URLhaus Database

You are currently viewing the URLhaus database entry for https://mm-f.org/iu/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2632721
URL: https://mm-f.org/iu/?1
URL Status:Offline
Host: mm-f.org
Date added:2023-05-15 15:14:57 UTC
Last online:2023-05-17 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-15 15:18:23 UTC to abuse{at}hostgator[dot]com)
Takedown time:2 days, 6 hours, 7 minutes Poor (down since 2023-05-17 21:25:33 UTC)
Tags:BB28 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-17Jexow.jsjs 23fb378ba68beb5c6b1281c46215b56754ce9f89836c50f35b59615c2f79b455Virustotal results 25.42% Quakbot
2023-05-17Veqhtwx.jsjs 00101ce136b60da252cd994cf9a49191259f677d6b7f56801b5d6084e3b5a1a5n/a 
2023-05-17Xjjfx.jsjs 0e6261c9c8d05c96074d71e8c45d5c3dbb78736803c84ec4565a0db8dd83510bVirustotal results 29.63% Quakbot
2023-05-17Zxgv.jsjs 4763068a93fa58650c7a913bb253b59fb9f5f7da3d041d28302d9d1b4d301008Virustotal results 27.12% Quakbot
2023-05-17Jwtgwuet.jsjs 7f5092d0b223ae713b6ead45d62c1c63d910a500fc960aeae16e1a1073355c86n/a 
2023-05-17Matb.jsjs 0a9837911163c323e4357cea3bab53d6fe6b7a76080b815d211f04e9e2430ac8n/a 
2023-05-17Lxmycpvt.jsjs ef70818b66fcef467ae3aeea154c3e24b6f0883ec88d360aba6c325d31cfd063n/a Quakbot
2023-05-17Gjvjsh.jsjs 06599c4f47d61f8e2f6a357ecb48e15729bc5fc880b4adfe1f5f31cb300f20a9n/a 
2023-05-17Zrrvil.jsjs b6d29385cd7f8db8dbe9cb594f45251de756d5f01e64fdf4d1a9b4e81a372d5cn/a Quakbot
2023-05-17Cnwawurg.jsjs 93f191ac8d75f7cff28965270523e9cb83f5b2bdc9687c9ea20fa1f73932fc35n/a Quakbot
2023-05-17Riij.jsjs 22665f7e7df48569faeb69182498690977e601cc3281fab3617927c0e44a98d4n/a Quakbot
2023-05-16Adie.jsjs 1b7081bb91ebc4043d9ce5400a31e3647a52518efde33c87098cedeb02f21e43n/a Quakbot
2023-05-16Piulpckn.jsjs bfc4ce0b2de94b06c5bf9d15f1d007e5c4799648bda463f8820b5154f9384a9an/a Quakbot
2023-05-16Anumdz.jsjs 24c8622ed6ba83cf15e0569210b383a38996b72371ad069d203357523768c95bn/a Quakbot
2023-05-16Plhpqqjm.jsjs e85ac7e35cd44e666df2a5f3df1002bf5ce65706edfb2df552bbea0c579ca1aan/a Quakbot
2023-05-16Yuqtb.jsjs 90556b668b1ac91ebfc160ec0661d15beb8b3399d0a74dc8fd7a0d0845e05aa2n/a Quakbot
2023-05-16Dhwudftj.jsjs d652f5ee4ba14cb254c9e36c8e60de2a28ea9e6966a0dc3785bf393077358e4fn/a Quakbot
2023-05-16Zrqi.jsjs 3bebba9d3d951677a8568d1b5a81c923b1675cbe565c3540661d6aab1f3d0e47n/a 
2023-05-16Aaim.jsjs 538f47f3f1fb2c002dd17d9de2735707b27056dbe36d825ff78f466cba2db34fn/a Quakbot
2023-05-16Qgluwi.jsjs 311dc4eb66a95f3736a97bf9a5be65d13edc25b0fd2da7eb94d1761ee515ecbfn/a Quakbot
2023-05-16Kwlk.jsjs f2bb199425f5379492daaccc95fa9f7fd75a352d51369a3fe51b8b55edcf0b22n/a Quakbot
2023-05-16Lczcpbl.jsjs 420dc8c9f9fa5684d72a1743f28e63604a6257a2a2246fd22fb9d75312e3d0b5n/a Quakbot
2023-05-16Iwdald.jsjs b1a3f08eb97104b8f5c5da6d7825b9d8c37f471747712fcd0e0aed8d2f6410d9n/a Quakbot
2023-05-16Evcy.jsjs c32611217bc13cad7501a78c4a9609f9c0d6a2c6af6296ac55e39b885e8b3cc8n/a Quakbot
2023-05-16Dgtgpxe.jsjs cb4922d847df5bbd3c2986f5a5e7c80eb0ec253b29cacaabe3ca0546b202ed7fn/a Quakbot
2023-05-15Scvlcf.jsjs 47d8c036a5273e8b9c81bd1e2ce2523654f57eaef41da5a21259ee2fba7234bbn/a Quakbot
2023-05-15Kqzveg.jsjs eae0f557c84d02113c67bcfb8e25b02056f55a3232873fca401a4279dc80b0bcn/a Quakbot
2023-05-15Exrec.jsjs c025133860b40c793f7b1766f5843ff4b8ec776fe53725b8f0352ee393f9e66en/a Quakbot