URLhaus Database

You are currently viewing the URLhaus database entry for https://jubiranka.in/ueat/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2659984
URL: https://jubiranka.in/ueat/
URL Status:Offline
Host: jubiranka.in
Date added:2023-06-14 09:02:11 UTC
Last online:2023-06-15 16:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-06-15 13:24:09 UTC to abuse{at}cloudflare[dot]com)
Takedown time:1 day, 7 hours, 24 minutes Poor (down since 2023-06-15 16:27:54 UTC)
Tags:BB32 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-06-15document_ED807_Jun_15.zipzip 63b495a0631ce51ea48be1ccb9385df1deb42c2b91fdf3f27126e2f3693f0102n/a Quakbot
2023-06-15document_AF180_Jun_15.zipzip aa9f5fe7e7149da21a09c65d39cc65d323f96647b012f63df091a308334ebe8dn/a Quakbot
2023-06-15document_BE406_Jun_15.zipzip 6151cf77b212248877b6c588ba383cf3a66728cd7b6b360f36c46a8abfff8a51n/a 
2023-06-15eEco46wlaZdmK.jsjs 77461ed3662b98082abdf1b780ed37009500b57982e72973d52bd1905f2c3d7en/a Quakbot
2023-06-15OFZWT5GVIVJ2W.jsjs b3c69feaeb1a29eecba5bf3d1a496127772a0ce2ef3734cbe2622c83876393c3n/a Quakbot
2023-06-15O2D3LAOIxxxo7.jsjs ca5094f3caa21967f400d8492ac20242987429d31b18d47711bdf60ae1b30477n/a Quakbot
2023-06-15ZpKMmSyR1ssU.jsjs 85d418aacb80c17ce792d4f24ba776835a84d61172cd17072e7d33f29705b7c6Virustotal results 0.00% 
2023-06-14FQ3IjDzHmylSdt.jsjs d25365c4100bde0737067e66faa61cc613a67c351416fa540ddfa36805f2158aVirustotal results 0.00% Quakbot
2023-06-14ydkl7ti4FZis.jsjs 2851c11b72361b9b5d32db0d92edb18a0c8fa75ff8cd6ea897a423d79afd5da1n/a Quakbot
2023-06-146aNm3Q26nzBMq.jsjs e673348a04f8dbe712f4939ed01aef6de6f5ed1a9c0bec3a19bc45c5456d77a5n/a Quakbot
2023-06-14UaRhpQd5DFODnX.jsjs b4e17241304cddc6bb0ccb0fdcad130a8c50c007d3850e39ce6c8d3f24865201Virustotal results 0.00%Quakbot
2023-06-14loR8XOPkM732SI.jsjs a92d920c5f0993e08e2ccf2f003d53ca0f1f4f2ff4ddaafc2d3e0b7fa2d9edbeVirustotal results 0.00%Quakbot
2023-06-14RxC3EZPRgOOUA.jsjs fce346ef00b16381bb4a419671d8c9d2ba9ebfcf2e33f7656cc401d821acc06cVirustotal results 0.00%Quakbot