URLhaus Database

You are currently viewing the URLhaus database entry for https://sentinelmc.co.za/oot/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2659471
URL: https://sentinelmc.co.za/oot/
URL Status:Offline
Host: sentinelmc.co.za
Date added:2023-06-13 17:52:57 UTC
Last online:2023-06-15 15:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-06-13 20:05:08 UTC to abusepoc{at}afrinic[dot]net)
Takedown time:1 day, 19 hours, 49 minutes Poor (down since 2023-06-15 15:55:07 UTC)
Tags:BB32 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-06-15document_DB762_Jun_15.zipzip 347349fab3382caf7993d068a6b26b42bb014bd1acbc6bc7a00c6104824ea1bcn/a Quakbot
2023-06-15document_BE571_Jun_15.zipzip cb339a400ffe5ceb17a2a283baced33d75c00db7288d0e78b83adfce4c031e25n/a Quakbot
2023-06-15EepVU6KIxxWpO.jsjs 146560224fc973517f25c62c6338a028900593c885f00c90a364c4ce99fe2774n/a 
2023-06-15bfDPZrF0WR7o.jsjs 3fa203a0820aeb67467cb433de478ab810c4c35a2db8736e3033d0fa0612da44n/a Quakbot
2023-06-15LkDCekIco0OS.jsjs 660a138a408306041c417e07209d95b00aaea6fdbc2caf8af933600e4ed39dadVirustotal results 17.24% Quakbot
2023-06-15jXBP2wB0bqkO.jsjs bafeb1f6d7d5a8f9e3b4d0d67b7e2fee6010391e56a7b3ddbcceee994d8ebf23Virustotal results 20.34% Quakbot
2023-06-15XzAFc3QfoFtPpa.jsjs 3219b0588a695168b3d4af5bcc1a86627219562bb91f7aca0dc71f31d3ebb45cn/a Quakbot
2023-06-15uRtsSmuVRTESaO.jsjs 12f6b3a923cf1bc4d43544d5df5bdbd3895c18817c6958d6c9eed4a3d35407edVirustotal results 0.00% Quakbot
2023-06-14My3F8957oeZJC1.jsjs bba6001746c5a7cb7155b20cc7222bdd5d4209ca30f0255330bace208c3e79edn/a Quakbot
2023-06-14d94HfMJINI3Wm0.jsjs ebfc26d3558a899f461dd085d5118308458f446b36239186f25f953b09860311n/a Quakbot
2023-06-14EE0XR2vPjygZ.jsjs 62e19a10016116eeda057ea57be07429e37d899d590237a0066002722f46bdc8Virustotal results 15.25% Quakbot
2023-06-14SyluCEzqroQN.jsjs 3f65fb92383f4ba551003b030280c3b28855834ecd6b3228a73ef2b96616f6e3Virustotal results 0.00% Quakbot
2023-06-14t2n2ODUHk7Lr.jsjs 10fc5f940ccf6de1541568b1e647577528c326344c22363ac7fb2f97e964afd3Virustotal results 0.00% 
2023-06-14MTCQEHycHaN3sK.jsjs 61cfe8e85215a8333a55777c1477bff67ac515129ba324a6df6180f7e3e5856eVirustotal results 1.69% Quakbot
2023-06-149S8iV1FoUqQdHc.jsjs 0da78840dc1a1f6a4e6b0ee6c016c58a59854295bfdfe85113bdef4843291f4eVirustotal results 0.00% Quakbot
2023-06-14jinomniXnpMr.jsjs 012d1532c189a10effbeccb33cf7525b79dabc14d760e1c42a956c6edb4454b2Virustotal results 0.00%
2023-06-14GoFdaPyHh8QS.jsjs 302e7520d63d0aee99b626125c45533429d5cae1d0dc0b99ee16ebcd23a74f7eVirustotal results 0.00% Quakbot
2023-06-146QGOOAWSX7xY.jsjs d9356659d982f76bec2de2275094323b1cb96f6e8febae198b9bf6727124f143Virustotal results 0.00% Quakbot
2023-06-14VqwoObEnguUAB.jsjs 9699fb4b5a460c02d05f85377271191d39ea526f91add8dc6dc2acfb74daefbfVirustotal results 0.00%
2023-06-14WMXKTSYYUcv2Y.jsjs f78c1d478c74c5e8ba107eaa636933f7419351ece3fc7db8dd2dccbc493c07bfVirustotal results 15.25% Quakbot
2023-06-13AXXm4eatDSLb.jsjs dedeb99463d2ea4f2fa93d6f102826498044e19bed4380a484404a7482598776n/a Quakbot
2023-06-13rQAcTKwHSrlMf.jsjs e5f05c013fdf154220795eb317644b06cb2115a1be54b71340f3eda32367d915Virustotal results 0.00% Quakbot
2023-06-13eriOF7tJmkQjB.jsjs 62425ee91a39bbf3e27e00b2de9c4f744bd0acf61268fec06c642e4a2ae7b97cVirustotal results 0.00%
2023-06-13Cf9rEKBl42qT.jsjs 694f0963289ae8b08112f1caf3fb77bfb8ce802690d792c2de7a975340660f92Virustotal results 0.00% 
2023-06-13G660o4zgVRQ8Ms.jsjs 546d0682160e14db0b175917feadd9324fe9de892586d92a051a0fb7fad00079n/a Quakbot