URLhaus Database

You are currently viewing the URLhaus database entry for https://techitacs.com/stu/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2660909
URL: https://techitacs.com/stu/?1
URL Status:Offline
Host: techitacs.com
Date added:2023-06-14 16:56:33 UTC
Last online:2023-06-15 15:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-06-14 21:26:06 UTC to ocloud{at}stablepoint[dot]com)
Takedown time:18 hours, 24 minutes Good (down since 2023-06-15 15:50:41 UTC)
Tags:BB32 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-06-15document_AB420_Jun_15.zipzip 41218f094bc03c902cde2f9af9490c88d5883ab8f5259779f37f7f083b4b3241Virustotal results 8.06% Quakbot
2023-06-15document_DC390_Jun_15.zipzip 045e01e628e1749dfa6005d58ee88f2adfc6bf8afb16fa3ea144b5e387df73c0n/a Quakbot
2023-06-15document_AF384_Jun_15.zipzip 04a47eae6dde77f8c3949f9dfdc0cf75b2c902a8fca649fa5e8410d6fb2aaee5n/a Quakbot
2023-06-15kmT4jt3GJx46GJ.jsjs 740d30a3606c6d660d3148a85c29c9367f76f5237b630522bace8241e5b070a8n/a Quakbot
2023-06-15tFJOktg5jlr23o.jsjs 2c141438a07398edaa81f417c092d9234fbaf3e1bf4adaa68efe9705f83282e4Virustotal results 15.25% Quakbot
2023-06-155qSP8iImz2PNp.jsjs 81e1be1bdc0f9d878e30123eb5544e5de86e0fa4df0cadfc988b8b9b62467a1bVirustotal results 3.39% Quakbot
2023-06-15MD1pHy5mmLLW.jsjs 15c438f04f4f87f798d5615a2a3eb863c9609c2243149197b90bbe5023ce1633Virustotal results 15.79% 
2023-06-14VdXNLEBmY427P.jsjs b7560efe5305bca2064c160a0fbc5444054c7501f3939e5a5e9ef0ec8fe82c21Virustotal results 0.00% Quakbot