URLhaus Database

You are currently viewing the URLhaus database entry for https://questmedicalimaging.com/uimu/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2634003
URL: https://questmedicalimaging.com/uimu/?1
URL Status:Offline
Host: questmedicalimaging.com
Date added:2023-05-16 13:14:53 UTC
Last online:2023-05-18 22:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-16 13:17:54 UTC to abuse{at}namecheaphosting[dot]com)
Takedown time:2 days, 9 hours, 33 minutes Poor (down since 2023-05-18 22:51:02 UTC)
Tags:BB28 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-18Cfcy.jsjs d76b1300fd995ec8def343df0450c11a58a217803fee3749db4afacebc64182eVirustotal results 22.03% 
2023-05-18Nbiox.jsjs d3c6e06204212c1aeeef29809460056535cba3beca8cf163b7c8719671ef0c9fVirustotal results 22.03% 
2023-05-18Kymny.jsjs d7522ab4f64ae0950e24bb00df9157136bbcb900ace0c77bd1a46f06149bf37aVirustotal results 24.56% 
2023-05-18Jxsmxszv.jsjs 32a86ffd091cc48d62f9a3e8ba972b991352d300aeb46ad5489d2ec688fc1258Virustotal results 16.95% 
2023-05-18Ggmgs.jsjs f5a9de314dd0e63ac6262d4d17d66999b1a0ef8384756576c26eb7623a678f71Virustotal results 25.86% Quakbot
2023-05-18Ytjtvg.jsjs c1058b3e90189dda6f009ff9980c9a284c196414c7682ef914862f8964b9950dVirustotal results 31.03% Quakbot
2023-05-18Pvdf.jsjs 4422126c61949a9848ddc759de968eb699c5364973a271dc9aac631121591d13Virustotal results 27.12% Quakbot
2023-05-18Hcrwiqur.jsjs e097747aa43ca0c5787d98ebdab3ab67fda12444d287a4a0702a670f0b2494d3Virustotal results 11.86% Quakbot
2023-05-18Rpoj.jsjs ccdaaebf2ae2ce525ab5ccf2b4d74cf6b58e7d9515c21c0d46e2b8e0709eefb6n/a Quakbot
2023-05-18Mbfyk.jsjs c56be3ec9c7d01ede485ea9edabc332ef3aa01f6ab679c4eb6231e1db79db675Virustotal results 23.73% Quakbot
2023-05-18Zicuzlkz.jsjs 170ceff8d051e5addeb6beb1128383fe814b7b40738b54c0f99409de5ccba2c6Virustotal results 25.42% 
2023-05-18Tjtth.jsjs 0c7c96dd589f0bc1676f7af1371bc70cbf50d310293d070ff8e1fef3df4533f9Virustotal results 24.14% 
2023-05-18Xtmwv.jsjs ec6f55b9c56d3dead8b8490dfbbcccadcdfef62b7d67c671b8d0ee9620f4b74fVirustotal results 16.95% 
2023-05-17Zupg.jsjs c2b560cbbb7dc30cad06a2a6b715f07591269b172bde5101a639fbb04e4dd9cfVirustotal results 27.12% 
2023-05-17Pyvvg.jsjs 9a649ac76d537c5f4ceb023745e2fcb3a6ed8443c46ac1f2dbd7da98f0487deen/a 
2023-05-17Raox.jsjs 5ed6c54055399ee6ffdf3adfc06337fb1dfa9ee1a6c1766091b74c1ebe2ebda1Virustotal results 27.59% Quakbot
2023-05-17Wmlji.jsjs bf6a2013ee6092e2d291a06d2f69e617b318a1e842a0d559b91fa1b8f8ea1a1dVirustotal results 25.42% Quakbot
2023-05-17Uykh.jsjs 7f5092d0b223ae713b6ead45d62c1c63d910a500fc960aeae16e1a1073355c86Virustotal results 25.42% 
2023-05-17Fprbi.jsjs b7aee295279db7ddc9a5aaf2c89b1395f0a2c3ad92cabddcb41b024dbeff9c64n/a Quakbot
2023-05-17Jdtqop.jsjs e5e55c026d33a226eeaecaec0b1f0e887452329d55151ca363f093722745e770n/a Quakbot
2023-05-17Rzsu.jsjs 16d3c5f75ae44dbf48891b9879896dae44d397a4cf111e76f1b7cd67be57f7dbn/a Quakbot
2023-05-17Vepfg.jsjs b936e0c03bde5d2f855a32776cff3775f83acd714f845daaca304a684fb49b18n/a Quakbot
2023-05-17Zklgu.jsjs 9c84b194434ae3ac4558fdc4329f001d14f8d9e9ea733ee79219b7344084806an/a Quakbot
2023-05-17Xwvyfq.jsjs 37adf3ee8a5fd5fc06f2e94706769202f5bcefe36ea58f1564e81aa3acd6a01fn/a Quakbot
2023-05-17Tszchv.jsjs 9fda82c1337de84be1031c4912ccba947a71b843197228e84c6863c0ecc54f95n/a Quakbot
2023-05-17Roezrrym.jsjs 8a709e046dd5620f0b28efb44e408a2752b40a7e25403343a7e59a12f0dc6503n/a Quakbot
2023-05-17Slon.jsjs 660ddcf9afba635108226f4618c1c1d6ad3066838ce117738ff69e5604178083n/a Quakbot
2023-05-16Uzvuihn.jsjs 0fb3185b4364ba246b416a504d77419e46c22aafe4d8a2cebd0f334916d48571n/a Quakbot
2023-05-16Wgssms.jsjs c2fce7247aadaa8f030a0344d712ce8610ec90b7f615b2212ce4cd8a7dbb77b9n/a Quakbot
2023-05-16Xzxzr.jsjs 6431b8e1a2dba082c5d70b776e334cab8469fbd35242b9e87d33c8e4a34179a0n/a Quakbot
2023-05-16Wzmijp.jsjs 5b13caec117ec44f7018533a229650c100dffaf01a0ebb7f04e1e6f5a2c9167dn/a Quakbot
2023-05-16Xppyzane.jsjs 88fc80e7aa8655058c5c953ce8fd9270d3d9c28f5cf8b22523a2a3086817498bn/a 
2023-05-16Nlgwo.jsjs 3773e45f4f12128ec353f76a5e346afce7d699d3594922997ef8fae36c8ecaedn/a Quakbot
2023-05-16Buhpnjiu.jsjs 53a5749cae7e3bc1582a1486d4ad387177627e153556b0d7d6426736434c49ddn/a Quakbot