URLhaus Database

You are currently viewing the URLhaus database entry for https://picc-penang.com/udan/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2633944
URL: https://picc-penang.com/udan/?1
URL Status:Offline
Host: picc-penang.com
Date added:2023-05-16 13:14:37 UTC
Last online:2023-05-18 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-16 13:16:53 UTC to abuse_dci{at}tm[dot]com[dot]my)
Takedown time:2 days, 7 hours, 49 minutes Poor (down since 2023-05-18 21:06:05 UTC)
Tags:BB28 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-18Kimnbw.jsjs d7522ab4f64ae0950e24bb00df9157136bbcb900ace0c77bd1a46f06149bf37aVirustotal results 24.56% 
2023-05-18Jidhn.jsjs bbcdb87a842c5157acea98f0cedd358f764e2613b6a635e4f9f5946de8c07780Virustotal results 13.56% 
2023-05-18Hesxjzed.jsjs 103fe9dc59325bc38c98524186c10a14e7f9a3db43ec9ccb986383814b76dd9bn/a 
2023-05-18Zjsu.jsjs 5d7f117d56aea8e70b5a3df7a5c641e90d0b127b81ee903d2f0d8a469c5c1ccfn/a 
2023-05-18Vrhmx.jsjs c6acb46e483e7792474a50acd3a7ad70626f538da57050c7153b3061376b4f02n/a Quakbot
2023-05-18Urhzdm.jsjs b64790ef2bb214bf0fea83cb0aff305cd66dd38f065ab3cc62b9ddf5d3570eecVirustotal results 23.73% Quakbot
2023-05-18Pgwvlrpn.jsjs ccdc371fa95a2dc8192ecf73826f489942857addced0e8ce4b9aa969aa98381en/a Quakbot
2023-05-18Wxed.jsjs 0b7fccf63d874ff825b5a3e790311b7dd0923c82b142520db78f43a8191e9216Virustotal results 22.41% Quakbot
2023-05-18Mxkjka.jsjs c7164e6f2a5f4d34a5877e5de94ba49af13d9b6e10be7158adc9e0d267084c28n/a Quakbot
2023-05-18Wwrnmgbp.jsjs 0727eef30bd3d52541c3e05de818415c77f77ce68db06ea425431972136cf8c7Virustotal results 32.20% Quakbot
2023-05-17Pbix.jsjs 1518f10a4a3e1bb0772544083dd21336675b9248d73c59f8dd75068406de1474Virustotal results 23.33% Quakbot
2023-05-17Ljcde.jsjs 875bccb572b756073e35cf697abde47c18a8fc4156b093bd6d229ef766faed99Virustotal results 28.57% Quakbot
2023-05-17Idsjarv.jsjs 79126f299d6fa3d58aff457d118ab11356537345d798c52cf1849567bbd9156dVirustotal results 19.23% Quakbot
2023-05-17Zztsst.jsjs 399c7eece18438ba4f325cfc3863d0603d1237732a310fa2124a136ff2a335afn/a Quakbot
2023-05-17Vpew.jsjs 6d5e3d77360658771bba4d35e8dd94a77d30f33a7c30ab86b66e271b54d2a638n/a Quakbot
2023-05-17Fuyelt.jsjs 719ff669cd7b0754e787346601124ede6c1238c49809ebd0d6b58a3bf4b5a9bcn/a Quakbot
2023-05-17Sukek.jsjs e98322a90e5bf58b30565a05b90d9fad6cfb4e76bfe0fa3e94984607b8536d5fn/a 
2023-05-17Hben.jsjs 9fe4b36013ff34dd96a08c3fe5aa0242398feffc7ce303310bd17485ea43f1b6n/a 
2023-05-17Uaxskvl.jsjs f7e311b768e268fbb2a007001f3b99f79b104305c1b08dc96c7a258ff0ff53ddn/a Quakbot
2023-05-17Wnep.jsjs d785250ff87c908aea4f5a9400220d321ea7baa4233c00f7e45d3f61abd795d2n/a Quakbot
2023-05-17Ecokzg.jsjs 32b0238a178f49831ee8837d3537ef613a39df7c7852279dd054aee6528416b5n/a Quakbot
2023-05-17Yijhawsn.jsjs e2a06e2845a2835cb31c16a77c2a1e3c627966baae93d7d900889b0e794d9d54n/a Quakbot
2023-05-16Oljjrawi.jsjs 1cae8f6776966c3f146b14d72036467d1a4d4eeb8745ebfdbbaccb0e101064c0n/a Quakbot
2023-05-16Eudbpct.jsjs f92b21035b15376c6e96e048130fe6cdc43efeac97740761367d44ad7187c424n/a 
2023-05-16Ofhyyyb.jsjs 0890584717ef34d202a49661265e870edb2b3434036a750918c67895acc341dbn/a Quakbot
2023-05-16Iczcbwkf.jsjs 20cdf9af33f25dee8d59e175b7c120a03f3769732228a35f6437028e9b065c80n/a 
2023-05-16Bzvjl.jsjs 02517cf49118761b4aaf111205d2624f1b31350afb80f4023ecebcf49d246361n/a Quakbot
2023-05-16Ywkvbqg.jsjs e974c2b579be18b9d6ca4d2aa90e35c30024582497d6d7aa11290e6c58737cb7n/a Quakbot
2023-05-16Zwevhk.jsjs 13993b3b5e327cc8453b8afab1c4ab01654eeb85eb89a589dbe17858077031d7n/a Quakbot
2023-05-16Sronw.jsjs 917fcd5f04d8b74ac1c968463c7f59be5bd4e807dfb1eeabd55b56068c0056f6n/a Quakbot