URLhaus Database

You are currently viewing the URLhaus database entry for https://salesoxigen.com/te/?1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2646176
URL: https://salesoxigen.com/te/?1
URL Status:Offline
Host: salesoxigen.com
Date added:2023-05-30 16:50:27 UTC
Last online:2023-06-01 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?):mail Yes (Ticket DCU100124429 created on 2023-05-30 16:51:33 UTC)
Takedown time:2 days, 4 hours, 11 minutes Poor (down since 2023-06-01 21:03:17 UTC)
Tags:BB30 geofenced js Qakbot link Quakbot link USA zip

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-06-01document_D930_Jun_1.zipzip b826bfb186869411fe39ee511333fdb94dafd911b6e63c1aa77ef5188cb03df9Virustotal results 19.67% Quakbot
2023-06-01document_C859_Jun_1.zipzip f36b695d1c443a94d1edf88f0ccc4cca35789351edfb1b3ca1faf2f643dc8a55Virustotal results 21.31% Quakbot
2023-06-01document_E025_Jun_1.zipzip 582c8f27918d46f10f326f736062b9a8e0c8aa92d88f9f769cb0c8f9924693b9n/a Quakbot
2023-06-01document_F051_Jun_1.zipzip f5e9bbe9d0fa78bb5a326f171f9aa2b4c6c2d1b6518d0c8a6edf98ebb284a60fVirustotal results 22.58% Quakbot
2023-06-01document_A731_Jun_1.zipzip b4aabbcbae6062d3f46f9e46afd09282da08c40dd222254f768969d336b0bef1Virustotal results 23.33% Quakbot
2023-06-01document_E870_Jun_1.zipzip abd59f5f7df93bbc5f9148c9ae4e6d197dfbb714de97983985d900ba0f9cb842n/a Quakbot
2023-06-01doc_E368_May_31.zipzip 17677c211f0734014909cc10ff2bbbff08040b40e221ce3ae0b2ca7c5213b437Virustotal results 20.97% Quakbot
2023-06-01doc_D581_May_31.zipzip 821023697243c7804bfbcccec6358abbba4b853aed5ca0f839309e8e02ff4a04Virustotal results 29.03% Quakbot
2023-06-01doc_B051_May_31.zipzip 2ec47766bfbb052c557f34ef1350b12d00a77c7410a7729a90aa19d152b2988bVirustotal results 20.00% Quakbot
2023-06-01doc_E520_May_31.zipzip 637e28366a879db6d999e6fc4e18b2b6a079fb3db28ac8f31a4cf79c40e69053Virustotal results 30.00% Quakbot
2023-06-01doc_A210_May_31.zipzip daf1c6aa592f7b4b50cffe14bea5bd59855c885c20888f5b5e90d75ce551fc82Virustotal results 20.00% Quakbot
2023-06-01doc_D620_May_31.zipzip 6cb13f1a4c910fb6e87abf7a71ff1d1ece4f2dfeb08da8ed1617d8dfe22da4c7Virustotal results 19.35% Quakbot
2023-05-31doc_B615_May_31.zipzip 2d9b669e0eb0bbfe42d8d7cf66d17c21025ec4050a68d930129b50c9fea46c3eVirustotal results 20.97% Quakbot
2023-05-31doc_F572_May_31.zipzip 70f900a321924ebb71a13c1af1081b5bcd954e3ffcc7f3c46609e779143632e3Virustotal results 17.74% Quakbot
2023-05-31doc_E425_May_31.zipzip d664296237cfe1d561f60fd7d9ef715a2371698115c3957a43964afda47ec422Virustotal results 19.35% Quakbot
2023-05-31doc_C659_May_31.zipzip 788f19c46ada207b6a0540f50d344cd581377bd1e787e4f9b4a26185e1e1a972Virustotal results 20.97% Quakbot
2023-05-31doc_A375_May_31.zipzip de5defa8ae81e63cc3a738883994844d76ea2a9c7fdf4e234ecb8440a508bd63Virustotal results 22.58% Quakbot
2023-05-31doc_D906_May_31.zipzip 19dfb11804a8c1afa63b7eb2f78bea719f45485479c5747dc62e1c9019374a1fn/a Quakbot
2023-05-31doc_A621_May_31.zipzip c0544b84c8405ab4681a77ee581fb469ee381b0192d1426c3a2960b6d4aedde6n/a Quakbot
2023-05-31doc_C932_May_30.zipzip de92e593cefddc1d75ff7d24b0dec7a212ccf9d699e321ffb6e8cde6fffb9402Virustotal results 19.35% Quakbot
2023-05-31doc_D154_May_30.zipzip 36a4b19b2feedb1fc0590a894ed1db9a63c85504ad5b520d3e7c83344fa259beVirustotal results 17.74% Quakbot
2023-05-31doc_A814_May_30.zipzip feefa43048841d8c82c33ac8258587199e6ad8c6379ddae57e476299f71dd45aVirustotal results 18.03% Quakbot
2023-05-31doc_F058_May_30.zipzip ad36134cdef2ef6bee5149fd85e08683391b90d500407be4020690161a83f715Virustotal results 19.35% Quakbot
2023-05-31doc_D892_May_30.zipzip 4088bda2e406396aa0a9be804569fb17b776aa4f344893e85faeed566412f02aVirustotal results 17.74% Quakbot
2023-05-31doc_C590_May_30.zipzip de45caed3580276f878ce3213242562c1eb4fb2052d6a59e47fe092835bad6c6Virustotal results 19.35% Quakbot
2023-05-30doc_F721_May_30.zipzip d166e570f4cf1583ac3450872649ee8a7d347d2b5843efcf03e1877d6f4721d9Virustotal results 20.00% Quakbot
2023-05-30doc_E481_May_30.zipzip 30e419e34701d4261617cb9bb798b7ca45b73346419a3a0450aa7582357a45e4Virustotal results 17.74% Quakbot
2023-05-30doc_F170_May_30.zipzip a2e8ebf761806d94c6b7edfe2ab3e78b9472a94fd2c6a086de46c4d9fe2919d5Virustotal results 20.00% Quakbot
2023-05-30doc_B489_May_30.zipzip d9dce253283d37d72b7ecb9278c9684c43d6b8f4462cb9f0e4eb6053aea9d65dn/a Quakbot
2023-05-30doc_C738_May_30.zipzip ba0217f6b5637ad743d0e6d3e8cf30083b4d80903eb4665a286be46c912ec7c0n/a Quakbot