URLhaus Database

You are currently viewing the URLhaus database entry for https://fogsupermarket.com/dq/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2634540
URL: https://fogsupermarket.com/dq/?1
URL Status:Offline
Host: fogsupermarket.com
Date added:2023-05-16 19:10:29 UTC
Last online:2023-05-18 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-16 19:11:32 UTC to abuse{at}cloudflare[dot]com)
Takedown time:2 days, 1 hours, 59 minutes Poor (down since 2023-05-18 21:11:15 UTC)
Tags:BB28 geofenced js Qakbot link qbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-18Lbyxzhg.jsjs 1cea0c4b1af9170b9ed2927f3b100d202bebd1b8e69ba1527336aaa6b2c0bffcVirustotal results 13.33%
2023-05-18Izaoegs.jsjs 1a2e818afb29521c8658d2a0643158af97370d69c32c0bd85cb900bd3e85b0eeVirustotal results 22.03% 
2023-05-18Vyomq.jsjs 76443e093ed6d6e3961cb5f9bbd546bab2d05f6bc2536c5744dc86f7a769bea8Virustotal results 30.51% 
2023-05-18Ytjms.jsjs fe7a3e54023109da3f0865940192574045f052a7c4bceca2c7c4adf4d79c06e1n/a 
2023-05-18Wxfs.jsjs 88f6a8cb20802cddd090c331d20f9642aed6deeda17214154bc2017f911d61c3Virustotal results 25.42% Quakbot
2023-05-18Oenszsd.jsjs 72495f905e654ea365738e7e3ac93200be27ad81df4327197c8d1a1427209a25n/a Quakbot
2023-05-18Aksiz.jsjs d772a62298f946a1a964db9c0e6aa23473d6590e013fb3056502ad74b75a046fn/a Quakbot
2023-05-18Bvfaww.jsjs 0a976cddfcc0bc1b5776cc8cce0d9d1c9fbddfee4017434169358a45936d3ab5Virustotal results 27.12% Quakbot
2023-05-18Mwzerfau.jsjs 257dab59e71c1109ffbf0b4ee1568df9566b886ee56301a089577a0fbec29fe4Virustotal results 8.62% 
2023-05-18Styxmxj.jsjs c2b44422f7f4e7dc1cd2abeab300413b55a00cd9d34fda7542a467dd852bafb4Virustotal results 27.59% Quakbot
2023-05-18Iwmbagd.jsjs 42046702c8332860c6d6224d63344bbd919246deac12c67a32bee542c7cde41cVirustotal results 25.86% Quakbot
2023-05-18Ygbz.jsjs b64790ef2bb214bf0fea83cb0aff305cd66dd38f065ab3cc62b9ddf5d3570eecVirustotal results 23.73% Quakbot
2023-05-18Aisfdshv.jsjs 8b5a063138d39c424fbf7ce7022dc972afa3c2df792b3a030272c1c77490dc96n/a Quakbot
2023-05-17Iedagv.jsjs 53182e2434b52d11490f911c908c6c23755d667fca1a03ac5d4be2cc9b0cd61dVirustotal results 23.73% Quakbot
2023-05-17Qrdxkiup.jsjs abae955795961dc369ba3d41196f2f4238001efcff8a2dc429ababf4821ca7f5Virustotal results 22.41%
2023-05-17Hvkwtdq.jsjs d6cb8ae70d4f102ac987c9de47abc6d962e10fa9755d74ea54a68edb6173dad1n/a Quakbot
2023-05-17Micqwtxe.jsjs f3cf1988e5b288b64fc34cf15045d67a4fcd2c9c61549510e3df907ea1f61cf8n/a Quakbot
2023-05-17Izmzh.jsjs a45416e3d9aa47760feeee7375be42c3748b04b0d9c6c573bf4db2cfa07929b5n/a 
2023-05-17Wtobu.jsjs 9665c60390e6de64d398dc14f91957bbec2a396ca2c0ee79cde6f8ae0e2a585dn/a Quakbot
2023-05-17Nmcdw.jsjs 1c527faebea66510912a82a4ece923294f74fa2947ce89b48b9b341ade828e1en/a Quakbot
2023-05-17Iflbwdro.jsjs 884cceb8a20b6d8c0ef8dfdac564aa099fe13043d97f676a7ebfa61fbede0473n/a Quakbot
2023-05-17Ygnyjtrw.jsjs ec291a71b2f22a1925dafd72395d3f9aae99ed766c6d990da8a028f9df787cfen/a Quakbot
2023-05-17Zkhliwov.jsjs 91c9c75a9c3360e1a2e5c855acedd7205ff723e722781a61d9ffc2d1c1ab6ae7n/a Quakbot
2023-05-17Ncuzv.jsjs 0bb27ad9ec43e1858b1f43a266b70dee511bb016546bbda0d473473e7da0323bn/a 
2023-05-17Hnjimtri.jsjs 85f6bdd03fb2f8bf26d3e8ad48c92bf79993076613694aa37afc57743e624af0n/a Quakbot
2023-05-17Gbea.jsjs 4307e84c015c4cb90cecf528aa0e0d1b00c2a21be77ef1345a32b2375dc4b127n/a Quakbot
2023-05-17Nxovitdx.jsjs 82b3b4c1e8a01aebe276f60f774c8e13862eb9cfc0fd29947fa9c1dfb9f9a281n/a Quakbot
2023-05-16Qkryqihp.jsjs d57d88dd6f4edf31512d3e0fd4c1127c3638cb252d91b2d43af44cc826ac3ed4n/a Quakbot
2023-05-16Qrzs.jsjs 2baeeeebf0209040953e991789573620bb65a87ae18fd8ccc2a128ebeed97e82n/a Quakbot
2023-05-16Ckmyz.jsjs 6762b731c8cb21c50ed3e5acda7cf46a55542dd601b46bd77edf61afe1c9c346n/a Quakbot