URLhaus Database

You are currently viewing the URLhaus database entry for https://mortalflix.com/pule/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2634979
URL: https://mortalflix.com/pule/?1
URL Status:Offline
Host: mortalflix.com
Date added:2023-05-16 21:58:07 UTC
Last online:2023-05-18 22:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-16 21:59:34 UTC to abuse{at}namecheaphosting[dot]com)
Takedown time:2 days, 0 hours, 45 minutes Poor (down since 2023-05-18 22:45:06 UTC)
Tags:BB28 geofenced js Qakbot link qbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-18Tbgx.jsjs c74cf0cb7927a8438a84c9cedbdbab3e4815550813336043f39674a67b6a021aVirustotal results 28.07% 
2023-05-18Gzwoc.jsjs d7522ab4f64ae0950e24bb00df9157136bbcb900ace0c77bd1a46f06149bf37aVirustotal results 23.73% 
2023-05-18Flkgu.jsjs d3c6e06204212c1aeeef29809460056535cba3beca8cf163b7c8719671ef0c9fVirustotal results 22.03% 
2023-05-18Oqia.jsjs 1a2e818afb29521c8658d2a0643158af97370d69c32c0bd85cb900bd3e85b0eeVirustotal results 22.03% 
2023-05-18Kbpej.jsjs 4ce120da3377eb71837bbf2aa992f1527837ec59a84af191f5bca1915fba6b45n/a 
2023-05-18Zarwbmp.jsjs 4657c8d962a15da8cdc6ff3c1ab3d492a89eebdd09249e8d29eea382791500abVirustotal results 28.00% Quakbot
2023-05-18Jsgnqt.jsjs 1cd77905385f0c42fc817556a8df0df76650c7bcc4f1d670bfdf4cefe71c5d76n/a Quakbot
2023-05-18Dsjdyuxu.jsjs f2a2ace114103a041e79ed5165b96ac32d3595aaa0c8f1ff92533be7728179a4n/a 
2023-05-18Voczebld.jsjs 3f81d638187365133a7541ec95cc8cdedd33693b4fd6331e5fddb2281147b873Virustotal results 29.31% Quakbot
2023-05-18Erpjfh.jsjs 26e8f5245d3928df93af31946f3ff6dcf2291861ef4835e6b23e145cfcf9f8d5n/a 
2023-05-18Jgsxh.jsjs 2643a0ad4d4922d9f4428188cfe85112015c48ec78826051b8fc118affc60fa4Virustotal results 30.51% 
2023-05-18Aqqjxato.jsjs 55de6657c16f6c71d27bc0cb38580d689241943b653c659ae89fd4b63fdc279dn/a Quakbot
2023-05-18Lodd.jsjs e2334bf18981148d6120cbe4ab94a09cd0bb833ae95e71955079aadd6cfc720dn/a Quakbot
2023-05-17Vpurzsw.jsjs 9a649ac76d537c5f4ceb023745e2fcb3a6ed8443c46ac1f2dbd7da98f0487deen/a 
2023-05-17Nqbah.jsjs 7444a90ab199f093f90decb6774077ad55440f5d3ef1a757b95d2a4a639e60b3n/a 
2023-05-17Twgfex.jsjs 2eaa6ab373b017bafebcf7e8d12609c6c9958b230ee8d4a3e4f96294f5ea826dVirustotal results 32.20% 
2023-05-17Giwvhx.jsjs 8eec4b2ca78d1d8b62a875c3a6b16a0a9053aeaf65f1e6cca22000629ab71432Virustotal results 27.12% Quakbot
2023-05-17Rxxlv.jsjs f252bb947741e263a585e14d04e2ccd38b535351fa818233c9ab294b4b174275Virustotal results 27.59% Quakbot
2023-05-17Scdvh.jsjs b9a4b8691e7de63f6af1a61319d16827e3308ff248981ca1c9d815fee2a1b93bVirustotal results 32.20% Quakbot
2023-05-17Qcghur.jsjs 3302a636901e95a2eb9b66a8fdda7e3cf8997cec8749d879da126651b259557cn/a Quakbot
2023-05-17Pyve.jsjs fe38571546fce56178ef24eac652a6bdb02adb17817e8381824c1e1039b5f642n/a Quakbot
2023-05-17Yowz.jsjs 9f289d9302c1495da8a3a318a722ba9242c89d669560d90380da3761052933fen/a Quakbot
2023-05-17Subsciod.jsjs 00a28b45469e01110048883a8a017a9aedade05cd38aa2dab47e34b436612fabn/a Quakbot
2023-05-17Wyibsw.jsjs 3b42253e91d697c48361d9aea73f09974a8c28c2461b516ca6ee5238507dc828n/a Quakbot
2023-05-17Trkr.jsjs 539a75372e335746e7ebb297c29d0a8490ab0a3ce6c4363352a4836f952bdbc1n/a Quakbot
2023-05-17Osapzp.jsjs 7a5155def92456b36c9c4378f521ee7e17efdaf14ee96e79a6cbedd31a976d33n/a Quakbot
2023-05-17Fovtr.jsjs 3210aa6b0ddc170d98192bff6d66d6bd2953a64dca15e914e7a2d673182a80ecn/a 
2023-05-16Nxqoglre.jsjs e81c89a495400bdb6aa087ae0c14f7ac0e07783c859e807fbd801c27a59d0383n/a 
2023-05-16Mqwg.jsjs 19e9747a661dfe0358704d8b4b39cf5483672524b187f824deb4161f7b6dcf8bn/a Quakbot