URLhaus Database

You are currently viewing the URLhaus database entry for https://techmediafilmsandproductions.com/moo/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2634000
URL: https://techmediafilmsandproductions.com/moo/?1
URL Status:Offline
Host: techmediafilmsandproductions.com
Date added:2023-05-16 13:14:52 UTC
Last online:2023-05-18 20:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-16 13:17:51 UTC to abuse{at}contabo[dot]de)
Takedown time:2 days, 7 hours, 27 minutes Poor (down since 2023-05-18 20:45:15 UTC)
Tags:BB28 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-18Hpxku.jsjs 1cea0c4b1af9170b9ed2927f3b100d202bebd1b8e69ba1527336aaa6b2c0bffcVirustotal results 13.33%
2023-05-18Xhnaplc.jsjs 1a2e818afb29521c8658d2a0643158af97370d69c32c0bd85cb900bd3e85b0eeVirustotal results 22.03% 
2023-05-18Kwqsld.jsjs 94934ae30e52ec564dac1007c78697059face6e178a3e5ed3c42bfb6342a12e0n/a 
2023-05-18Jlsbnolv.jsjs a357a8a9b62674cff6660b76659f4cd36ccd979d44937371bde57235d81c392en/a Quakbot
2023-05-18Lblzbr.jsjs fd0ca1aeb929c31a64a1ec9c5027c0c2c644161a6fe7faacf6ea8ec30ca8806an/a Quakbot
2023-05-18Xgshxbx.jsjs dc0d873178c61dae13dac14d65611d4716e9c28ebfa216e32126dbdd1ac971beVirustotal results 28.81% Quakbot
2023-05-18Jotwmhxa.jsjs 20336fdfef9d5684dd6055ff838104e334316b82122b0a12b809b529b1a66cefn/a Quakbot
2023-05-18Xbpxoca.jsjs 4fd5f473b0f97c7dcf4a244234c780051bb0e3c316acbb18b7f959a6663c9454Virustotal results 22.41% 
2023-05-18Enalhtk.jsjs 9162c26ac66cb673664c91b6a22e788a008db7c2bd2b4a9b7788a47fe85f33eeVirustotal results 28.57% Quakbot
2023-05-18Cbcmqsf.jsjs d8ee25b9b238ffa9197d9bb3defe47e9a2720909109c315f32b38191a4c534afVirustotal results 25.42% 
2023-05-18Ijzxx.jsjs 4bc76e07bcd4d492a60a7464d0a8d6c204b4744fac7ea6748a6b673c6ff31cc5n/a Quakbot
2023-05-18Watdd.jsjs ec6f55b9c56d3dead8b8490dfbbcccadcdfef62b7d67c671b8d0ee9620f4b74fVirustotal results 16.95% 
2023-05-17Rlcudrj.jsjs 26e8f5245d3928df93af31946f3ff6dcf2291861ef4835e6b23e145cfcf9f8d5n/a 
2023-05-17Jkvqs.jsjs 27544c60ff36a51e0dae2573402a63de5c6ae28c1c7160377a0d3787272d74bbn/a Quakbot
2023-05-17Awpaddiz.jsjs f2a2ace114103a041e79ed5165b96ac32d3595aaa0c8f1ff92533be7728179a4n/a 
2023-05-17Sdiybgv.jsjs ba7f993248a05baa4fc8af51ce3e8f89889e817065c4b964cb37bfc088ae75d1n/a Quakbot
2023-05-17Iltdp.jsjs ba4eb74cda0088a1269ede2dd12d974109f7b392ff522322070233d302cb3d01n/a Quakbot
2023-05-17Dakop.jsjs 7237114103b60a76ef6a67916d0d6fc1e14dc707087bd27684d1093748393f39n/a Quakbot
2023-05-17Hysv.jsjs cca9ae0f45d9d362a7e18d9f86ed7a18a1340c3f3d4811c7a2ddc658408bd496n/a 
2023-05-17Qiaedleh.jsjs 1496ca2442c01eb9f65c38029933565ba8cad46519a71c95f2403e47ae00f320n/a Quakbot
2023-05-17Pcpqw.jsjs 147a719448e398653ff963a13c90e814cadd0b5b3fb7e5aec8ee129e8c75265bn/a Quakbot
2023-05-17Rhfh.jsjs 5456880b5d02027b2d4e45c75c3339b09c4e6eebd4e52845b560ea8bc7600a89n/a Quakbot
2023-05-17Jtqezz.jsjs 40518ef0b604947f73dfa8e91380df99829afc3a676dd59928c344279be65d9cn/a Quakbot
2023-05-17Tvrll.jsjs cf7c5faf543633a469346c6a060d6956679b04631ad65d9561aba629f7fadf1dn/a Quakbot
2023-05-17Pxkazzzl.jsjs a4b360a9290c2a189de5770837758062683ecf2ce8a60ec44d28bd2ec02ad170n/a Quakbot
2023-05-17Ccof.jsjs 478c11058d6731bd64fc0633639583accf5247d01f42c43d697fb29d6d168b0an/a 
2023-05-16Sfzi.jsjs dc4c9ab562da7932f135ca66a2ed85fa75ef2d3c92d7f85eb8feb51202ae19d2n/a 
2023-05-16Spaucmmm.jsjs c06bb39bb3b4ed1fd41b41f6aae915cb02586e06a22ad7d13f459ddd9eab09b5n/a Quakbot
2023-05-16Jofhws.jsjs 3afd214c96847f06c92b256aa8b851844377c054866bd347102c86426656434bn/a Quakbot
2023-05-16Cxxen.jsjs 47565399c0519c08758f4de8c120e8d34fd37442933f6cda7da3d7255c02cfbcn/a Quakbot
2023-05-16Xlrnp.jsjs 96bb22a1f4cefe26abd402f1b22e47d9975dd4be68ce0d07168dc8bca91c357en/a Quakbot
2023-05-16Ngzln.jsjs 973cfce2f54c29a7a9ef9892f8c84c1ad6319ac325959b1663a27ed1aa45a396n/a 
2023-05-16Ogwoqrdp.jsjs ccd88d64e41e712e1d490e23fbe33a6e9cf9ad606f9c60893e21253fcdd18f36n/a