URLhaus Database

You are currently viewing the URLhaus database entry for https://batsamco.com/tuet/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2659304
URL: https://batsamco.com/tuet/?1
URL Status:Offline
Host: batsamco.com
Date added:2023-06-13 16:37:15 UTC
Last online:2023-06-15 15:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-06-13 16:38:24 UTC to abuse{at}hostgator[dot]com)
Takedown time:1 day, 23 hours, 21 minutes Poor (down since 2023-06-15 15:59:35 UTC)
Tags:BB32 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-06-15document_AE045_Jun_15.zipzip 8c337a55e1a63a898b2dbd342350e214431b070167e87e73593e17b862501c7an/a Quakbot
2023-06-15document_CF895_Jun_15.zipzip 030cfd2da97e3759990de3dc7eb16c2f0b717c88c64e9b598c51dac2a74e1556n/a Quakbot
2023-06-15fU8qDXDWc8E8ew.jsjs 41d4d9a019c7eb73f1896405848692e9347ce82eb73b3d4205aca6fee87be82cn/a Quakbot
2023-06-15EvX9WKwu3DoOj.jsjs b4848272b19987d50c03c863f626a63a51513ff36744cacc9f3aae2eae6909bdn/a Quakbot
2023-06-15BRUv48nJumxrRZ.jsjs 29c9a155691a3a14c4ba6029915cfdf89014c770bcad2d52d31fc4a042aabe0fn/a Quakbot
2023-06-15MFfFvYSQsrI5O.jsjs d11f6d03e0c9c4643a0264e85a262cef560a036e6bdd447cc1e0548bc7af3b7dn/a Quakbot
2023-06-15uZQzBHIBzDik.jsjs fed73bb72665df766b827a6a17b1dab5c93a68f1fc0329d013e79139e16af547Virustotal results 3.39% Quakbot
2023-06-144kLYnSYjkaj6G.jsjs 82313ade9759830bef7315f3c769957810ce78654f47e8fe118a7c25de2bdb3fn/a Quakbot
2023-06-14u8DtO4Eah9XqOg.jsjs 46e8db5320450191459504b6c97241d521502ac2ec4031c1ccfe392be0c6fd40n/a 
2023-06-147VKmb207ND2p.jsjs 3ba8725a6d13e79f6f54a4bd529050edba77413d9d28ddf9bbfa1757c8c404f6n/a Quakbot
2023-06-14docu_BA301_Jun_14.zipzip 197c2db0857bc2cd2b24856ea3966173990489709337aa4a3bce6ce17e9e9b22n/a Quakbot
2023-06-147rIGvz0DbJBp.jsjs 55d7f4a1995a96cfa3a5495b30ee800d1beff100e2e40da102880198225c4b89Virustotal results 16.95% Quakbot
2023-06-14ytrogkaEsyx22g.jsjs cd92783315a2dd65518a32bd36fe2b33afc753223578d98f1ea106e531f0f2e0Virustotal results 0.00% Quakbot
2023-06-14aCUz5bqbc2cL2.jsjs d3f7132a2ad6670bacbf9660f313c6c914fe09fc762a859e302bd75dc4a62bc3Virustotal results 0.00%
2023-06-14qcgvyK4Rgk03H.jsjs 9f6394fc4d360629b3705dac0940778c005b0cee0914883a4c3fc64c9f62243bVirustotal results 0.00% Quakbot
2023-06-14sQEvqxPs2oGo.jsjs 8c6f0ada1b80116ac1b2ec33a469ca083397b81da9d680b82bc35b3548682b86Virustotal results 15.25% Quakbot
2023-06-14PijNjS7WHL52v.jsjs 4c5fddac3505a2630a208c8ea7b007e25b955aca1659036c2ef520670bf61b65Virustotal results 1.69%Quakbot
2023-06-14jjkER9Z7sl68j.jsjs 75a36411f623cb47e3babb26cf4c63f6f932c66611f9adc0bbdefbad2aff8fd7Virustotal results 0.00% Quakbot
2023-06-14yjwnO8plHctrTv.jsjs e0355038a04f6d0516e4adca7ee00d81530315a8f2d4c55b684f21e8ccbb8506Virustotal results 0.00% Quakbot
2023-06-14wP3exsMu32XV.jsjs 2f70d614dfce45e13915d1f10b8a73bf31dd0484d11752675d96acbc7ef48d97Virustotal results 0.00% 
2023-06-14VCS6wRRz5XxZ.jsjs dc380c6947c5f8de2586ab7baf30b36b6a9426932323cb2096af2c5f4e2c344dVirustotal results 15.25%Quakbot
2023-06-14Xzzt1z1QPK74.jsjs d4fd807d3e0143d21c92c708cf9d6b19e0b421a31f9679f12fe34e0a7354633aVirustotal results 15.25%Quakbot
2023-06-13pTFPZOSoDBBB3N.jsjs 97b8f8aef147e3696e5194b6abdff9c9510500daa8058716b037c4fcc352c0d0Virustotal results 0.00% Quakbot
2023-06-13n89HWHIyaiPTk.jsjs 977e2a9d32b2a1f31f955ae93c6ca9c68aed5c1383bbd537ed305d24b4b7fe2dn/a Quakbot
2023-06-13buwxkh6tcFh7iq.jsjs 1921a9b34e0f70f6cd73ef0a99e7dc401f82e4505e70dd373dadcb3252beb81eVirustotal results 0.00%Quakbot
2023-06-13LaVw19xNZ26noN.jsjs 32bfa79c01a1407a4197982364340603a7d06cee692fe4d8db9d89e1accba9d5Virustotal results 0.00% Quakbot
2023-06-13hOYfBKoNFcEl.jsjs 7c13a8cf1a7209c1092a471f4726ee62e6e2feaece247e1427da5cafe804d8cfn/a
2023-06-13KphF5WvpoZ8W5g.jsjs c2b3be7c0bdad4acba30ec88082535a3474d352081c9cfeefecb35d4511edb7bn/a Quakbot