URLhaus Database

You are currently viewing the URLhaus database entry for https://vvusc.com/drml/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2632690
URL: https://vvusc.com/drml/?1
URL Status:Offline
Host: vvusc.com
Date added:2023-05-15 15:14:50 UTC
Last online:2023-05-17 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?):mail Yes (Ticket DCU100115905 created on 2023-05-15 15:15:21 UTC)
Takedown time:2 days, 6 hours, 41 minutes Poor (down since 2023-05-17 21:57:13 UTC)
Tags:BB28 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-17Feevmem.jsjs fcd00b353c980d48983a4a2533eb482d632935a343b2034ea119d3a4a74f3841Virustotal results 27.12% Quakbot
2023-05-17Gvjqhng.jsjs f91b22ef75c62115177abfa54ffc898319098f3de31ddf0b2a964dae96c3b376n/a Quakbot
2023-05-17Pzlgcx.jsjs 35c35c65a46137ab025bfda60be1ea1c10a10b9cae6e337415b9c7b2ebd3df3en/a Quakbot
2023-05-17Qohtno.jsjs f27926066b5633ef279634f13fac70b4fc198ce37d68ef22e07fa19e4bf0fd44Virustotal results 27.12% Quakbot
2023-05-17Vyurfn.jsjs 307a3ef8bc1930af1d46fc60bac9820950e278feee14f7a931ac745613568698n/a Quakbot
2023-05-17Xfabb.jsjs 37749b4681e7986da908e62a48827647a51e4a69d5ed05840f61c67407179c19n/a Quakbot
2023-05-17Gyxrqbnk.jsjs 91f3702afafc2eec9a0f6ce02ed5fdfcc886e336606c12ca6a6a071d311cdff8n/a Quakbot
2023-05-17Tryfhkqh.jsjs 2ba84c0a78614579a34c1e4420bcccf6ad9331757f5ab9a852b3d2daacc0706dn/a Quakbot
2023-05-17Hpqkfqnc.jsjs 35a97960ecaf89e854ab2c24dfba7eeff1fe7fca55a51d825f12a263a27f61fen/a Quakbot
2023-05-17Nufvnt.jsjs a58ee19bdb9b7324bdf82a08aa095496301e1a5f36ba24ccecea16c622a2566en/a 
2023-05-16Qbgfo.jsjs c41e876efb1031922c7950217c92efbc3b236da02c05ba4a17ae2029a187c0e5n/a Quakbot
2023-05-16Geabbx.jsjs 10a9b4574c8603ad805a1ed88d7af2cf813728da4131e591b2bb90a8640dceaen/a 
2023-05-16Xrtojoww.jsjs c7c579374e51cf0b0d912428222d86fd727482a7d1f74bd442e935464f840590n/a Quakbot
2023-05-16Qefdxons.jsjs ee6abdc96dafe080345c76c4da47e0c2501ce0f4aa7a1e7af851b5b43225432dn/a Quakbot
2023-05-16Saxlumh.jsjs 13abe7e1cefe987d1776824c5bea3506036b35e8a0255957f0673da5486853e9n/a Quakbot
2023-05-16Yxfuj.jsjs 8d9acbfad97edb79bc9d192128f6f76d98559b29870c78c8eb7a5214846f3f46n/a Quakbot
2023-05-16Oibpct.jsjs 9a07f206a504a618dd5ab72f2c517ad6b1600622dc406159814321998dc0fdfan/a Quakbot
2023-05-16Qbbxof.jsjs 95a03f23418ba6037ff05ebfed3c01f7b7ae0c0984515a24862dd9db40dc3a3dn/a Quakbot
2023-05-16Ghaukk.jsjs 22d0d595511df9e7c722470888691c1b5597b3768e0717350ef523af935464bcn/a Quakbot
2023-05-16Facovoed.jsjs d25143956df4875ac968e13ccf2dd3445b196e1723421901e3d726a3f8e77b31n/a Quakbot
2023-05-16Xdiazdld.jsjs fa28d448313b4f69b55790855cf6528916c5eed00b0ed6421aa183ed6321b2cbn/a Quakbot
2023-05-16Phbanvis.jsjs e88a3cfd40210b5c7208d79e62c300b8dac008d977664920b194f2cd03f3c80bn/a Quakbot
2023-05-16Nnzsw.jsjs 2018c33650181a6dbb1b4a213fac6d6aa8266db527716e9444e8f349dbeb2fdcn/a Quakbot
2023-05-16Hysc.jsjs 98e84fb86a6e7e11a94f3242ce467a1905c0ee2180397cb533a7c24c5b516be6n/a Quakbot
2023-05-15Qomu.jsjs 256bb3d97852be2e67dc5fca2796d001bb9650fead69264a350b99cecf15b1c3n/a Quakbot
2023-05-15Eenpffch.jsjs 8575ab774f55c7bcc3297834d63f26c437d1dee54d69d51f549ac5cb4b20b302n/a Quakbot
2023-05-15Hwjotx.jsjs 3e0060bb8ab634927cc40fa145a245138d0e65c2335d69cf2dd1528aa0db7db6n/a 
2023-05-15Evek.jsjs 90a47e9417e16883b6414ac6c3b9d604582a79c9bc824efcf37a6c24d1babd9fn/a Quakbot
2023-05-15Fxkhyd.jsjs 5aecdebf1c438cf9e86f585ba7a928ca768f9201bb1a35b25f07e626b6ccd245n/a Quakbot