URLhaus Database

You are currently viewing the URLhaus database entry for https://flujofitness.com/ivtu/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2633718
URL: https://flujofitness.com/ivtu/?1
URL Status:Offline
Host: flujofitness.com
Date added:2023-05-16 11:26:03 UTC
Last online:2023-05-18 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-16 11:28:59 UTC to abuse{at}bluehost[dot]com)
Takedown time:2 days, 10 hours, 5 minutes Poor (down since 2023-05-18 21:34:49 UTC)
Tags:BB28 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-18Kudp.jsjs d3c6e06204212c1aeeef29809460056535cba3beca8cf163b7c8719671ef0c9fVirustotal results 22.03% 
2023-05-18Fkxvy.jsjs 1a2e818afb29521c8658d2a0643158af97370d69c32c0bd85cb900bd3e85b0eeVirustotal results 22.03% 
2023-05-18Xxlctk.jsjs 51ffefa8a10b6da720a80cec4735fe173669e7c974946e46c8dda908e824d8a4Virustotal results 22.03%
2023-05-18Ideq.jsjs f2f04c5d13d9d970bd5f1b417cfdd84a263284b3e3ef512085da25791ea08086n/a 
2023-05-18Iujcfnv.jsjs 828ab9b198ace6540bab66d12bff28bf5b11bb1258df06ae467240d2ff175f1bVirustotal results 24.56% 
2023-05-18Biysazs.jsjs 2177d925f10e2cd3a5d175b8e14d8faa7413f6cd18da6fc7832edca35cdb5aadVirustotal results 25.42% 
2023-05-18Ujkub.jsjs 19c40585627ffe423ed5f0a6da7706a51a4e068323d3f9cd2f54a01d45c02af1n/a Quakbot
2023-05-18Wqhlwau.jsjs 16cf6bcb57e5b6fbd88357c73a7c2e1fea2c60e1facf1122d4f6d9ef672f908cVirustotal results 31.03% Quakbot
2023-05-18Iuspn.jsjs 9898858b1809b1511e09fbef76498bfa2d39365eb70958ac81ba4a0263c6e209n/a Quakbot
2023-05-18Asifuqrj.jsjs 3f2b1d4fe71004830b3afc87d735391d7ff0033d3264baf0b9b84903c52c16f4Virustotal results 30.51% 
2023-05-18Wtrl.jsjs 9e158a8d22dc98e3ae057267f1f3abc2cabc910f829c052269762460d602479aVirustotal results 25.86% Quakbot
2023-05-18Zlisqjb.jsjs dd49f4bd134e3d669ea1daeb866bffdb27dd69e46b07dfc3b04758e718b40700n/a Quakbot
2023-05-17Varpaq.jsjs b866fb32a73c9c9a6de4c2fa92651d4d8d7f72f0fe66af797867274e8a889e85n/a Quakbot
2023-05-17Srklo.jsjs e4ec32150d6e87a71d76e7b2f71274e3ac9a2b263e4fec937fbcf4b766731192n/a Quakbot
2023-05-17Zwwccttf.jsjs 654d79d5b714216fcec5efd06082250b58afb76155c0be229ba139acd68d0797Virustotal results 25.86% 
2023-05-17Ybmky.jsjs a5ad0d19dd6ae50f16dc5be1921c43a887aba5ab8dae04acbea417a5cd62d61cVirustotal results 26.32% Quakbot
2023-05-17Uthjo.jsjs 4bc76e07bcd4d492a60a7464d0a8d6c204b4744fac7ea6748a6b673c6ff31cc5n/a Quakbot
2023-05-17Eeukv.jsjs 9b45c4614db7627fee14ec88aef1faf7e97115a9755ad170998bf331df8c2b0dVirustotal results 27.12% Quakbot
2023-05-17Gkir.jsjs b93e7c1a5d378e99de142cb47319276288120a8138977edf98875c43822f6d86Virustotal results 31.03% Quakbot
2023-05-17Gcdbcomn.jsjs e83bd9c4b21fcd0dac063c512259b7310762d0f7b923cba778206403e5314398n/a Quakbot
2023-05-17Pqatu.jsjs f01f0865df2414e66d4a86554dd03322ffc92bd6f4ca96050a884bd34582dfa9n/a Quakbot
2023-05-17Nbdfcog.jsjs 91a299ec3c647bfe19e76b56bb205a0fb4e93a1f20680c8a2b663170f016590fn/a Quakbot
2023-05-17Sicuzsk.jsjs 5d36a91a68c0e39918e20da24cda7c774ef2518618ce66800983e585241d477bn/a Quakbot
2023-05-17Jppxd.jsjs bee2c9dd67f4967b091704eda8e183d803c26d3bf93e8c80b7157ce8d46711adn/a Quakbot
2023-05-17Owwcygns.jsjs a86e816c51dacd306f763ddef4d8d967b2dd92e29d978fc04f7c1ed5e6ea0b58n/a Quakbot
2023-05-17Rnmlayox.jsjs 9bf16f4791f037cd10ee4e9f21ce11a77a4273dbe411fae69fbdb803f453a013n/a 
2023-05-17Fgoemm.jsjs bf77ee8c3f662a10ad8bd4de67f521a1369301fd12058bbcd09b4147c20ce0ecn/a 
2023-05-16Rmfmn.jsjs 7d8395c569104f2ca36f05cfd2d95e7272644f7e300aa2ec0a551621097b0b3an/a Quakbot
2023-05-16Sblqzml.jsjs ddec1aaec0b16c28943797821b84db573cee909669a5a5921e12c360f7fc770fn/a Quakbot
2023-05-16Fsvzmc.jsjs 3b3b949aff3e43dc3d6d1f70bc8323ab655e0d9705e42229e065eecc6a0a376fn/a 
2023-05-16Prum.jsjs 6d88573713c8158b79e70134b7e6e56a8ee6946536ed435071a988d352068fecn/a Quakbot
2023-05-16Ongsbrm.jsjs 52454f4d0032035b22cd404e0e33dd48261b493990e5fa5199ad6f07686367b6n/a Quakbot
2023-05-16Wxthraee.jsjs 631d2e5d74f49db1be42ed2dfe1aa4ae526d527d02110de379b2dc5c36af954fn/a Quakbot
2023-05-16Qkgj.jsjs de26f73a4a3f99f2566bfbf0829a55241990980ac1183d7b400bf695d951014bn/a Quakbot
2023-05-16Iobksol.jsjs 6df6072106a3c5452329118c547890b35070b99e261bea4d0b4b5e2c91d0beeen/a Quakbot