URLhaus Database

You are currently viewing the URLhaus database entry for https://success.org.pk/icuq/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2633871
URL: https://success.org.pk/icuq/?1
URL Status:Offline
Host: success.org.pk
Date added:2023-05-16 13:14:14 UTC
Last online:2023-05-18 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-16 13:15:34 UTC to abuse{at}cloudflare[dot]com)
Takedown time:2 days, 8 hours, 6 minutes Poor (down since 2023-05-18 21:22:28 UTC)
Tags:BB28 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-18Usuugksm.jsjs 1cea0c4b1af9170b9ed2927f3b100d202bebd1b8e69ba1527336aaa6b2c0bffcVirustotal results 13.33%
2023-05-18Qyhfax.jsjs 6016f12710a18923ed029eb1dc62882b5f1a032a7424e0169dd8c2228598f59dVirustotal results 28.81% 
2023-05-18Tzbft.jsjs c74cf0cb7927a8438a84c9cedbdbab3e4815550813336043f39674a67b6a021aVirustotal results 29.09% 
2023-05-18Jbicrm.jsjs c5b4c29787160ccb71f79ff6637aeac99008ef606c71a4b14629e1281f03f74aVirustotal results 27.12% 
2023-05-18Xrwjcfe.jsjs 1f26839da60e55672a1ff564cacf4050f50673ab46f7c13ece884b64e8db290en/a Quakbot
2023-05-18Ozekcdwg.jsjs d3174d21c0af8584eb01c73536a3c50de953ccf9c1486afb0e38c63e608d5342Virustotal results 29.31% Quakbot
2023-05-18Jetha.jsjs fcd00b353c980d48983a4a2533eb482d632935a343b2034ea119d3a4a74f3841Virustotal results 27.12% Quakbot
2023-05-18Ceypkqs.jsjs 3dfefc0e91ce9c601581448bcc12aa145f0ae317f0c3bf6cd09b4605cf679ce0Virustotal results 25.45% 
2023-05-18Wiodymw.jsjs c66769c1beccde8a71bc20172ba3978dfa20fa8e27c21976b94c10327af6d4caVirustotal results 27.12% Quakbot
2023-05-18Pmbt.jsjs e2cd2a44ac9c613f289c14a9d30244223f9949818db49dc69c73a5efc442a948Virustotal results 28.57% Quakbot
2023-05-18Odaf.jsjs 9992a7c1ac03c78d2395f55820f9ac6e7ddca51d747b443183c09f8f2395f2ecn/a Quakbot
2023-05-18Qibf.jsjs 3f2b1d4fe71004830b3afc87d735391d7ff0033d3264baf0b9b84903c52c16f4Virustotal results 30.51% 
2023-05-17Ltnea.jsjs 29d88d7a73d988b2b2c5ddc76ac150742366a2a8c379758bf47f13c2fcf01346Virustotal results 27.12% Quakbot
2023-05-17Rnlb.jsjs 1e96a7079b653386193018082948ee18ee1ca517dd96395eb46b4d5e30507b87Virustotal results 30.51% Quakbot
2023-05-17Gyjsjdo.jsjs 783e0a457afb1237e0956e6ff847bfcdb49ee23036f51b4621b534f54d67112cn/a Quakbot
2023-05-17Rkqwi.jsjs 1f4c2a4e8c95bab7ff916109a3978612cf0969f85e9f00ded884776dda11eefbn/a 
2023-05-17Gdjzbvr.jsjs 81f0fe1ef9b350d79e5c368c2f73deec42c5a379bfbbe52f88c1c79ee481b5e9Virustotal results 8.62% 
2023-05-17Mupcjd.jsjs 7e14e82b93e7a51daf3ab028772a41e20e60a31cc1a90985cf3598206b08805cn/a 
2023-05-17Hmlm.jsjs ea84f700c5132b793e8bbc20dd9383bd71e86ffe8be7ec16ec7fd5ada9cfb33en/a 
2023-05-17Xzohrmo.jsjs e86293d0a21c53839c98fc257a379f420c7060912f323d6323b145a02bd7e892n/a 
2023-05-17Cbke.jsjs 903dba21fa4d06b0a28484e8f6e26c0c1427fc6e8626640788cc786054a4aec0n/a Quakbot
2023-05-17Rzitkfb.jsjs bec922ebfbcb44218903b1a110dfe91c65d887becd00bffdb11a10bac7e8070fn/a Quakbot
2023-05-17Lunsz.jsjs ffd6e024a37e012b5bce1c7ebc56a083aa9694a1fdccdc559b8e502de4d1c442n/a Quakbot
2023-05-17Jone.jsjs 1fc36e1c8b397b77d18f7a8d040cec42378f963af1a474f4b4ca7addd053e644n/a Quakbot
2023-05-17Ukjzecvx.jsjs f1b7eb8613a10db944840595ca27ec9235915021d75e52ca3438ee81218ff683n/a Quakbot
2023-05-17Muapycf.jsjs 11be5f6397ea2be2da6d09132fba9e16aef35eafa2a94bc09fa81bec631847dcn/a Quakbot
2023-05-17Yakte.jsjs c2fb7fc0438820255aab257c2bfe7ad9c86f75911e01ef8b8d7baa188ec209e4n/a 
2023-05-16Eydorb.jsjs e0e94de37f6abcebadfba8ad22bf3896c375417bd077973ecac0c455ba29fad8n/a Quakbot
2023-05-16Loswtgtm.jsjs 270d9fe3394cdcc8ebc75a5fbcb936ceaec6e038197400f15a50445eba1664cfn/a Quakbot
2023-05-16Oqleciz.jsjs 8a944c917891cbfab3b87fd61fc43f7b647a1b46fdc74dcbcc2696040595f2c7n/a Quakbot
2023-05-16Nbvkkrc.jsjs aa609a27c05b46a3aa77b3c0262ff48276d57985bf0f3db1c864d64ed1967424n/a Quakbot
2023-05-16Hqpk.jsjs 2979aa9a110e545a1c577508bd8a2102a0706fc71eca6d1d5ce70839e7498f49n/a Quakbot
2023-05-16Gsvveuub.jsjs a1161030004b5b3a1b36e821d31d46bc6b314dcb1febd3709f343e53fdf31f73n/a Quakbot