URLhaus Database

You are currently viewing the URLhaus database entry for https://montarena.com/oqoo/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2659491
URL: https://montarena.com/oqoo/
URL Status:Offline
Host: montarena.com
Date added:2023-06-13 18:39:06 UTC
Last online:2023-06-15 16:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?):mail Yes (Ticket DCU100132829 created on 2023-06-13 18:40:04 UTC)
Takedown time:1 day, 22 hours, 2 minutes Poor (down since 2023-06-15 16:42:07 UTC)
Tags:BB32 geofenced js Qakbot link Quakbot link USA

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-06-15document_EC148_Jun_15.zipzip d0c89ddd08929b70d0f1773ab6f6bdc93ef88baf2ad85792ece0061f752e2228n/a Quakbot
2023-06-15document_DF249_Jun_15.zipzip 332675f3777e1e0a550497dcdb2b511ad79d91118aada4133cdb9a1d8df009ebVirustotal results 6.45% Quakbot
2023-06-15document_AE947_Jun_15.zipzip 7ac36a36bc2e0d974f64f6154f33768ef8d44faa78203b90c34c8eff2897c0d4n/a Quakbot
2023-06-15YG0vw5VEFTm0.jsjs 69eb530482430691ab29e3e6681feb587a4ce7c4ff529ada748a9addf92b9d56n/a Quakbot
2023-06-15qn4LFRNoljKH.jsjs b534ac41528673b05486c5045e48e6e6337805231703bea424a12643e61f3b93n/a Quakbot
2023-06-15CUIGwOMRAuYgst.jsjs b98f50aadf4f6fc02d17c95f6e75cb86b38b9a69a507ed5971a8ba7085074469Virustotal results 16.95% Quakbot
2023-06-15IE21VG6VjXabIo.jsjs 0e7d757ff50239e327e2ca5497a68346e640216a56efec3744df66fe5eee10f5Virustotal results 0.00% Quakbot
2023-06-141s7pHp0sTh7kc.jsjs f4add973850b829f217f4d765e17da81751e0899b6b49422f3bf0e214da52a91n/a Quakbot
2023-06-14yNelB7YkSuEOM8.jsjs dd579f7aa537ff0f35ac8c6041820338dcabb71f5f402f4c51d064713a16e93bVirustotal results 0.00% Quakbot
2023-06-14Mz631Rzvu8g1D.jsjs 57c5039c7ecf660482796b8f670d8ab6c89b6e72447a33f4da56a9a0549b5e24n/a Quakbot
2023-06-148mU29K9AGWOuYb.jsjs 7f0779d8757870b68e42c49c9435a5d120e73b5e3bc1987063d4aefe147340e0Virustotal results 16.95% Quakbot
2023-06-14DdVMcI2DyJom.jsjs b3eca9550c45112394df705cacbe795be845f5a7ee5411f0ae9230a8bb452e55Virustotal results 15.25% Quakbot
2023-06-14tpll2uD4Txut.jsjs 28e27ef774938be3a57795a81a35d5b0ae85e7a257c2522b29e16f132a1c3fdbVirustotal results 15.25% Quakbot
2023-06-14bXbJhzU0MQtjFs.jsjs 95f2521606f82ae3b1a8d0431a422c6b9ebb5c047ce4d8cfd9f1850b80f2cdf9Virustotal results 15.25% Quakbot
2023-06-14EE0XR2vPjygZ.jsjs 62e19a10016116eeda057ea57be07429e37d899d590237a0066002722f46bdc8Virustotal results 15.25% Quakbot
2023-06-14W2I4jd9Ysv5XC9.jsjs 48f7a827ce26700fb4fc4370955e762fa9944d462d5c8ec894f100ed6a1286a1Virustotal results 0.00% Quakbot
2023-06-14AnGKHIByXXGJR.jsjs 0720937020c227e5407ee568052aec516081b7f9044da57786d68b7beec6f990Virustotal results 15.25% 
2023-06-14KIOdUV4xfNHHGK.jsjs f7f7097e102febeaa9a5ff4c8b95a9b7033a3444fc682726ebfb7d7a5395bb58Virustotal results 15.25% Quakbot
2023-06-147nbSOUWPm3M3C.jsjs 04e6eea889711e2622b0a0d711caacbd10814d4aa2dc52f1660b0b4dfca55161Virustotal results 16.95% Quakbot
2023-06-143l2Segc0bXeo.jsjs 2d450128ed46d3fe488a483213995e2bb863bbaf1867750be7b7f677d784b021Virustotal results 1.69% Quakbot
2023-06-14VSVpARyN3cztLX.jsjs ab548b135d975073153ac01adbb7a92eba6c9f4f6afde5f553b55e158ad524ebVirustotal results 0.00% 
2023-06-14WHtlC60PAY5NvF.jsjs 7074ff624519388df3fce38a20a1ce34aad2d8b620c5e61c13b7443ebd572b7eVirustotal results 0.00%Quakbot
2023-06-13IgABP14Sb2o9LS.jsjs bf6bd90587cc1646ab66519e30a7343bfce159ac0469a186f082fc5011e4d1b8Virustotal results 0.00% Quakbot
2023-06-13fsFOUbz8EWS4u.jsjs aa40a59a9bce42bac8e7f9c8cefe208cb707d97c1a2816557875e2ece947dd06n/a Quakbot
2023-06-132cqywQRY2KML.jsjs 7dfd29f00e336c863f636f640d8483f1e532289aa0ab4a8d2ae7a8c998b20eadVirustotal results 0.00% Quakbot
2023-06-13awtQQasMx7VZ7.jsjs 7bd9049004b444a6eb99d81744b86642ac85e4fcdd542341aa2fea3f7b0bee1en/aQuakbot
2023-06-13Glav2CNFO2uHDh.jsjs 370f84b7e38ad48084a7c5bfbff69b4f3abbc16296e4cd66378d18b6ecd63a31n/a Quakbot