URLhaus Database

You are currently viewing the URLhaus database entry for https://makraf.com/iso/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2634577
URL: https://makraf.com/iso/?1
URL Status:Offline
Host: makraf.com
Date added:2023-05-16 19:12:14 UTC
Last online:2023-05-18 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-16 19:13:22 UTC to abuse{at}hostgator[dot]com)
Takedown time:2 days, 1 hours, 47 minutes Poor (down since 2023-05-18 21:01:12 UTC)
Tags:BB28 geofenced js Qakbot link qbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-18Osmb.jsjs c74cf0cb7927a8438a84c9cedbdbab3e4815550813336043f39674a67b6a021aVirustotal results 28.07% 
2023-05-18Xooanbh.jsjs 76443e093ed6d6e3961cb5f9bbd546bab2d05f6bc2536c5744dc86f7a769bea8n/a 
2023-05-18Wxswseq.jsjs 90854b60ab6b30c83f8839a6d1977dc7968771625bc4a6751d30fa1ff505912bVirustotal results 27.12% Quakbot
2023-05-18Qsrjt.jsjs 1d57c903d9a9f7a6aafe34d3d44ced534b1878b64b93029c391c25c05c708094Virustotal results 24.14% Quakbot
2023-05-18Kuzye.jsjs 6b01b5522683c655f6e33fc4ecfa2ef55bae886a543ba306b61dd976a892fe96n/a 
2023-05-18Uhmv.jsjs 76b1f9267eb932c85c8717778e7399af2196f31c3f1ee4b76d83a2cc5f2e486cVirustotal results 25.42% Quakbot
2023-05-18Jhuj.jsjs f517f6e7dd7c0f029a72fe25803ac2d5c54c7abcc8e576fbf95cbe6a87759540Virustotal results 28.81% Quakbot
2023-05-18Jhxl.jsjs f093b882b8fd4a20a6b626c96af959ed31285d4cd57354e4cf7de124fb062b81Virustotal results 30.51% Quakbot
2023-05-18Daem.jsjs e90a83b63ded96ef671ed3692c8983df0d5845adeef9c03bbbacc8a34cc8db79n/a Quakbot
2023-05-17Rcpgok.jsjs e8cadb2bfe88e91c6f0a88fbfa3c83c7cce944155ffde2920ad925df8ba77f75Virustotal results 24.56% 
2023-05-17Rfflceg.jsjs 95f993cc876a8c3aa072647ab634b4ef2df037d739e781cb6f6b4e90ae5d6889Virustotal results 25.86% Quakbot
2023-05-17Ouxrqudn.jsjs 1cd77905385f0c42fc817556a8df0df76650c7bcc4f1d670bfdf4cefe71c5d76n/a Quakbot
2023-05-17Kebebzr.jsjs f37d3c915b896922eed07327ecc8b944fcab1445d20c02c26c5aab8d91473b45n/aQuakbot
2023-05-17Yfviq.jsjs 68f73fa35cc8f6df9d84c782adc127c0af8e5c03ac541bbbee241e8edfdf685fVirustotal results 27.12% Quakbot
2023-05-17Myklvlbw.jsjs 479435405ce11b58fbf16a8d7d4f3f1b2d8952718a2dd79f8c0e4ecb91176be8n/a Quakbot
2023-05-17Rzuqph.jsjs fcd00b353c980d48983a4a2533eb482d632935a343b2034ea119d3a4a74f3841n/a Quakbot
2023-05-17Zffjo.jsjs eda07d320ece3900d245289924486d829d26f8eb1d87ce1f02549ea0ba0b60fdn/a Quakbot
2023-05-17Xeekhmxq.jsjs 9f76700fbbd73791910e9058ee4e0ab715c6cb4b81713bee21821bfbe4ccfbfen/a Quakbot
2023-05-17Aahyw.jsjs 2ce38eca955e8ac95e2b9d70c6cf3da46fa07cda10d2576f2b143f2613f788c5n/a Quakbot
2023-05-16Ictozb.jsjs fff8d25d0d244e857aba586ec594ed076382c6ad48ce9079d3b990567febc835n/a 
2023-05-16Dzhjqxy.jsjs 20d1462ecf9df3a806d07ef9d9a6e19e0520d4a474186c2eac1e9a65a667a38an/a Quakbot