773f05874cc69eb56b24a8ec11a9d863c9c2bn/aQuakbot
2023-06-148mU29K9AGWOuYb.jsjs 7f0779d8757870b68e42c49c9435a5d120e73b5e3bc1987063d4aefe147340e0n/a Quakbot
2023-06-14uu8VkXB6pzfUac.jsjs 1f8ea6e1ad6d48acf1bcf798719c7502e5d706c0b4cd35deb855de005014d430n/a Quakbot
2023-06-14ZU6X7uFnLfON.jsjs 08fcba4bd4294f71d9703bdfde10ef905083c55eb4288959983ed7e7dd2b0d18Virustotal results 0.00%Quakbot
2023-06-131AyjFOZSXXbF1f.jsjs 1139d9f32ce10168bb523774e13fcb2b0eb0a125b7bb4fb93cef8352c04768b3Virustotal results 0.00% Quakbot
2023-06-13eR1JzrZFCnY4V.jsjs 80f50469b54674eaf1fb7d4eb44bf603e3dc20084db713fc62d0042b557abbafVirustotal results 15.25% Quakbot
2023-06-13oaxV2LiKoFH4UD.jsjs ab9a4655862e09bcfaab36bcb19e3beee69a0935253295f3befa3c8cb0641f8fn/a Quakbot
2023-06-136MMJNAIbIKAI3.jsjs 7c0f652e7998af74cc3e126f5d05ebe7c24e86b4551acad224934b06afe129c7Virustotal results 15.52% Quakbot
2023-06-13cJQCrFenRpkC.jsjs 3e7f948117ef7d107ff4ec5e2598d93364a37771193927f8188819ee2a60bc0an/aQuakbot
2023-06-134hDYJLcH9yBUo.jsjs 2cf3d45519e1057961623380105498f99860dcfe9ca56c99098dfd434be79fa5n/a Quakbot