URLhaus Database

You are currently viewing the URLhaus database entry for https://fusionenergy.com.au/qume/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2659979
URL: https://fusionenergy.com.au/qume/
URL Status:Offline
Host: fusionenergy.com.au
Date added:2023-06-14 09:02:10 UTC
Last online:2023-06-15 16:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?):mail Yes (Ticket DCU100133084 created on 2023-06-14 09:03:04 UTC)
Takedown time:1 day, 7 hours, 14 minutes Poor (down since 2023-06-15 16:17:42 UTC)
Tags:BB32 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-06-15document_BC450_Jun_15.zipzip ec3c11e026e7448bd918181c902665a151383be4d1cbb6cbe3746d021fc9dd4cVirustotal results 6.45% Quakbot
2023-06-15document_BA974_Jun_15.zipzip fea153c0b13488bed618229fbe0ab0f9eeb97f3feff7f3998b34f69cd28cb395n/a Quakbot
2023-06-15document_AD701_Jun_15.zipzip be41eacae34f8d4f19ffaefb4b9f161d873d8e7d8ded383b98399c0849925498n/a 
2023-06-15zheH70BjBfliY9.jsjs 6bec4d9d21708537a7fc380b24a2fc2fa654430ee76411a81712767ddf674ad1n/a Quakbot
2023-06-15KCgRAEZaWJ2xN5.jsjs cce82bec64373f6974e658fc0c6981143998a7752e9793d614700f104d3f16dan/a 
2023-06-151S5TXCmbGTW4.jsjs 841432325d9d686d33d5de80b6a5da3572b266e35a4b263479734b943e299567Virustotal results 0.00% Quakbot
2023-06-14KjfkCRQhkPJdaP.jsjs a09e350ebadd973437fb88fe1801381f5ccea880a7ea6235654911d8c77cdf6bVirustotal results 0.00% Quakbot
2023-06-14uxAyIVUHyb1KCn.jsjs b328d1de18c4a9a5c786a301f4fc474355cf250f89eb94f22975462ce834183cn/a Quakbot
2023-06-14z9PbUU283TDsU.jsjs 828c63117ac4cf1f8ef69b53a33cd9c557693462776186a24b2bdba1f7b8ac99n/a Quakbot
2023-06-14docu_FB186_Jun_14.zipzip 96a867d762d0c46010b9f805f5da97acb23e70ccc5a4ee1dac619a2909c6c27an/a Quakbot
2023-06-14VCS6wRRz5XxZ.jsjs dc380c6947c5f8de2586ab7baf30b36b6a9426932323cb2096af2c5f4e2c344dVirustotal results 15.25%Quakbot
2023-06-14Rmg2vNmk1E0Og.jsjs 049aa20cd3665454320fc273d518cb89bfc984a9662ba6e5207407953f5cbdcdVirustotal results 0.00% Quakbot