URLhaus Database

You are currently viewing the URLhaus database entry for https://oakdentalclinic.com/cidn/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2659408
URL: https://oakdentalclinic.com/cidn/
URL Status:Offline
Host: oakdentalclinic.com
Date added:2023-06-13 17:52:31 UTC
Last online:2023-06-14 20:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-06-13 17:54:30 UTC to abuse{at}namecheaphosting[dot]com)
Takedown time:1 day, 2 hours, 30 minutes Poor (down since 2023-06-14 20:25:15 UTC)
Tags:BB32 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-06-14EmkFCp4EcXOj5.jsjs e929147b40a3c9bc6918edb1fe41453173adfaf92afdc18a0b3391e1414426aen/a 
2023-06-14Xq0BSYWQTCeI.jsjs 0e0e3832ef6e67f6d1823be625e6df576e3e3d045e68a498f15caac7a4a75d85n/a Quakbot
2023-06-14docu_FD295_Jun_14.zipzip 5eebd822006bdac2503bbc305af86eff62cd25302f0d01a4d70a08997ba0bc1dn/a Quakbot
2023-06-14x1R7kjBcHlBvwD.jsjs 780b7a66bb9b05d1a3f2995cb0878c3f03f9e0857f1b2b2d1eab1304c4735e16Virustotal results 1.69% Quakbot
2023-06-144oxcd5yfI3Euv4.jsjs c20449224f8229856162f5b8ffaf14fd476809a38925ce1f32a6203c15c7304cVirustotal results 0.00% Quakbot
2023-06-14Hk3ps4STjnZYt.jsjs 2b80621d811a6d0d4b3a3439ff79280fdcbaf1dfa805fa787197cb4fa010affeVirustotal results 15.25% Quakbot
2023-06-14nbzZ1r2zH6Me4.jsjs 3a089ab21d7c755c7dbec9ab6ec8ae8a9dadb6eae8d95dc3f7b3231e986e6cefVirustotal results 15.25% Quakbot
2023-06-14j0W7ynerdcjxy8.jsjs 2edb0a77788ca589f8b0e3ca38e5d248c3141d830dd6d08d3d7504aed6fa671eVirustotal results 0.00% Quakbot
2023-06-147nbSOUWPm3M3C.jsjs 04e6eea889711e2622b0a0d711caacbd10814d4aa2dc52f1660b0b4dfca55161Virustotal results 16.95% Quakbot
2023-06-14ztxkmHREnyRmNN.jsjs e84c09d55fa1d242e6e3bb0a5f0e8667f5ba97c118b316bae16e64e2d6cc53f1n/a Quakbot
2023-06-14NaxSTqUp7VGOCo.jsjs cf511c31b333d8e91a5fbde65fe820f6343954ee168d177476664a9aa8000721Virustotal results 0.00% 
2023-06-14aCUz5bqbc2cL2.jsjs d3f7132a2ad6670bacbf9660f313c6c914fe09fc762a859e302bd75dc4a62bc3Virustotal results 0.00%
2023-06-14WQJ5Ev1oJMmtm.jsjs 5c666d42ddbf63e7b6e5256e360b9b627a8f6383db3b040c888ed662123ca8cfVirustotal results 0.00%Quakbot
2023-06-136PIIYTKmVUAq.jsjs 248f62597c9428bc5920ec40a1128e5954f688fb888e243ad6ff19496f2681beVirustotal results 15.25% Quakbot
2023-06-13R8ephkEUcWjal.jsjs 25ae3e1501445de4378eafc511e7ccc1ce8097bf4ca20e7faa59afb364c3b236Virustotal results 0.00% Quakbot
2023-06-13triQYIUgYZxEd5.jsjs 11a40e2d36dfd04ea14241971164c249b86001a7c374329522c908a9061838d8Virustotal results 0.00% 
2023-06-13oHltis5AFif45.jsjs fef05fedd338a31b2f0c5bfc73323aa703677c68487cccefeff98c72d5178edbn/a Quakbot
2023-06-134YGGcDjpsNxC.jsjs 1cf12ccf2b1632da9f05834dcd311d1b703027cec1548083ee00b133e6949162Virustotal results 15.25% Quakbot
2023-06-13JFCHDDgRhAxkP.jsjs 483228cd9dbc746865382146bf2237e1f145e9abe508ce213389b481bec31c45n/a Quakbot