URLhaus Database

You are currently viewing the URLhaus database entry for https://codixpharma.com/ml/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2659314
URL: https://codixpharma.com/ml/?1
URL Status:Offline
Host: codixpharma.com
Date added:2023-06-13 16:37:15 UTC
Last online:2023-06-15 17:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-06-13 16:38:31 UTC to abuse{at}godaddy[dot]com)
Takedown time:2 days, 1 hours, 13 minutes Poor (down since 2023-06-15 17:51:49 UTC)
Tags:BB32 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-06-15document_BD843_Jun_15.zipzip c513b988c144471c3d899db22ed11c6897ec150882d394627c334cd7067c150bVirustotal results 6.45% 
2023-06-15document_DF708_Jun_15.zipzip cd8ba051aa4dcb2f6b9e43e271ddbc01adf369a1dd1635b5d8e8affa83f1e801n/a Quakbot
2023-06-15document_AE738_Jun_15.zipzip b161d9bfe496c703a74ae92d5fd89b26461a68516b5c475324a6f6c005997315n/a 
2023-06-15aLMMrd8Po5FZv.jsjs f3e5284a083b419b8905ffcbda991727ab6a23f625dcb49aae2833225cc940a0Virustotal results 15.25% Quakbot
2023-06-15Thj5tNGTs23x.jsjs d919894c43bace3b29df995bf69158a11270a4a1fef75af414faacdaaec43674n/a Quakbot
2023-06-15CnLA88eaLIUfl.jsjs 6c68ddbab162a8382b978d5c05803e1b8cc68fdbdbb48b78e45346960aae9176Virustotal results 15.25% Quakbot
2023-06-15cOV95az7WQdHH.jsjs a27ee0afb7e14f44621eb09343a0fdc4d9279cb13f27da7ce922a6b60fa3f8daVirustotal results 15.25%Quakbot
2023-06-15GhglJqfZb78a5.jsjs 4379b63b2a7f84ae86e8c4e8bf403dc9b5942915fcdf19a801d701a886b48c45Virustotal results 0.00% Quakbot
2023-06-14fcdEWJQEOyS7Vl.jsjs fd920fb95718946fd479abe84175e358528697990e15553ca4b2d8b7d0c1485fVirustotal results 15.25% Quakbot
2023-06-14AuCqQt3Vge4GS.jsjs 93007a457dbe6e39009a5f697efc5fa18d4b4d8b0e26d40ab540265c95ee0584n/a Quakbot
2023-06-14mkOlF8RgzGT4a3.jsjs 7a917446ba2787b7f0d61b4a76e22561170f6ac5786fd878883385320a7781dfn/a 
2023-06-14ahaByXcNS4Ik.jsjs 001630641e12868fff408b994d5fe3de803100bf276fa26db76e831654bce2aeVirustotal results 0.00%Quakbot
2023-06-14Cz7Ibu1zOiSn.jsjs 263856e5d24688541a8b0e5d00781cfa6fd8798729b7be7300c3f824dc4aed39Virustotal results 1.69% Quakbot
2023-06-14GWUBoiY6MFbss.jsjs 1228dcae8982bb3a8c2978af61a7368aa51cf155b7dd0a41281db56fe7042e71Virustotal results 0.00% Quakbot
2023-06-14OAjjOJzMNS084.jsjs 924f8b72bd671b4a7cb46cba011dc50137f712ba891f2ff6c71c1da0b07dd59dVirustotal results 1.72% Quakbot
2023-06-14V0HdWsxTeHez3.jsjs e43fce049074b91782ec0c826b7ce89402dfed3053e23b15d8472264b63ebbc8Virustotal results 0.00%Quakbot
2023-06-14DfJ8bri42HpQ.jsjs 494c19d4a7af65d7269e2da910e0cf4e3c99a2884bd0c3df0744053a4614b257Virustotal results 0.00% Quakbot
2023-06-14oiMuctvXJapx.jsjs ab858f0e420f7848eaf0c15ab5decc4579993887e42de9758a2f4c2b036ee1d0Virustotal results 15.25% 
2023-06-14pwkY4sF5s8sU.jsjs 238902bace1022430ee259967c47d410e80f09b6d8365ddcc324146603f5a522Virustotal results 0.00% Quakbot
2023-06-14TKsZ61VHW1Qmlk.jsjs fbe947c2c15af059ff9859815330958f930174d5c0a7ade3ffa2ba0383910c3cVirustotal results 0.00% Quakbot
2023-06-14sGULuDq7B1w8XW.jsjs 1629accb2d2438a2f610ba4cf65e376d1174423b8494fac56da7c898d631f699Virustotal results 0.00% Quakbot
2023-06-14O4kzGjp5130Fp.jsjs 325e486140498c768d75e86b2139832ae5fb99960c3a5e5ab1aef3940146850aVirustotal results 0.00%Quakbot
2023-06-13VyeFyqbdz8mx.jsjs 4ea2b569e5dc6389a3bb81ff4f84d75f4f818162238b1c9844a487674dd44157n/aQuakbot
2023-06-13UMCcwr2a6Rvz.jsjs 1b64c00768c6add77bc652b656bb85be65d2b30e8af0bbb96515146e20b6e9c6Virustotal results 0.00%Quakbot
2023-06-13AG5qVSxDcQngz.jsjs ae9f96d6e35a283ab4dd464a5da384ee0689ae0ce3a0cffaf1c416061a916a63n/a Quakbot
2023-06-13ds3U0T5ga7kXT1.jsjs 76230f54edbcd2f29188eeb0993b0cfc09222f17387e75e135166a556439f73an/a Quakbot
2023-06-13iccohoWRnkeL.jsjs 7839b74acac70c03cd08a754ed0c61f9d511e33959f130d7bf95616df2489fdfn/a Quakbot
2023-06-13LnG0WjzvEHfX.jsjs 2b9f2601e78e8d779de34c10fde4eef8dfdd8ad60fbfdd13fddac5e12d53cdb3n/a Quakbot