URLhaus Database

You are currently viewing the URLhaus database entry for https://sufismm.com/at/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2634029
URL: https://sufismm.com/at/?1
URL Status:Offline
Host: sufismm.com
Date added:2023-05-16 13:14:58 UTC
Last online:2023-05-18 22:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-16 13:18:21 UTC to abuse{at}namecheaphosting[dot]com)
Takedown time:2 days, 9 hours, 25 minutes Poor (down since 2023-05-18 22:43:53 UTC)
Tags:BB28 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-18Tkbsrex.jsjs d7522ab4f64ae0950e24bb00df9157136bbcb900ace0c77bd1a46f06149bf37aVirustotal results 24.56% 
2023-05-18Cgcn.jsjs 51ffefa8a10b6da720a80cec4735fe173669e7c974946e46c8dda908e824d8a4Virustotal results 22.03%
2023-05-18Nczqb.jsjs 6ea7fa49d284c1498b5d637108b69396e235fa59493860e7a31cf9aa99b0df94n/a 
2023-05-18Vwqpu.jsjs 7f4b255930c48f8c5845c7ee4b70176ed27fac14ad26798578fbdaf327bc1157n/a Quakbot
2023-05-18Gkoirnzt.jsjs c426bcba8c0bf1790fa05cb78d763ad67bedd1b1bc3eec6b4902700e097a1a0fVirustotal results 24.14% Quakbot
2023-05-18Ahvp.jsjs 6c2bc2e984886cdc84fd988cc8504fd8737f22afe09cd972d52344c526d16d5bVirustotal results 30.51% Quakbot
2023-05-18Iycbhn.jsjs 749721b74088db119de7bccbe5cea0c9486f42bb570461ff262c5ed324b4ca16n/a 
2023-05-18Ocsk.jsjs 64dbefc6ce8b2caf9b441a36490ebed30319eed28e49ddf95d43659494906f10n/a Quakbot
2023-05-18Kobohm.jsjs 0769e73bc4ebc2ee5fdfb2e6d02b6a282085b48c709104d96e856380e8e4ecfdn/a Quakbot
2023-05-18Zcti.jsjs 13efaa86942839a33c87960d6b95861ace793c07390276ffb3d9329cfeb07034n/a 
2023-05-18Lpiu.jsjs 9459a0cb6bc3dff0f7972ac6852fb2f11dace3df33eded8be946a0ca5f1160d7n/a Quakbot
2023-05-18Zvcrf.jsjs 875bccb572b756073e35cf697abde47c18a8fc4156b093bd6d229ef766faed99Virustotal results 28.57% Quakbot
2023-05-17Rgakks.jsjs 69d10bf1c18cc7df540de106a1056c5af79f8b60f1ffae762d06532cc84375d8n/a Quakbot
2023-05-17Rtoy.jsjs a87f72f4479c91e3e36a8b6a204a7d9169c1e604389f6818744f3bcca14fd959Virustotal results 21.43% Quakbot
2023-05-17Skye.jsjs 1d6e41a96832fff256d4c07d7cdb318a251230e1445351f5ad36b87ce958bf1dVirustotal results 25.42% Quakbot
2023-05-17Wfqhijfy.jsjs 2c91bde6a534aee746616dd47460479f4813dd91fa6b608246e4cbd908aedf83n/a Quakbot
2023-05-17Cgzn.jsjs dcb4d36d51f163518e7ef97ffd77d55e49a72dc3b351a6e4051187b5361ecf7fn/a Quakbot
2023-05-17Gsosj.jsjs 71399d25c8497d7f81c87b8f5ec8d5071d8a62ac85ee254638bf8d24feccc5adn/a Quakbot
2023-05-17Wohpjqao.jsjs 0133e2c2198c1d54018ca47d27479f83ee1b605d65bf1a2d7294cb8cb0507f6bn/a Quakbot
2023-05-17Fxzcwua.jsjs 4c3f8fc0a40476543edf4209c2b404bda0daf5a1f0019b628ec593dd703c30bdn/a Quakbot
2023-05-17Guefrse.jsjs 6592177fc946a9a4466df734295a24746b7d267edb918e19daaf0d6ee32316adn/a Quakbot
2023-05-17Byrxjtar.jsjs 251c2d4bd19dd379d4f95c26a94d33dfcf83f2033cfcac3d56b69986f1b190f6n/a Quakbot
2023-05-17Uhix.jsjs 67b58906bb490260faf66245b9a7e9c2f7f8a7c50fdec04c69848400117efeafn/a Quakbot
2023-05-17Jwocwoj.jsjs ed1631b80bfefe4157c5222d1f86be2b552c82c9edf429416410867620ede2f0n/a Quakbot
2023-05-17Xvrqaiex.jsjs 22136ce0947232e876b857c52b13fb40fbbb46b6f694d1054dcda6cc158d44a3n/a Quakbot
2023-05-17Iswjpcv.jsjs b8270a3e5004122dd482694f4103e5a96579463fec796e188624cc9506dababfn/a Quakbot
2023-05-16Uyhxo.jsjs c5cb756859a36a01964700de1623aa0ff506f544eb0a6fc481a122eb6b6a5494n/a Quakbot
2023-05-16Hndy.jsjs 04ec487110ba06648aaf5d5b03e3397f33e54cb2026e7b99aaee7c18a8806cc7n/a Quakbot
2023-05-16Egyt.jsjs ecc513bcee03691e733e2cfc439bdd7d4cef0e71d578d5f31607819e317859b9n/a Quakbot
2023-05-16Wjwzub.jsjs ccac399edb713b5e0aea90bac1afb7138c09911f79ae03d32aa180e190b3ff80n/a Quakbot
2023-05-16Dqlydi.jsjs 3a051d704bcd6c53b97c128acc40904fde5e7bc245596df10469e33bd418ab76n/a Quakbot
2023-05-16Rygyj.jsjs 5b5ea4b3c136312c7c81e3c0c361ee13b626bdf2ec0b9713e687e03d8db3e72dn/a Quakbot
2023-05-16Ikkzs.jsjs be7fe658a2a8656e0a285e5d06a4fba89452b34d0dd9b43cace9e7d730995475n/a Quakbot