URLhaus Database

You are currently viewing the URLhaus database entry for http://oficialrem.duckdns.org/SOSTENER.js which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3787544
URL: http://oficialrem.duckdns.org/SOSTENER.js
URL Status:Offline
Host: oficialrem.duckdns.org
Date added:2026-02-28 14:45:10 UTC
Last online:2026-04-24 23:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Status unknown
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Not blocked
Reporter: DaveLikesMalwre
Abuse complaint sent (?): Yes (2026-04-24 17:23:16 UTC to admin[dot]internet{at}telecom[dot]com[dot]co)
Takedown time:1 month, 28 days, 15 hours, 3 minutes Bad (down since 2026-04-28 05:49:27 UTC)
Tags:opendir PhantomGate

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2026-04-27SOSTENER.jsjs 00b1751dcdd3decc726e1885ed9493e1342977eb77ab2ae4c041787997ea0248n/a 
2026-04-24SOSTENER.jsjs ae18252cd33e1031cb9cba2cb1be4fc30422f0ea20ab2337a201d3adba1c5a18n/a 
2026-04-20SOSTENER.jsjs fe91e39da612b73f2ac88ed64c65e9cc9adf7bb9e01716d7b98bb4a11f236a8bn/a 
2026-04-20SOSTENER.jsjs 6b7d3e8fb5d674afd42a8532abe0ce99cc8d9e3010d972755754c5ef52e11c3dn/a 
2026-04-16SOSTENER.jsjs b6a29ee040d6dcbb9168c19299b4b1578a58dda1e2cb329f24b65dd7a94e027dn/aPhantomGate
2026-04-14SOSTENER.jsjs 4f569e4456ef1d1b77b84220061d3af7b61c1447b2ed041283af27f38d5b23e5n/aPhantomGate
2026-04-14SOSTENER.jsjs 07bf65a19f185ee51e47bbb2f82e4e6119adf880a293e4bcf313beca6269415cn/aPhantomGate
2026-04-09SOSTENER.jsjs 396d24cfc944d201e8933ef585475cdd85578e9bec097c33cdb359febf3e12a2n/a 
2026-04-09SOSTENER.jsjs 3b74dce5e65c483c8f435ba6dd8105e35353176a8bafe2420d99d693373abd46n/a
2026-04-06SOSTENER.jsjs 61dc40d43ca3415f441086c56ba638e01f215c0df62e89a858d929acbae9f357n/a 
2026-03-27SOSTENER.jsjs f1ef60de691b2d5f985a661a89a6d714270ccec01090b7b8c8e1e2b9a2648e6dn/a 
2026-03-25SOSTENER.jsjs e2be753d6ef9a78dd5157ee4f26a11a1063b3729e6922d5372ae8f56d4147266n/a 
2026-03-19SOSTENER.jsjs 1190be3e8afe70664c3754b5895dcd1aac75493759622a02790479966e7f0a86n/a 
2026-03-17SOSTENER.jsjs 5bcfb668af32d8a0a92bd63f42c346b0a62cf19c82971bba3141e74365402d9bn/a 
2026-03-16SOSTENER.jsjs e4efaa6586a5310803584d5387e63c69665eeb7bb459e94a2d57c6efd6f85b6en/a 
2026-03-12SOSTENER.jsjs c29f0251fecc304e105b72278cc9af4b9e9733453025c4b308b02db74bd3fadan/a 
2026-03-09SOSTENER.jsjs 55e0a48d00b66f4120c0ee4828203b60575af2a7b934615b41b52a742c18345cn/a 
2026-03-05SOSTENER.jsjs 323ba12a27d09645fa76a8c2bd98985d1dd3558dbf23434137282ad0104a5120n/a 
2026-03-04SOSTENER.jsjs 7d93ed2dbbae78bc793d782b704786799fd4326f1ccc184570e372113be838d7n/a 
2026-03-03SOSTENER.jsjs fca8a76b019f76684de7258cb9bb70193e54f5e2e2b70321bacc2c5dd786cb76n/a 
2026-02-28SOSTENER.jsjs dd16432c830384c1a26ef606f85c4d113297c2b5119796780868d762a7a93ce1n/a