URLhaus Database

You are currently viewing the URLhaus database entry for https://infraarch.in/pa/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2659452
URL: https://infraarch.in/pa/
URL Status:Offline
Host: infraarch.in
Date added:2023-06-13 17:52:47 UTC
Last online:2023-06-15 16:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?):mail Yes (Ticket DCU100132782 created on 2023-06-13 17:53:10 UTC)
Takedown time:1 day, 22 hours, 21 minutes Poor (down since 2023-06-15 16:14:52 UTC)
Tags:BB32 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-06-15document_BD872_Jun_15.zipzip cc79076d9ce4880a1d9ac29cb43472c9469a13b8decafd75d89c9995c9481295Virustotal results 6.45% Quakbot
2023-06-15document_BF209_Jun_15.zipzip c39d2c682cefa3953ff2e8449250372d6e60072686034294e3cd266526940931n/a 
2023-06-151cMdatXwsLf1h.jsjs 12021a72a987fe2b949d86ffd24cc1affa32fb4eb5ed8473614f7ad0b101888dn/a Quakbot
2023-06-15DjG0lcUurOyNw.jsjs 8f3c9ffb2c4dbbfe36b9df32bd6af1ad64d87eae20c2bf0c4f07b7aebccbcb6cn/a 
2023-06-15182KLDdMHywSP.jsjs b3b5d49270482083ac0e41ec1a28e45b09df9ec4081802deff17412288f985c2Virustotal results 18.64% Quakbot
2023-06-15kyipnkGXnskHM.jsjs 861a4257dbac80a697b66a11349a80fe384df8f5be62ee4d0bd3fb06fc7bb82fVirustotal results 3.39% Quakbot
2023-06-14QBECsIaCwUMXV2.jsjs 1c944f78f45c258901d24b07361415399f05ba3a81f7961ce886a489fc4754d6Virustotal results 0.00% Quakbot
2023-06-14FrJ2DPjXPzBL.jsjs ea77f07f2351d7a02877d60ab1c40ba85243ecab88bc45b949465327304a3379n/a Quakbot
2023-06-14aQ66Vbd4nPTH.jsjs ddbdf8827c8645e4d3c86f2a770adccaac5370409f0db46031078e56af9d71ebVirustotal results 0.00%
2023-06-14w307vikmPgT8.jsjs 53c928e0f9b90660ec43f951053bbc63379cc0f1a7f0dccb103eb1abe02261d7Virustotal results 1.69% Quakbot
2023-06-14Ny2FasaLCKN3d.jsjs e24dae59a010130abde32f4eaff31e39090feeea4c7c45ae39cf343fccb72881Virustotal results 1.69%Quakbot
2023-06-14Hss8Dm2Zis2Gs.jsjs 6e86f26862c886b01d7e28e34077d50ee7d167a4a5925ad9932469d5b12f2622Virustotal results 0.00% Quakbot
2023-06-14Ge3dI1gTO99PA.jsjs 115b8443cd8239aea1947c02a8d1659794441d660ccebade92282720926b57fcVirustotal results 0.00% Quakbot
2023-06-14KMlAyEwAhXZaM.jsjs 57c6e46915487292316b14b5703105f8dcd0d12e72510826abc8146f94789650Virustotal results 0.00% 
2023-06-14D4Jo8TU3IuCV.jsjs bbcca37eddd3785374f00e536f7a6ab44b2d0ab8591c7e74dcc25b8409fd72a2Virustotal results 0.00% Quakbot
2023-06-14pZ8TwM6c6qJutR.jsjs ffb17a669898e1dcf650a3f29cd996e7616f2fb2fc74686e07b05d959b4099a0Virustotal results 0.00% Quakbot
2023-06-14p6Qyi723hMWX.jsjs 56e5d6b72e197e9cef7b8d42b87f8e79bed17613daa4acfe8f8fcf3260733cbaVirustotal results 16.95% Quakbot
2023-06-145NHMA6NSpeODF.jsjs 443a4858bb97867d5cd71cf4bd4fa72fd89ead7f2a7c7c54cb88492000166886Virustotal results 0.00% 
2023-06-14w2XFGWYd7VBylK.jsjs 6d0ca821cf16f5705471d86c3b715cefbd20f9caa3b98f08a88999d75a8f263dn/a 
2023-06-14ZUlcPumzJa2C.jsjs f22900950309f35a43540587d7a68e2811a55c47791e0e2bc74f7cce84cd6b39n/a 
2023-06-13x5rsyeQCMe0Hm.jsjs c4d95cad8bab68a64041664b2c5ff363040eba5862e3bb707bb55a8759d3c782n/a 
2023-06-13f1wpYiNSskSzvt.jsjs 68dacc89f57814c2cac5cd3a53abc35e2b75bfcb7c8d84b9b33275300249ee1fn/aQuakbot
2023-06-13lR6WuQyly1mleD.jsjs 62e7f25b6d8353f0a3d466d94d6b1a107d843470def495ee8190dcab14dfd396n/a
2023-06-13tDSIPtjiHVjMI.jsjs c7b1f5bdba77ee38d49324f1e11eeafc16f5c6d58fb0f12be4290708730b5765n/a 
2023-06-13MLFrVdYclNQ32.jsjs 66be7c0113cf0006d55f00d9118ccca48387ef64349dad33ec607bf2c6b1319en/a Quakbot