URLhaus Database

You are currently viewing the URLhaus database entry for https://seputartuban.com/1.js which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3592914
URL: https://seputartuban.com/1.js
URL Status:flame Online (spreading malware for 1 year, 0 month, 6 days, 5 hours, 5 minutes)
Host: seputartuban.com
Date added:2025-07-30 03:01:18 UTC
Threat:Malware download Malware download
URLhaus blocklist:Blocked
Spamhaus DBL :Abused domain (malware)
SURBL :Not blocked
Quad9 :Blocked
AdGuard :Blocked
Cloudflare :Blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Blocked
DNS4EU :Not blocked
Reporter: threatquery
Abuse complaint sent (?): Yes (2026-07-30 04:26:17 UTC to hostmaster{at}jogjacamp[dot]co[dot]id)
Tags:NetSupportManager RAT

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2026-07-311.jsjs df16da7973f1931ac87c9276acaf387137f473f3daf862f96e59bc02f518e28en/a 
2026-07-311.jsjs dc7b6f4b38aafc61eae6cb02b5b7d4fac8a5bd01a4968c8614b7e30d21e9a158n/a 
2026-07-301.jsjs 02cfe73caa087b363cbaef0502fe776960d80aec00e526e2155cd0e7309c160dn/a 
2026-07-301.jsjs 5140006a4601748eb79fd5580678aab4a42828ea12df5776c249ade40dce079en/a 
2026-07-301.jsjs cc0eff73446b024835f8a18f8048fe05a9f8325b8b82a457f46b229d502fdce2n/a 
2026-07-301.jsjs b48dc6593998b59e391ef57d4cd5f2d9b31f00133108bd0357efb206a245989fn/a 
2026-07-301.jsjs 1d1cc97708f7d297b692d1927448b4748b3db8ace57299be4e0cbd5c092fe9ebn/a 
2025-07-301.jsjs 8b775beade1b017a5bac58b974ce873c5205f2541cd025197d9509d1d13ecbcfVirustotal results 9.68%