URLhaus Database

You are currently viewing the URLhaus database entry for https://picc-penang.com/ufe/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2660997
URL: https://picc-penang.com/ufe/?1
URL Status:Offline
Host: picc-penang.com
Date added:2023-06-14 16:56:42 UTC
Last online:2023-06-15 17:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-06-15 00:17:05 UTC to abuse_dci{at}tm[dot]com[dot]my)
Takedown time:17 hours, 19 minutes Good (down since 2023-06-15 17:36:22 UTC)
Tags:BB32 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-06-15document_AC926_Jun_15.zipzip 4ec8ade209cfbca83037abf274b25f40d8d7abc93ab780fa48d3eef1efefd7ecVirustotal results 6.45% Quakbot
2023-06-15document_AB628_Jun_15.zipzip 61a022f97b433cc4736996483eb8e3e979dd2ed2786ccfc96bd4e057cb33f31fVirustotal results 3.64% Quakbot
2023-06-15document_DE129_Jun_15.zipzip 0c15ae90a50d10a6f4bf3328186b02cf8cadabb5e4e56522f352d91431922141Virustotal results 6.45% Quakbot
2023-06-15document_EB082_Jun_15.zipzip 909a3307ddf91b9d73e990dd504a338e557c6b3b03498c7fa8934fd8c5a0e034n/a 
2023-06-15jSR2uaWBTXYd.jsjs 16299f7bb3e2aea4087d22762d1f29d7eb73ebb54eee77c5b1b3f99c2c01d09an/a Quakbot
2023-06-15DvOn8Swx91vE8.jsjs 8f6fc3b832f917acf9e9fac1e4e03463601fb8644279ff24b8a6ffc2d5d60384Virustotal results 19.30% Quakbot
2023-06-15JGpKH9sbvw1b.jsjs 8ad2e86d2f5888fbcdc73fde481563c01410646f92efa3b72e927515af9217deVirustotal results 0.00% Quakbot
2023-06-15lf4Ebxar9KCxo.jsjs 0628eec9b797c295a4f5f68d7ca73afd785458166c597aba0abdbc536dde821aVirustotal results 0.00% Quakbot