URLhaus Database

You are currently viewing the URLhaus database entry for https://jspkragujevac.rs/tat/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2659387
URL: https://jspkragujevac.rs/tat/
URL Status:Offline
Host: jspkragujevac.rs
Date added:2023-06-13 17:52:26 UTC
Last online:2023-06-15 16:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-06-13 17:54:05 UTC to abuse{at}isp[dot]beotel[dot]net)
Takedown time:1 day, 22 hours, 24 minutes Poor (down since 2023-06-15 16:18:17 UTC)
Tags:BB32 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-06-15document_AE938_Jun_15.zipzip 35ad041d5489f5f71cf84fbe88dcf9e8c3b0b0d19788e46c0cd24c8e9e2e94d5Virustotal results 6.45% 
2023-06-15document_CB315_Jun_15.zipzip f64abad8460b43ab4d3de9fda51a9cf5f12d601e2fc31ce5a86a30185f8eb457n/a Quakbot
2023-06-15document_DE108_Jun_15.zipzip a739645788a95ede796f883defd315ab0d3a931a9fafb31a265437abdb0e2030n/aQuakbot
2023-06-159PkW6JEFs13ED.jsjs 1793c4d8f7720fb3c58d1137bc4a867cb6030f78bf5c70b2f2a2936d2464246bVirustotal results 15.25% Quakbot
2023-06-15FQwjJcnYWVu0k.jsjs 90a97609cc0bafb8e0eccca0028234b561456f1d25e7d1d86edb94f9e5f3ee31n/a 
2023-06-15HNefZrTqJ6tSLe.jsjs 5c70c2b2eb299e02102fb4644ff21f69678ae02ea9d29ef068b2ac578512dd53Virustotal results 15.52% Quakbot
2023-06-15AGBYfNNKpgy7.jsjs ba1e240132c959ddf40ae8fd43d6e54982e17b8038350e6c2379b91dcd09d95dn/a 
2023-06-159gRL58HTi0i2.jsjs 87f498b6b1cc9d8a87883ac481530d47ed781cef7c7c9d9faaed126550877676n/a Quakbot
2023-06-14LqkYmXqfSxyT.jsjs 7eff6317bd536274db3bfff479a6e908c1f81711af4d8c4ce04cd4b2387d13b2Virustotal results 0.00% Quakbot
2023-06-14Pby9jU6hjMoF.jsjs 67ac379220c433fed2ff4305e9934f0badd65bc16f29d3a81f0ece8b8998539fn/a Quakbot
2023-06-14JWe1W28MryqWmj.jsjs 033ae0a9a3a918e48ef375a41e14a285080985b6ddbc57fe6135e902b6812f2dn/a Quakbot
2023-06-14docu_EF925_Jun_14.zipzip 10e566dcc281e6b991c1793ec7bb7fcf5340ff7c607fbc94780502a1567b8bc0n/a Quakbot
2023-06-14i4jaTYUx7eKw.jsjs 1fdd5b798f0a9398773e5432f79f7b93ab708838d5a54536d55bbd7d53ea1ec3Virustotal results 0.00% Quakbot
2023-06-14triQYIUgYZxEd5.jsjs 11a40e2d36dfd04ea14241971164c249b86001a7c374329522c908a9061838d8Virustotal results 0.00% 
2023-06-14EH0pOF5Y6oaW.jsjs 936aa95b1bcbffdab0d7e7e4b07b4ffa3907500bc9ac96a5d879d85aa64ffe9bVirustotal results 0.00% Quakbot
2023-06-14buwxkh6tcFh7iq.jsjs 1921a9b34e0f70f6cd73ef0a99e7dc401f82e4505e70dd373dadcb3252beb81eVirustotal results 0.00%Quakbot
2023-06-14WQJ5Ev1oJMmtm.jsjs 5c666d42ddbf63e7b6e5256e360b9b627a8f6383db3b040c888ed662123ca8cfVirustotal results 0.00%Quakbot
2023-06-14OQA65CIp7zjk.jsjs 246a706894ad22b1ebedccf38cbcd08e8756bd3209ca1b2f424a296ef26b74edn/a Quakbot
2023-06-14GPNvhk4Db3CeKm.jsjs 7a3dd2afe479c3455a453cf42e01bf511c3eb31d29866a382a3e5257912dfeecVirustotal results 0.00% Quakbot
2023-06-14UnROZ8OzWeXQ8.jsjs 40d330dad05a82b51258a235ee2b1c534163cc23e589b3c956eb6c073ba85573n/a Quakbot
2023-06-14Vba0fW4B286EB.jsjs 319976befbb5269faeb1456a5aa2380505f358c976f911c341cfdcabc7981a1cVirustotal results 15.25% Quakbot
2023-06-14Sjeq7vH8HEmx.jsjs 155edabd201cd66924836287c83f653e09c7ced1cbd3af8084eb9bfad9680d0cVirustotal results 15.25% Quakbot
2023-06-13mKvVAoOVS2TZ5n.jsjs e1278a6ca91d3112345095ef66d152f0aea42bd2438d23f7565a3a90e01942b2n/a Quakbot
2023-06-13qAwcmLsVnMHF.jsjs 37ca56a41ba3eaa4a33a8522caf8f9dac77bf9b55a1ae1a088674c9292415866n/a 
2023-06-134URY0Azt2olHiG.jsjs 10822b4666c0953463d8b008d0d2f82687b418f1b9cddec323ca3b920d68e6a1Virustotal results 0.00% Quakbot
2023-06-13bobSuccDWQwXo.jsjs 7d62555b7556b1b9005b72497f471b0f4519e9d459cc69a9f3eea3ccb3df175cn/a
2023-06-13HvqXMMIOshKq.jsjs e6065951beb74e637ffa5b8ef754320d38bf53274255f15332f451291988c55en/a Quakbot