URLhaus Database

You are currently viewing the URLhaus database entry for https://reposebay.com/vlta/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2645607
URL: https://reposebay.com/vlta/?1
URL Status:Offline
Host: reposebay.com
Date added:2023-05-30 12:09:11 UTC
Last online:2023-05-31 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-05-30 12:10:38 UTC to abuse{at}namecheaphosting[dot]com)
Takedown time:1 day, 9 hours, 28 minutes Poor (down since 2023-05-31 21:39:18 UTC)
Tags:BB30 geofenced js Qakbot link Quakbot link USA zip

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-31doc_C059_May_31.zipzip e0ab39afb808bda724a42ec40476d313b3a82104dd300b8aaf52ff9f78f1aaeaVirustotal results 20.97% Quakbot
2023-05-31doc_C168_May_31.zipzip d76b9a6aca6f418cabd7bd81a2eab9c4bf8634ae9a112551713ce1faae841060n/a Quakbot
2023-05-31doc_C128_May_31.zipzip 46cefb05a544b05f161d0e6b82b4767a63ad63044f9285ee22bc988ec3ede860Virustotal results 22.58% Quakbot
2023-05-31doc_B083_May_31.zipzip 3b651458a90a4682c66630aec823896addbe7e3e62011fb03e5649020d5c3464n/a Quakbot
2023-05-31doc_B239_May_31.zipzip 033810a191bfc1f66d4fd6507cb86fdee6bee2d975aa853fe9b9c41501bfc139n/a Quakbot
2023-05-31doc_C528_May_30.zipzip 148580179ca52675c896504849e8b4ca4590f80523490cdd6d0d07da54430768Virustotal results 20.00% Quakbot
2023-05-31doc_C792_May_30.zipzip d6376efffb23799c409931cabed23dd46a60f12311907af201a615d2d4180d45Virustotal results 19.35% Quakbot
2023-05-31doc_F047_May_30.zipzip 7a7b08b33fbe6193651d402c14f72d03475eee3ffa8787551f8e31ba6f263890Virustotal results 20.00% Quakbot
2023-05-31doc_A895_May_30.zipzip 263effc681e4f833d87cd0d172086f06ca615b29e4e21a470bb9ea8317f9b814Virustotal results 20.00% Quakbot
2023-05-31doc_E356_May_30.zipzip b384a58e611e9d9dda1075c5155649ee177959178fbd64e77398de90eef0c663Virustotal results 19.35% 
2023-05-31doc_C936_May_30.zipzip 5b4d4eb09148e4061b96502ee6d99f864ee7ba428589221e03ff70dd06a93815Virustotal results 20.00% Quakbot
2023-05-30doc_C109_May_30.zipzip 0c6e968f2b954540ea3cda66cf4f86978f0895ddb6b2d4bef005d48e6a991a2cVirustotal results 17.74% Quakbot
2023-05-30doc_B923_May_30.zipzip efbcfc01f47caeb52a21b7b94b238d70fa928a74e9e2d237356341c4ba037been/a Quakbot
2023-05-30doc_D862_May_30.zipzip 6efc39d77ec6225965d09f545e5c27fa883a1b5a21a74edfabe017c71cce6b08n/a Quakbot
2023-05-30doc_B874_May_30.zipzip 4b3cb9364dc6cec8e6afd70eda1e5a8fe80881fab2ef2e425ff0a1c812235386n/a Quakbot
2023-05-30doc_F256_May_30.zipzip 01216be7087ea5da724598504502784daaeb259669848dc3a59f6c5c989f8275n/a Quakbot