URLhaus Database

You are currently viewing the URLhaus database entry for https://syntaxis.pk/ls/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2659411
URL: https://syntaxis.pk/ls/
URL Status:Offline
Host: syntaxis.pk
Date added:2023-06-13 17:52:33 UTC
Last online:2023-06-14 05:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-06-13 17:54:34 UTC to abuse{at}hetzner[dot]com)
Takedown time:12 hours, 2 minutes Good (down since 2023-06-14 05:56:41 UTC)
Tags:BB32 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-06-14lGdsJjpxkhFY1d.jsjs 94623dba99508c10b256941b3006589996c4d2acf099a8ddbc711f35e71bd56eVirustotal results 0.00% Quakbot
2023-06-14uu8VkXB6pzfUac.jsjs 1f8ea6e1ad6d48acf1bcf798719c7502e5d706c0b4cd35deb855de005014d430Virustotal results 16.95% Quakbot
2023-06-14Z1bIYGxQcas5RI.jsjs 1b47d55fe6a8cf401ea08c28473c2c24938b7148b8e0e6e2970f56b9281451ddVirustotal results 0.00% Quakbot
2023-06-14wGxFGgByCOKDev.jsjs 2c867c487b65201f17c9bd25829ef4effe95771b4414057c42955092b67a3b5an/a Quakbot
2023-06-136wJH0jm4j23t7.jsjs bc0be1ecb44384e84b69589fb5f91bad677cab2ad17f1d769dd64054af541a21Virustotal results 0.00% Quakbot
2023-06-13qFFa25W8ORzYX.jsjs 668275c132a7afc9529e007e46a89569f8c2cf5639b0d7b6549291eeec589c5cVirustotal results 0.00% Quakbot
2023-06-13bhuY8XwdY6sI.jsjs 4e57148bfbd39f2bd7256784c1002c691b566dbdad8bbedbc16aff1597617529Virustotal results 0.00%Quakbot
2023-06-13UIP5X4RVHW8dB.jsjs c49bc7bd6399ced0a8dade4fb75ee6978fb520094ab967a1e5d0a3ebf31c7f02n/a Quakbot
2023-06-13L1KhE2GwXpq2u1.jsjs 8b7ad482b2d4ae6336df9e63c13365e00e549e430b9a843d8a4e392a43a4d828Virustotal results 0.00% Quakbot
2023-06-13JKvSMDoSgXtZSD.jsjs e9088ac1d69f81407081d6fe6298f07c0121eccc9f5156b1792837cb12b214fdn/a Quakbot