URLhaus Database

You are currently viewing the URLhaus database entry for https://mm-f.org/et/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2633859
URL: https://mm-f.org/et/?1
URL Status:Offline
Host: mm-f.org
Date added:2023-05-16 13:14:13 UTC
Last online:2023-05-18 22:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-16 13:15:36 UTC to abuse{at}hostgator[dot]com)
Takedown time:2 days, 9 hours, 18 minutes Poor (down since 2023-05-18 22:33:39 UTC)
Tags:BB28 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-18Tdlwhglo.jsjs c74cf0cb7927a8438a84c9cedbdbab3e4815550813336043f39674a67b6a021aVirustotal results 28.07% 
2023-05-18Ouwqvhak.jsjs d3c6e06204212c1aeeef29809460056535cba3beca8cf163b7c8719671ef0c9fVirustotal results 22.03% 
2023-05-18Lekqwquc.jsjs abe0444477e05016cea75af86e2fb39a9090ae5fa912beb491f486d1298d5989n/a 
2023-05-18Nbypmhk.jsjs 256b5693dd43ba9ac782255a11f52251481f5d72c27042d4b6f9bb05aed317f2Virustotal results 24.14% Quakbot
2023-05-18Ywebecy.jsjs 9d55c860ce682edea5933b6e9e441703b00b9880087fafd62ecedabf0665836dVirustotal results 32.20% Quakbot
2023-05-18Oxvjvqpv.jsjs 72495f905e654ea365738e7e3ac93200be27ad81df4327197c8d1a1427209a25n/a Quakbot
2023-05-18Bfhistp.jsjs 93bba231e08381a78fea4f6623a38ef11130273ca9bad59f5132b68797d90d23n/a Quakbot
2023-05-18Yetukhg.jsjs f37d3c915b896922eed07327ecc8b944fcab1445d20c02c26c5aab8d91473b45Virustotal results 25.86%Quakbot
2023-05-18Aupam.jsjs 817e3087dd09d826cc20a0381d67784b264c51a854134ac760b9219f49d58f0dn/a 
2023-05-17Wuajbdzk.jsjs 8b2b3c3498bea970b5883a908b36e4437b9809a010cf2df44004264d33d66dbdVirustotal results 11.86% Quakbot
2023-05-17Zxfwjoe.jsjs 8045c5474873d54e74acd15fa59448b63e4a6d443562ce14223f30374924a094n/a 
2023-05-17Fusevw.jsjs 16fe8055701bf9e829e70c4811b31fc75aec4d03582697ab493fd530e84ac6cdn/a Quakbot
2023-05-17Djbvhqo.jsjs 49255538015c01aa00ddf4828db000a7ef75677681ed98234a94a9ab84e159cbVirustotal results 35.59% Quakbot
2023-05-17Qoqidd.jsjs 4740733be7e52c249ac1279362bec08d1af06172836e48e8e4d016c679ba2c01Virustotal results 16.95% Quakbot
2023-05-17Kshcyyt.jsjs 7b501e67649c8608b6333e95e174a2d3db77d745651cf4142c43e79b0e1ed927n/a 
2023-05-17Uuusvuh.jsjs a5f0035e2f6ab21d643775a304ea994d963bc0ad712a5ae1a9ebb1a5298f7adbn/a 
2023-05-17Kntqti.jsjs 2ea57f7ed2c3148b87f87bed297e9f780f369a71667342ed01a88fc779a24eefn/a 
2023-05-17Ywvznh.jsjs 25c73eb5229743d1f7b03909ec112996b89a96529454731c9dae3f9b1d72e2e0n/a Quakbot
2023-05-17Oovudz.jsjs 6df249ee269ac7b084915c1e0a49d7b3b033eb13f802ee29302894f6cc941b37n/a Quakbot
2023-05-17Iftl.jsjs bfbc09a62439d36fb34e6feb1a20b9aec18a06eb50e19c4198e95cea79858f70n/a 
2023-05-17Mzdzipjm.jsjs 618c5a96b1751bbce5ae40a90b7f6e56d40e8f26d01c05e07c0623b73fea838cn/a Quakbot
2023-05-17Tqoi.jsjs 6f145ac41b9d49d78dd2602b03769d264dfdeef1d8a8f58320ca4cc6eae5b1dbn/a Quakbot
2023-05-17Xxhfguvr.jsjs 334ed8ac2d79267cecdb85ca6dfe430565f8c10efe2d267211f595acea233487n/a 
2023-05-17Ihzigi.jsjs 9fa9cc1adb79746a6acb8e8b377504ec3952a83914ca29f4f8f4c69a4994ded9n/a Quakbot
2023-05-16Wqpbfxz.jsjs 177590b882622819a6defeb1f54aafb8167df4bf5cbe6fa5d1c62fabfaebdd04n/a Quakbot
2023-05-16Iyli.jsjs 566d882b7c1277d3db5f1f15d7bc0905b1f3bc2142298ab6cfda67200155772bn/a Quakbot
2023-05-16Qcfr.jsjs 9d5c4c282e0c000b6f79ccbb15f0f176ea329d2048fac6d47130df3070de0576n/a Quakbot
2023-05-16Gxmnzuu.jsjs e3134deed010415874181d8c19aa32ba313ffa7f79b42d89b85512acebb5dac4n/a Quakbot
2023-05-16Oelho.jsjs 42eac8419e1718c2364bf0630d645235cbcfa49afabfe8302553837fc9ee925an/a Quakbot