URLhaus Database

You are currently viewing the URLhaus database entry for https://lipsumtechnologies.com/sap/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2659297
URL: https://lipsumtechnologies.com/sap/?1
URL Status:Offline
Host: lipsumtechnologies.com
Date added:2023-06-13 16:37:14 UTC
Last online:2023-06-15 16:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-06-13 16:38:15 UTC to abuse{at}namecheaphosting[dot]com)
Takedown time:1 day, 23 hours, 53 minutes Poor (down since 2023-06-15 16:31:22 UTC)
Tags:BB32 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-06-15document_CF832_Jun_15.zipzip 951dd7677e771172100b8fc5e4caf76c805c0e67cafab1a01149e10fe00080daVirustotal results 8.06% Quakbot
2023-06-15document_FA463_Jun_15.zipzip 83d8c2fad6fb04fd150116ee697fc39055486d54424c251be9c0b8879b76a0dbn/a Quakbot
2023-06-15uQfT50qhu5E3yI.jsjs be229c95bfdddf89931bb90e5ebf5ba55025902544967ed8b16bffc0200ff9ban/a Quakbot
2023-06-154EL8wQuMKiVH.jsjs 31b5863d94364d4be5388873c655559a44e082424bda156e78f9eced0831dbf0n/a 
2023-06-15EP4xGuTviCp4l.jsjs 1333f9d2f76d99a73b3964f17e9d825d025444b54d4c1e35a6f5c2a3fa34beffVirustotal results 18.64% Quakbot
2023-06-15cVBMZfyEGgyf.jsjs 061838f94b6d1828b8b340660624319c58bf930ff2e16e53c876c799245442adVirustotal results 15.52% 
2023-06-15DJb6uWYDKgHD.jsjs 453a9941bc55f03cab2d4e620a2003e1a392d8eeab3dbe75b5cd9d3222332e29n/a Quakbot
2023-06-14nfUke3hWQtx4.jsjs 39a45545e1dc101a66bc3e74aa2e616ac482a62500386412f14489e2060798can/a Quakbot
2023-06-144mCaSAkVYRaQ.jsjs ceb0b2a03415f661f6203bcc86668d1e2af1881f030605ef515dad9784e8b5e1n/a Quakbot
2023-06-14docu_BF543_Jun_14.zipzip c673bfcb47ede45a743fd4f7a77f4191994558953aa9456806cb2fd6281a9031n/a Quakbot
2023-06-14oEjLW30lbLbhzw.jsjs 7d1b15157ca9c8567e33f9bd99e59e7bda44518313f0d0b13b8a27fe29488a83Virustotal results 17.31% Quakbot
2023-06-14ytrogkaEsyx22g.jsjs cd92783315a2dd65518a32bd36fe2b33afc753223578d98f1ea106e531f0f2e0Virustotal results 0.00% Quakbot
2023-06-14FknXFeBKqmS5y.jsjs 76008b2e90cd4dd80ebeba22ccd78f22b98684f50ea77143a3522fcc27c34cc1Virustotal results 0.00% Quakbot
2023-06-14ARUAQUPRJfFYcL.jsjs 438c5dc253fcb2627ed01f0a8d74730ba02a30049b4218b013dbfc3d33b93880Virustotal results 0.00% Quakbot
2023-06-14UQ0eWYPMBpuz.jsjs 804163fe4cf333a395e170201f39fb4d515021141c068615fa14e8eabd3ab3d6Virustotal results 15.25% Quakbot
2023-06-14FXuoxGxnufIOmz.jsjs 0065c4b752d4ad2eadca283d889a5df13e6e2182b62e5700a55ae168fbb29b33Virustotal results 0.00% Quakbot
2023-06-14fLoSEKAHoNzv.jsjs fc4f6ec711e68a0e711819a0b73c1195b8ea7696cade564039c3b762eaa6dd0dVirustotal results 16.95%
2023-06-143RkuYa7i6ivc54.jsjs 0684acd526508b790a60181d02639f52f36ee2b2c149082a58d7a956a4a8ab98Virustotal results 0.00% Quakbot
2023-06-14QuC86XQVHCJ9y.jsjs bf01a7146dfe92bf81f1e4dc18cd8f7bc4d3c66360c344aa8183336483d36f70Virustotal results 0.00% Quakbot
2023-06-14sL525ZOVSkCv1.jsjs 9df95efbc4e258fa1d2b4b3bb15abaebd1044a1c52aaaf506457523a40fe9a13n/a 
2023-06-14ZxmKES20KoNByZ.jsjs 6638b909caee457d91654eceae92ac782dab981bd1b4cd9bb433b143bf5a8d39Virustotal results 1.69%Quakbot
2023-06-13qc2kUoXAkc6C.jsjs c7fa0fde632793539345e820a507bf77b82392d7c6e14a4d6e374228a3a51407n/a Quakbot
2023-06-130XHDcGxBWQ3p.jsjs c0dc43667db75e00b26ab332ef35a82862f8a2ebdee5ec113d7477df9c947c15Virustotal results 0.00% Quakbot
2023-06-13ypDfRALVBDEW.jsjs a821e7221d10ecd07f5e0bb75652e33eead49e60ee39c0532cee0b43775b11e8n/a Quakbot
2023-06-13HUevUTxOkIc1U.jsjs f402b8848c5cdc6de1de79c42976ccf1b2e2b4f301d942d3c9eae9c63bcf5374Virustotal results 0.00% Quakbot
2023-06-13TsqTU9pfILynDP.jsjs 0c21520790a4f916213684fcdd904aea5ce48528eb25843c7eafd8c9bd706f3en/aQuakbot
2023-06-13L50qooy1UVfhh.jsjs 1b7d86224f9d1a132267287d805163ce18782c8aed6bc5e2168f5f0fb23cc7acn/a Quakbot