URLhaus Database

You are currently viewing the URLhaus database entry for https://fogsupermarket.com/fuai/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2634857
URL: https://fogsupermarket.com/fuai/?1
URL Status:Offline
Host: fogsupermarket.com
Date added:2023-05-16 21:55:06 UTC
Last online:2023-05-18 06:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-16 21:55:45 UTC to abuse{at}cloudflare[dot]com)
Takedown time:1 day, 23 hours, 18 minutes Poor (down since 2023-05-18 21:14:28 UTC)
Tags:BB28 geofenced js Qakbot link qbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-18Rraygyw.jsjs bbcdb87a842c5157acea98f0cedd358f764e2613b6a635e4f9f5946de8c07780Virustotal results 13.56% 
2023-05-18Khqlydj.jsjs 51ffefa8a10b6da720a80cec4735fe173669e7c974946e46c8dda908e824d8a4Virustotal results 22.03%
2023-05-18Xmrzzyqb.jsjs 1cea0c4b1af9170b9ed2927f3b100d202bebd1b8e69ba1527336aaa6b2c0bffcVirustotal results 13.56%
2023-05-18Cleldg.jsjs 5ee406051f045aea1a4f62d195526ebce7c025feef14166b2e4be51305b827c2n/a 
2023-05-18Vmxlknxr.jsjs 1eaeb0800e5cf78a2590fb2ea6859c5f0bb66ad09354a079964ab9c7e6381781Virustotal results 32.20% Quakbot
2023-05-18Jqoi.jsjs 0c7ba195ded6d8e316021ca662000aef82b48c95dffdd60c2ea37f1849c555b6n/a Quakbot
2023-05-18Vtdp.jsjs d4048bb4d8d517078d21db74a0238b8f0696dbad0bfb9cecbe0dad5e3a89bb47Virustotal results 30.51% Quakbot
2023-05-18Jxly.jsjs 17c72916bd400a92cce59ce208e3dc0e55b97f9b3926f0819456072bfb9090efn/a Quakbot
2023-05-18Ndwy.jsjs f74f3f66b468e91f7060adfeff51f084fd09fb44b5d93a66ce1b2cccdd016bdcVirustotal results 25.42% Quakbot
2023-05-18Ejtill.jsjs a4fb26b40f74df15f85f6ee98f0faab524e9434e8469ea400fb9e1d4a53e6505Virustotal results 28.81% Quakbot
2023-05-18Hvxl.jsjs dd72eab3dc3f67fee1ec6cae276e3ecb4fd364daf45f773c22f8a0c771fbf742Virustotal results 25.86% Quakbot
2023-05-18Ropu.jsjs 3f3578034596c52f8ed357e2c3f37660c2f5af439da7fde722d26c629f457d03n/a Quakbot
2023-05-17Ggccfw.jsjs c2c29ea19d16a1a70e365c2161d223994c0610958fe527bfcb605ed47c4a4d44Virustotal results 32.20% Quakbot
2023-05-17Ttxleqc.jsjs 7cfdf6db2bcad8f5b911ac39a8da45e6a8bc3e53c287742c8afc09821a544c0fVirustotal results 29.31% Quakbot
2023-05-17Bhtqts.jsjs a3a82b0e5a194f3c627df166b34ee132214dd6dd7f04b7a684d1b93af75f7591Virustotal results 32.20% Quakbot
2023-05-17Ehhiqaxw.jsjs c73f356c704556ac74d752c91963fe6a1c7273b77027b218016b83f03ca878eaVirustotal results 27.59% 
2023-05-17Nsvnzhy.jsjs f3f5b182d275d4c04caa73e7abc7c40748f810123832c294c35b3b4bf997ea3en/a 
2023-05-17Vpkisek.jsjs 67ff580532af15d6457fe1b6aa59886c46bd5c72906c86b58aae1e7aab70fa3dVirustotal results 25.42% Quakbot
2023-05-17Pkppnl.jsjs 112fb3f4fda57d58405f842081f111d4f583c40ece7f17fd6805832360da7072n/a Quakbot
2023-05-17Runjdwnx.jsjs e3d5aecffec31c491ade0717bb85e645640cefd89eb50641d0036f63dc16d249n/a Quakbot
2023-05-17Prqofasa.jsjs d8d7c2cfa9cc18f224373c3e1a161fd50526229cf78ca821009f34e849cd5055n/a Quakbot
2023-05-17Mrok.jsjs 3c4bcd9dc9f2a80019751c535699ec466c45b6bd4f1441e908f4812504dc998dn/a Quakbot
2023-05-17Zfqkxylq.jsjs c5a2b690e6cadbb1c13b390cc20fa18c982130d64d16ca5667db704aa5fb1849n/a 
2023-05-17Kohw.jsjs 6405c738227adf0f1fff3ffd0b238b698a5bd503052f639a684e41e840c67096n/a Quakbot
2023-05-17Fszyelcu.jsjs 5341dcd3c931eb2dac71a1c8eb0cf0b9abd06c4f4c62105e71a9d1228e5c48d6n/a 
2023-05-17Uboq.jsjs ff3425b00aabeb345700268c96e1138cd13d7cf80aa7cbd6e3eb3c2694a719cbn/a 
2023-05-16Xeyszzx.jsjs d96da572249f9b1441d282f35abfeb5d2a46acc4b2db5be5372354cc76af94c6n/a Quakbot