URLhaus Database

You are currently viewing the URLhaus database entry for https://navjyotibookstore.com/aa/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2659286
URL: https://navjyotibookstore.com/aa/
URL Status:Offline
Host: navjyotibookstore.com
Date added:2023-06-13 16:33:38 UTC
Last online:2023-06-15 11:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-06-13 16:34:53 UTC to rajat{at}emaxglobal[dot]com)
Takedown time:1 day, 19 hours, 14 minutes Poor (down since 2023-06-15 11:49:08 UTC)
Tags:BB32 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-06-15SfLuJKnujGmJf.jsjs a603a9a18630c829f7fe784139537776d93058283fee4b949dbd180bf7f24350n/a Quakbot
2023-06-15Crn4lm7u9ycpxl.jsjs 2383a71aed495a7d8ccc6591df82546ba2dbaf218e9a3cd6e47faeca2c91d428Virustotal results 3.45% 
2023-06-15f8OJ3KyGu2pu.jsjs 3ec13be1be130e5b4ff5b9fa68eefe920761d13257024f8d623d991ad543f39fVirustotal results 0.00% Quakbot
2023-06-14MQXroa0jMmkjsF.jsjs 2c8797aa482eb7e1edb6049dd4cb41e92eea8f6099afedc31d5a9524f789bd96n/a Quakbot
2023-06-149bXIc1iNkfE6q.jsjs 011ded98cd78a87e762033927f22105e19954dfaeae79d9f6e6ef5a24ae5b664n/a Quakbot
2023-06-14docu_EF925_Jun_14.zipzip 10e566dcc281e6b991c1793ec7bb7fcf5340ff7c607fbc94780502a1567b8bc0n/a Quakbot
2023-06-14R8ephkEUcWjal.jsjs 25ae3e1501445de4378eafc511e7ccc1ce8097bf4ca20e7faa59afb364c3b236Virustotal results 0.00% Quakbot
2023-06-14LZJPLhTUOl0dZ.jsjs 5cd15a5947d6feb4ebe67137cdec8600bc585ff8c1343034bb040df86a0eb3c3Virustotal results 3.39% Quakbot
2023-06-14tqHjbZdhAR1r7.jsjs 8fcec0e00b5c30b684c0b9968ffdc5c3fc156af7e2b742f3cb70342082909f3aVirustotal results 15.25% Quakbot
2023-06-14xUgIwlv0zFSDb.jsjs 714d3253894ca7c971ac2c4d09c65858cb003f9dcfeec45eb0abc7c54ea23309Virustotal results 0.00% Quakbot
2023-06-14ahaByXcNS4Ik.jsjs 001630641e12868fff408b994d5fe3de803100bf276fa26db76e831654bce2aeVirustotal results 0.00%Quakbot
2023-06-149H41PQ0U6tJZP.jsjs 0bb3a8ce8febe836b6c0be4b0a1548ce1f0d2035ef37538493e65c5562c2aac1Virustotal results 15.25% Quakbot
2023-06-14Pn2LnuWf697VVU.jsjs 0610f6a98f5ca3eea7e2191cdbc2d05220e03cab6dc5d80709eb7b16cbe7d09an/aQuakbot
2023-06-14zS62U2BgchGLP.jsjs 8df16fca30d8b869bb2e5a4aa460ff419a1db0317a1b80e8daafa61cdbb32c0cVirustotal results 0.00% 
2023-06-14Y7U0NQroXSikb.jsjs b9ffb402836bd3d588877a6c08f403f6668733547cd631d175d9ff91e19e5516Virustotal results 0.00%Quakbot
2023-06-14rsmHuyQlHZRA.jsjs e8f11d5725c45f10ee276cff16e598b904bf476dec5490e6ddb1e8f4a36324adVirustotal results 15.25% Quakbot
2023-06-14YtLn6Ctai99v.jsjs e83b6b0ead3287fd0bf7919e1d5bff3813358bd73e9b5748dbb7f0007f1fb04fVirustotal results 0.00% Quakbot
2023-06-13lR6WuQyly1mleD.jsjs 62e7f25b6d8353f0a3d466d94d6b1a107d843470def495ee8190dcab14dfd396Virustotal results 15.25%
2023-06-13UbwII8oqMneOk.jsjs 77c675434a968c42c4c87fff76bec73a3d698bacb2a311dd9c90754ff2c0d0b8n/a Quakbot
2023-06-134l3GApqQj9p6p.jsjs 4bd308b464bd0192a05d5c05c2860361ff6a14f25e07609ea63fccf500e824dfVirustotal results 15.25% 
2023-06-13t2n2ODUHk7Lr.jsjs 10fc5f940ccf6de1541568b1e647577528c326344c22363ac7fb2f97e964afd3Virustotal results 0.00% 
2023-06-13DA4tvVrtfSkF9.jsjs edb774ca4ce5aa0b8dd2689eecc7c5596cf5c581523fae519b269c73ae6c9710n/a Quakbot
2023-06-135gyvKi7zZsiTM.jsjs bac9cebf108823865b264e88078ce7267a60426dbe23db0b5a8d3a2b8f7e1f50n/a Quakbot