URLhaus Database

You are currently viewing the URLhaus database entry for https://picc-penang.com/droe/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2659315
URL: https://picc-penang.com/droe/?1
URL Status:Offline
Host: picc-penang.com
Date added:2023-06-13 16:37:19 UTC
Last online:2023-06-15 16:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-06-13 16:38:32 UTC to abuse_dci{at}tm[dot]com[dot]my)
Takedown time:1 day, 23 hours, 24 minutes Poor (down since 2023-06-15 16:02:42 UTC)
Tags:BB32 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-06-15document_ED807_Jun_15.zipzip 63b495a0631ce51ea48be1ccb9385df1deb42c2b91fdf3f27126e2f3693f0102Virustotal results 6.45% Quakbot
2023-06-15document_DF425_Jun_15.zipzip e4705823b10c655aabc662548e419cfc278c431074a940b84d1cefbbd96a8aa9n/a Quakbot
2023-06-15FQwjJcnYWVu0k.jsjs 90a97609cc0bafb8e0eccca0028234b561456f1d25e7d1d86edb94f9e5f3ee31n/a 
2023-06-155vlJ1BEEktUuHD.jsjs 09261c3c7447abb9865fc6ce8164a3b6c1257d9557b1db6df4cf37c8ddb8cbdcn/a 
2023-06-153OLtwL4gI7W1N.jsjs b481f238d37c5fcdd3d0ae1a7ee3d39b237ea8d7d58711781d81d36aceb28685n/a Quakbot
2023-06-15tthNdQK8bUEXFl.jsjs a6c175fc0e1e83fb47eb192e95aa8e72098db23903898eb6e8c197debe9ed93cVirustotal results 18.97% Quakbot
2023-06-14JoJkNjtO1cdom.jsjs c2eff600b95f5f4156807c65e29467824b681e150146d4a3782e397d6392a37en/a Quakbot
2023-06-14TWIqgjobWTA0B.jsjs c0ef7d2d9d6cd1a1bb686b06b31b515577f5cc9efd302f2c458c85769baf03ebn/a 
2023-06-14docu_FE089_Jun_14.zipzip fc234b182226a364753ea88854dec41d1684cd408beba0a6c5cca242250c28f5n/a Quakbot
2023-06-14docu_FD064_Jun_14.zipzip fc730787c3436dcbeab278ea71b4882ed93b3265ae8bd2c64a6d01c550f17b28n/a Quakbot
2023-06-1400A1YJYEBygmF.jsjs 3b02baf4cc6baccc5e002455497f00fb10c277bbf7668a2d0dcd8c0582a865afVirustotal results 16.95% Quakbot
2023-06-14OjlNKAu8wvnA.jsjs 88285aeeb72a8951140bc0236c733ebec023b3eb03c55ba49979003c46300b11Virustotal results 0.00%
2023-06-14R8ephkEUcWjal.jsjs 25ae3e1501445de4378eafc511e7ccc1ce8097bf4ca20e7faa59afb364c3b236Virustotal results 0.00% Quakbot
2023-06-14ZzzXW4z9tSvd.jsjs c77ed796ef00a4893ce2cbc9683838b4c6e9c4b58f52116aba6393a49c48c58aVirustotal results 15.25% Quakbot
2023-06-14Un9t2YaAGBHzot.jsjs 17746de40da113640ac8db63e66f7238c0cd0afc7318cf2b94d0185601602128n/a Quakbot
2023-06-14o8ZhTR2TMTtVBu.jsjs a4723a14b0f4cb97c6c12e88d9350a036a568b5b9edd60ab1f21ace5c41d96e0Virustotal results 15.25% Quakbot
2023-06-14triQYIUgYZxEd5.jsjs 11a40e2d36dfd04ea14241971164c249b86001a7c374329522c908a9061838d8Virustotal results 0.00% 
2023-06-1403yUYPuhWpnyK.jsjs c7eaa1a5908dc1545a9b22e424042126b2338ad5f0764e18f8547574c1598b4en/a Quakbot
2023-06-14aMe9iCMXBtlJlZ.jsjs 6d5f22677d533a9fc11c5c01590b32eb2974e96e0da226717203bca23433ba8bVirustotal results 15.25% Quakbot
2023-06-14ZU6X7uFnLfON.jsjs 08fcba4bd4294f71d9703bdfde10ef905083c55eb4288959983ed7e7dd2b0d18Virustotal results 0.00%Quakbot
2023-06-13FqDIMAWYgKbB.jsjs 0662f2e0e377b02e676e6a5a82ab0992d5aa2dcf46a99213872c8370333b8f0bVirustotal results 15.52% Quakbot
2023-06-13S0KAnumfvmD5.jsjs 3640f0af77e63c02085b4ae6b22c7e4977ec33ca0d9c67e15d5bb7f5d9b96d3an/a Quakbot
2023-06-13DdVMcI2DyJom.jsjs b3eca9550c45112394df705cacbe795be845f5a7ee5411f0ae9230a8bb452e55n/a Quakbot
2023-06-13VAVPmIHCNaKTV.jsjs 0975c3c93b7f70c773fb13060f63c8d1435081c5dbd2c9f5a7d1abd4eaebafa8n/a Quakbot
2023-06-13Ftqx5jyw9icLcr.jsjs 8a2dd98512402598992549ff209edc910eca09454686b9c0502d7e883e064509n/a Quakbot
2023-06-13LoQx8IwrXZtjX.jsjs 4b3c21efa383f5471e9dff288cf80421fd7b521919b691a24246c343de304007n/a Quakbot