URLhaus Database

You are currently viewing the URLhaus database entry for https://gendengflix.com/ed/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2634526
URL: https://gendengflix.com/ed/?1
URL Status:Offline
Host: gendengflix.com
Date added:2023-05-16 19:10:18 UTC
Last online:2023-05-18 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-16 19:11:15 UTC to abuse{at}namecheaphosting[dot]com)
Takedown time:2 days, 2 hours, 24 minutes Poor (down since 2023-05-18 21:35:31 UTC)
Tags:BB28 geofenced js Qakbot link qbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-18Ovoitpu.jsjs 1cea0c4b1af9170b9ed2927f3b100d202bebd1b8e69ba1527336aaa6b2c0bffcVirustotal results 13.33%
2023-05-18Opjybusi.jsjs d3c6e06204212c1aeeef29809460056535cba3beca8cf163b7c8719671ef0c9fVirustotal results 22.03% 
2023-05-18Kcmtx.jsjs 51ffefa8a10b6da720a80cec4735fe173669e7c974946e46c8dda908e824d8a4Virustotal results 22.03%
2023-05-18Fejrjr.jsjs ba4fb532021f1e1e39c0d1c304d1e50b75d11b0e485c2f7961de12fb7b1a986cn/a 
2023-05-18Zibsm.jsjs 80ab380263a5873a2a0e5bf0f6970a2c5a2f1bb6ced244bb881a685269c5d92cVirustotal results 15.25% Quakbot
2023-05-18Opow.jsjs b4bbe3eb6f77c745b1c296728e15c69c6b766df2aa51d6d745ce4e5fee415e06n/a 
2023-05-18Fvvpgqg.jsjs 307a3ef8bc1930af1d46fc60bac9820950e278feee14f7a931ac745613568698Virustotal results 23.73% Quakbot
2023-05-18Yaloav.jsjs c419bc2833e48f8f26166ef911d3915be8fd0619ac6a0e0638813a4404df6979Virustotal results 25.42% 
2023-05-18Lxhtmsnl.jsjs a7559adb58fb8ca343a880d3a323c7307621cf7e95fee410922b0ee0d24d8bc7Virustotal results 31.03% Quakbot
2023-05-18Bcwke.jsjs 34e3acc0e6ab649f51c734598559914d2597cbd6d5a224f09da4ccb7ccbd769dVirustotal results 35.59% Quakbot
2023-05-18Ivyp.jsjs f3cf1988e5b288b64fc34cf15045d67a4fcd2c9c61549510e3df907ea1f61cf8Virustotal results 27.12% Quakbot
2023-05-18Gzfxelu.jsjs d772a62298f946a1a964db9c0e6aa23473d6590e013fb3056502ad74b75a046fn/a Quakbot
2023-05-17Zqlf.jsjs f7b76f7e79498990be74945924e01e7f53e3b42e5be51e93dd0c4c7a5ecb47d3Virustotal results 27.12% Quakbot
2023-05-17Fdww.jsjs 32191ec86c3fda99957a4e78362b4bad01545ffe830b5b5c5c32ed9c92fc58ebn/a Quakbot
2023-05-17Exruv.jsjs 23fb378ba68beb5c6b1281c46215b56754ce9f89836c50f35b59615c2f79b455Virustotal results 25.42% Quakbot
2023-05-17Sihi.jsjs 7a4ab56c0029ea06eceabbc4e8b9f005b37b97d1ea376ed3db95729269780e17n/a Quakbot
2023-05-17Rgmujfs.jsjs e3c9723f0c4736015e73df036ab893acc6c4160034969cd8a155187d7f0b0205Virustotal results 30.51% Quakbot
2023-05-17Ufaudry.jsjs af1b94948c602627bf551b38dae50d6be3c349f5b15e7fe1d2a792e047809553Virustotal results 28.81% Quakbot
2023-05-17Zzmlvwwl.jsjs 321c1a3f14a23d2a9aa660e3c3d41d7c92fbba4788fc20057ac697e402248405n/a Quakbot
2023-05-17Svyhll.jsjs fbf34d1f59eea01ae0ec44fb3d7e93d4a06dad0b411065a5d6292f3ebe7081acn/a Quakbot
2023-05-17Dcknolac.jsjs 7feaf9cbac6e8af9d53124433984d333324173719aafdcfb70d785df1fabe7ebn/a Quakbot
2023-05-17Efzbnz.jsjs 4a8c4f5f5f8ffd54d89561d634ae10ab0b8b3e6e7ed71bb0e41c16b238cca18bn/a 
2023-05-17Kmmgxk.jsjs ec4219169a736c0249f9fae14d788cbe01e35ea83db52143122667fe6939e9e0n/a 
2023-05-17Heoljofo.jsjs 5fdac737e4615e65db2be20be60fc8dcddca8c8b79c91fe143d84ac039b537fan/a Quakbot
2023-05-17Tkfbjxca.jsjs 84d0bd88befaf580fbeda4e276fd9180b33509bb2e7f6620c7241d7833731aeen/a Quakbot
2023-05-17Bowhd.jsjs 6400cacaad7e9c5c9b4c861c43735b91da8236b0a83a056b87e9b7f324069afdn/a Quakbot
2023-05-16Jpzcn.jsjs e56505b85ef52cc9f269de304c488c0a7cd5576b221997ac57f0b5b189053e0bn/a Quakbot
2023-05-16Uvvwip.jsjs c61ff5550fcca1ec0d59930e6aa9ca328c5a018d2c36fe5c24c2e811c9aca742n/a Quakbot
2023-05-16Socx.jsjs 554824401f23efc516721368f68984ad0d0e3ad1009ad2e2e0a56e3908c06396n/a Quakbot
2023-05-16Pppeupg.jsjs a0e8a7ddf55fc403838fb7a072d1314930539a604938bb80eb31031138286c07n/a