URLhaus Database

You are currently viewing the URLhaus database entry for https://durgaschool.edu.np/ou/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2660041
URL: https://durgaschool.edu.np/ou/
URL Status:Offline
Host: durgaschool.edu.np
Date added:2023-06-14 09:02:22 UTC
Last online:2023-06-15 08:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-06-14 09:04:38 UTC to abuse{at}cogentco[dot]com)
Takedown time:23 hours, 15 minutes Good (down since 2023-06-15 08:19:42 UTC)
Tags:BB32 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-06-14aoXpwRU8gpBXH.jsjs e29111a118a0736ef9e261fe755650e9dcd7d21e3ed9a2021ea64a6305b22fc4n/a 
2023-06-146O13SVyzojyFd.jsjs 80272b2fcb9a21d89995740bb204f41c745f6f798d9e60b9c11ae9dac04c0a25Virustotal results 0.00% Quakbot
2023-06-14docu_BD729_Jun_14.zipzip f8f161c134801f3af15d22830d7207e40cbd9beaca682d8d145ad5f39e4e9dfcn/a 
2023-06-14JhAxqGz5OxLW7.jsjs f666a788127bf2f9889af7487b05343a3bd70aac5e1422f3d072c6c7a2f5f1ebVirustotal results 0.00% Quakbot
2023-06-14nSRBXpdFtfyH.jsjs 42b31fe5a77e209f37695096e10cb6df9227c390bad3734874acd650011ce994Virustotal results 0.00% Quakbot
2023-06-14V4W7Hf5zwlDL17.jsjs 2a406608a0ffaba2656cf5879e23dfbe00108787515fb0cf28a1f28ba8b06c94Virustotal results 1.69%Quakbot