URLhaus Database

You are currently viewing the URLhaus database entry for https://mm-f.org/rtuc/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2628678
URL: https://mm-f.org/rtuc/
URL Status:Offline
Host: mm-f.org
Date added:2023-05-10 15:37:21 UTC
Last online:2023-05-12 22:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-10 15:39:16 UTC to abuse{at}hostgator[dot]com)
Takedown time:2 days, 6 hours, 31 minutes Poor (down since 2023-05-12 22:10:22 UTC)
Tags:BB27 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-12Wete.jsjs b58d804e2c124ac9d0dfb72f8c5bdfec6151b0f5ba532892059a4016fc6418den/a Quakbot
2023-05-12Schhh.jsjs 0ef014817bc29d6794d1e413359690734fb5bceb85c9ffc08e033fa563485c49n/a Quakbot
2023-05-12Drax.jsjs 6f71d4f6e28c201d28b714cd320e32186773b5e0eb933fe3ba0a9d5318f90cb3n/a Quakbot
2023-05-12Obuhnnab.jsjs 0fcbdc24a83a0fd9d0b34dd2eaee148df5df5fff08d419774feb79f09e873e92n/a Quakbot
2023-05-12Qbwn.jsjs a1014ceef22ae6cbc3915b13292b0b05c96b4369e6ffd01e52cc545b4fe65939n/a Quakbot
2023-05-12Vykxc.jsjs 535b3a4db417163c81b0f9da677d228a7b6ba2c5ddbb5987d61fb96f7c7f5ba8n/a Quakbot
2023-05-12Dkrjq.jsjs d2398a7aca0e81b32cef1afe819402dc315b9a7e6980de84af13326050d5f6dan/a Quakbot
2023-05-12Fcvwom.jsjs 62edcfc518a04db7338762b9bb4db8fff9f6fdf9e875ee435296546772d77424n/a 
2023-05-12Cadv.jsjs b91a59bece81ab5fa26c3f48354bf3ad45906b753e42238d7136dde49c55bb1dn/a Quakbot
2023-05-12Ubkpfp.jsjs 93a7206119b477550cac24025df2c33ff85037952cde7615996a13b9faa3f2aen/a Quakbot
2023-05-12Nnvfluj.jsjs 303a1c9771351d6ff8ba7f3dc52faa50613a68dfddd5cbd2610302a98d37546dn/a Quakbot
2023-05-12Qkypkg.jsjs db5535836c001d59af8409375497ae79532d43f61cb9c70b6a6b7a4afdfb82e0n/a Quakbot
2023-05-11Zdjq.jsjs 3c976bc9fe2c8d16026ce4d99b540c08c532c48e2a487372671848fa2edbba36n/a Quakbot
2023-05-11Cupzddp.jsjs 576807672c43a6666e16362ff430fead44cdd0048fb99c4d2f8659993aa1e73fn/a Quakbot
2023-05-11Jnscc.jsjs dcd4db5a72b3a13cc99940445195be1897b906dadcf530b85032b1faf04a93e1n/a Quakbot
2023-05-11Jchg.jsjs 37bcc1ee35cd20b7c5939214065c229577413cbf95849fa03dcd9c9dd3c13edan/a Quakbot
2023-05-11Vaoiobpf.jsjs 78ee5af8c74d0dafe81906418abf7565dc874a6584047f22ea5488d986a6ac42n/a Quakbot
2023-05-11Ijngazok.jsjs f0eb7d34f8054f5139650b509352078da232a2e34f5bc7c026495d5444482ed1n/a Quakbot
2023-05-11Kzgc.jsjs 11414149ca758e07cf45486d5c2ffbb36d8ed1c5fd64b863f8728436cc10b155n/a Quakbot
2023-05-11Kymbfhcd.jsjs 49a6a61243158257e68a08c9f9e3b0c46656200a32dff81c5acb1a7bf7bfb333n/a Quakbot
2023-05-11Nauwmb.jsjs 8d8527bb57dbb203697d8618d6d09665bc0707a62a532e55ef1a6d2544edbcd9n/a 
2023-05-11Sesp.jsjs ae37fcd91b04b6e26a1b05d573941444dadaa31c6d4b7b0a8edadf8e73c2abe1n/a Quakbot
2023-05-11Xuqxjff.jsjs 3ca3309899b638b04a67353040aae87da2b7451a3d0b314a01e0dac1f046328bn/a Quakbot
2023-05-11Cscdwzps.jsjs 3fe76e32feee7aefc5b307a819baaf3c4af516678bf95d61450238c13e3d43abn/a 
2023-05-11Lvkpe.jsjs fa8a2adb2b63fd211b7014d965ae3203ea68dcc02e720c76fd53e987ed870574n/a Quakbot
2023-05-11Rpbl.jsjs a6df3ff97fc889d3b55ef3b4aff4d6a6648ad3b34bda8c0ef3853b3f29cfa3b5n/a Quakbot
2023-05-11Ybyif.jsjs b437825b9e613426381ddac2e3c3e8792e938fd370e0a2ca74ce0281d3301b09n/a Quakbot
2023-05-10Shwurch.jsjs fb6deeb0aedb10d6511a1697fbebae5868ec78ca6ec238d14947a2b86d122fedn/a 
2023-05-10Gbszb.jsjs e78a5fb4afda922f1e02640a2763c54191bc84e8c7f39db9381bdd08b600510fn/a Quakbot
2023-05-10Pzyg.jsjs 70824cc88e37a99a7d2ec2f45bc1e9c334e08e63344dc52d5de4f4142cced66dn/a 
2023-05-10Tcavk.jsjs 3760f3e048812d8f5a72cc9888a3e6c10b9166e91ca3c5f953b340f725ed0b74n/a Quakbot
2023-05-10Oxowjbev.jsjs 5b80ae660000a275773aed0f7c723128f10cae591c1ea161b9796b3f8c8439dcn/a Quakbot
2023-05-10Mvkmvxqq.jsjs d52f66f99a09283af0f297f036b43662dab455ca4cad37f83f563c8685a1769cn/a