URLhaus Database

You are currently viewing the URLhaus database entry for https://sufirfan.org/armu/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2640708
URL: https://sufirfan.org/armu/
URL Status:Offline
Host: sufirfan.org
Date added:2023-05-25 12:00:15 UTC
Last online:2023-05-27 22:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?):mail Yes (Ticket DCU100121493 created on 2023-05-25 12:01:04 UTC)
Takedown time:2 days, 10 hours, 31 minutes Poor (down since 2023-05-27 22:32:26 UTC)
Tags:BB29 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-27494.zipzip c79d3fa03186207f3c442ec766a94e930c04d9f1000812b6ecfa253ceb1eae99Virustotal results 20.97% 
2023-05-27210.zipzip a850620d57d610c57609e8106ba15c02f17be2bdf12236542362ad6138b236bdVirustotal results 20.97% 
2023-05-27928.zipzip a887a4a78b67f6d1f3886eb7baa35edf3ddf3e6fef23460c4e29702c74532175Virustotal results 17.74% 
2023-05-27499.zipzip 349d6ee5664444813d9f6a1f306e95f1299ac83676c843579980b878f0009487Virustotal results 25.81% 
2023-05-27176.zipzip b1646fa3136c4fa3646607578fcd786b51d264ed2f6113c1445d3920f8cc2c82Virustotal results 19.35% 
2023-05-27192.zipzip 1511b9d6b807a4944554cf60ad74f86ff22a966a601008466ced8cf35e854a6eVirustotal results 37.10% 
2023-05-27472.zipzip b19d86b29c80ef6aa3d8a5f108a1f1ef609d5a4a5c199a6dce25a414cad9f662Virustotal results 22.58% 
2023-05-27287.zipzip 3f2ea3eb7964e6dfa79a2fc3fc2397f4e81c18302bcf73742f24a8b0bc14a60fVirustotal results 19.35% 
2023-05-27564.zipzip 7b81bf8b0df96aa957d3629db34ab5ebd45edc39fb8afe5aa4dca2d596aa96f4Virustotal results 20.97% 
2023-05-27155.zipzip 093577e2e8e5b1b1d9d5d3b64a59a657833136e41cb1332d24d73c125caa52b2Virustotal results 24.19% 
2023-05-27454.zipzip 6165b0936e28f05ed2de1d1a9c90d090a5bc0ded107a94c841b1afb68afa37f3Virustotal results 21.31% 
2023-05-27297.zipzip cd8b0a90db2e8a2cd5b7b73ffd8913ef1059cc7d5e5fbcda32e0044081a6a20cVirustotal results 22.58% 
2023-05-26969.zipzip 5ce5e799c161e625eaaa7b9d64c0647e8afa921f29b2e0494e73182e715aa52dVirustotal results 24.19% 
2023-05-2678.zipzip d3b2b0e5545803cb47da1b4146a7147f44b1cc322a6cba1c8423a778d30544beVirustotal results 22.58% 
2023-05-26380.zipzip 07092a9412a12b027de92e525c8583481568bb92c5673f5e4cede11fa322eaf5Virustotal results 22.58% 
2023-05-26234.zipzip c71fdf2ca8a665268f063935e0728a1803c53742cb5aa7e6b7961da3e9e6181dVirustotal results 20.97% 
2023-05-26858.zipzip 44f0ec4b0e64ba1b536e314fdf3f54329673eb6ccc6b4f24f59166a07e9a7da6Virustotal results 22.03% 
2023-05-26337.zipzip 9b9aad7753529dbefb21800bb6d68f4f2d7e597afeef8ccbd81817ba7ea3ca30Virustotal results 17.74% 
2023-05-26496.zipzip 231e2c97c5958c2974dee3b508a815920b9c789df2d13d5f537514c39ff3dfe0Virustotal results 20.97% 
2023-05-26856.zipzip d5a8ba93b726671ad35125b50fbafc9c3bca1b2e0f897de772b5d6a3703825e3Virustotal results 20.97% 
2023-05-26171.zipzip 0a4deb2419c57f3ebebad57c8851e8ad5d46393d5a0f8d300c36d38eeea5a61eVirustotal results 16.00% 
2023-05-26304.zipzip a3facf35d97b7d2a26af14108964de40a8e57b885c6c1ac2d62a65b66664ee33Virustotal results 19.67% Quakbot
2023-05-26516.zipzip ea43fb89577d4e3c92bef86919bcf94ffb1338bfe9e2e25588c1236af8448fbcVirustotal results 20.97% 
2023-05-26933.zipzip f1ad11da084094b4055835def3f79c28df36fd96c300267f961cf02facfaba95Virustotal results 20.97% 
2023-05-26748.zipzip 996499a26e2560db9c9f81e64f4efa88b7acf980c0bf1672f9abee4ccb861dbcVirustotal results 18.03% 
2023-05-25174.zipzip 4a3bfbb3d956f8ec98dee7c8db05f0d83ec96f2762611e64f5657ba3055e5ccdVirustotal results 25.86% 
2023-05-25601.zipzip f0ff6721edaea7a07332284483fa2db170d6e91a884df609915c2875e964ed03Virustotal results 22.58% 
2023-05-2537.zipzip 32b1dc43ec75d20bb02faaed421e3ea631353a67d8acfde895bb3bfdc10e1938Virustotal results 25.81% 
2023-05-25335.zipzip 32b6d586107c81572fab9d8bbe24bbae1a3da14e83ea5db6126b319c68d1e19fVirustotal results 22.58% 
2023-05-25361.zipzip 3ca2f31000b66cb200b03b4a00986860a087bcf28d1282c2ec62808261d0c3beVirustotal results 19.67% 
2023-05-25545.zipzip c0dc7a065cb3ef184107f4e4ccfc8de47cd5d740ce8983a526ae83ef14c69b21Virustotal results 21.67% 
2023-05-25133.zipzip a8d0cc86fbe9dd1eb0101f5d7c27d8c7602711db1b45743a2b59a0de794f3416Virustotal results 17.74% 
2023-05-25726.zipzip 069e5d686886895977b43113d5f48dcf14db64b7852ca8dc385d3f4fbc3c640cn/a