URLhaus Database

You are currently viewing the URLhaus database entry for https://thehipsteragency.com/oore/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2634295
URL: https://thehipsteragency.com/oore/?1
URL Status:Offline
Host: thehipsteragency.com
Date added:2023-05-16 13:42:33 UTC
Last online:2023-05-18 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-16 14:28:05 UTC to abuse{at}namecheaphosting[dot]com)
Takedown time:2 days, 6 hours, 46 minutes Poor (down since 2023-05-18 21:14:58 UTC)
Tags:BB28 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-18Oojxy.jsjs d76b1300fd995ec8def343df0450c11a58a217803fee3749db4afacebc64182eVirustotal results 22.03% 
2023-05-18Mmicwn.jsjs 51ffefa8a10b6da720a80cec4735fe173669e7c974946e46c8dda908e824d8a4Virustotal results 22.03%
2023-05-18Wenfpvmc.jsjs 6016f12710a18923ed029eb1dc62882b5f1a032a7424e0169dd8c2228598f59dVirustotal results 28.81% 
2023-05-18Yfynfz.jsjs 76443e093ed6d6e3961cb5f9bbd546bab2d05f6bc2536c5744dc86f7a769bea8n/a 
2023-05-18Jekmmhi.jsjs ccfd3d544f060b0b45133acf8df8a753724ec29a916820e53f6e7692dd785c8dVirustotal results 21.67% Quakbot
2023-05-18Kkuyqzu.jsjs e3c9723f0c4736015e73df036ab893acc6c4160034969cd8a155187d7f0b0205Virustotal results 30.51% Quakbot
2023-05-18Dnel.jsjs 4765e3f8945205cf00c99d49497f3f90e74523fec9fdbd0bf9ea1f6163c07512n/a Quakbot
2023-05-18Arkz.jsjs f51bc0d7dd86e4e6db698538eca1063e4e4936ee3f57c669e347f143576749d9Virustotal results 30.51% Quakbot
2023-05-18Jnqs.jsjs 75aba79d300dca2a11da16879bf5c0fd15d388a5926381550db24144937b72fan/a Quakbot
2023-05-18Dalydqag.jsjs 266bfb248bbfb5fafc879d0a26c731499ccb3de4c57b64ce4b3a3fc6f836b93bVirustotal results 25.42% Quakbot
2023-05-18Iblrblnr.jsjs 576d80e7bad2be3b3f4ddb0ccbe067bceabbc990bb96e11007cc74c2d6ad7bean/a Quakbot
2023-05-18Abifxr.jsjs 5b34cafeebdc336b994960dac5ba4fcb70877967e1b19443c512f0a0cabc1d75Virustotal results 13.79% 
2023-05-18Qzakd.jsjs 72495f905e654ea365738e7e3ac93200be27ad81df4327197c8d1a1427209a25n/a Quakbot
2023-05-17Pmaotc.jsjs 817e3087dd09d826cc20a0381d67784b264c51a854134ac760b9219f49d58f0dn/a 
2023-05-17Vbepefyy.jsjs 8116e7914df0a4fae9adad12da668660206754557fac016131c53fcd305d537fVirustotal results 32.69% Quakbot
2023-05-17Uphs.jsjs 4a224a82cefc07c64c7c22363f17593d43b9ab03d82d39624000798d29cd331en/a 
2023-05-17Cgvfoeqs.jsjs e4ec32150d6e87a71d76e7b2f71274e3ac9a2b263e4fec937fbcf4b766731192n/a Quakbot
2023-05-17Zportun.jsjs 16cf6bcb57e5b6fbd88357c73a7c2e1fea2c60e1facf1122d4f6d9ef672f908cn/a Quakbot
2023-05-17Hgoxvaq.jsjs bbb3857a4a55979cb62365c0f64de4c52d6dfb99575872792f1875a6b7d5afd9n/a Quakbot
2023-05-17Ylbtwat.jsjs f33a199b902aff95c3dede5cbfe632298042593120c23bc925987f2dcdcfce53n/a Quakbot
2023-05-17Iiekgq.jsjs 5361a183ae32a46454a26d240051f409f160c02dc99f52257622e4af3bdef6ecn/a Quakbot
2023-05-17Ghho.jsjs 8eb5ab713e00d79859490011c99766db6c9894eca4968a3197252ab268c55488n/a Quakbot
2023-05-17Jdrpgzt.jsjs ceefe6ca86c73510debbc773a057eb8f9ba7809dcb70a2e60454f03aa1021e1dn/a Quakbot
2023-05-17Wyitlzp.jsjs 183de3c9db7a8a65190de3f7d60344c1acab2b607cd758c4c8817db06c5d79b8n/a Quakbot
2023-05-17Cfoj.jsjs 5139925fdfe29a583d51df1b2f8bbc913b460f5cbbe593f10258f8ff27b2bf53n/a Quakbot
2023-05-17Qotiic.jsjs df8059cde234f35d512cdfb103b89eba62961e69a811c8ceb17e20c0b76ae277n/a Quakbot
2023-05-17Irclqdy.jsjs 42ae5f2ff0400b836c3d3b65e253c1f9a39fa47f7648d7221f40f70a8ec05075n/a Quakbot
2023-05-16Vnqvcd.jsjs 73fed7af1f906e41e79362570551891be4356707d436189d6a1afae6460f51e6n/a Quakbot
2023-05-16Bwzvks.jsjs 38356e5ab95e694cc731815e8c3e43e343aa1fc4f0ceaad8905925762e89983bn/a Quakbot
2023-05-16Zdcrn.jsjs 27ce395b28753501fd33f8e8e16fa08797430b72d2fb90c1f15fb00edafb6167n/a 
2023-05-16Vhzdcc.jsjs 34ca60c7720f311f4b0d4f522ac15cf9a7619c05b32c5271faeefc45cd040326n/a Quakbot
2023-05-16Wjymurcn.jsjs 291eb94ffd24da5964be9209d9eb09a6e9043550700cf73a175eaf055e8f843bn/a Quakbot
2023-05-16Izhug.jsjs 52bfc7f5c4b5b406497c1d201bdb85b68e2e05d686ccb5a4b3c81aecf1f2a47an/a Quakbot
2023-05-16Vkbkdxqr.jsjs 8124351d71b70ab0d92ec8b489cec247fad21f7d5f4f984dd32f462dc0145810n/a Quakbot