URLhaus Database

You are currently viewing the URLhaus database entry for http://tunedinblog.com/wp-includes/kingx.scr which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1011607
URL: http://tunedinblog.com/wp-includes/kingx.scr
URL Status:Offline
Host: tunedinblog.com
Date added:2021-02-15 20:16:14 UTC
Last online:2021-02-24 13:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: p5yb34m
Abuse complaint sent (?): Yes (2021-02-16 13:23:52 UTC to nic-ipinfo{at}gmo[dot]jp)
Takedown time:8 days, 0 hours, 10 minutes Bad (down since 2021-02-24 13:33:56 UTC)
Tags:AgentTesla link Formbook link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-02-24n/aexe 561c6b25edd7346e18cbdaff23e77e4fab911818d273d262468b331947c350cen/a AgentTesla
2021-02-24n/aexe 01621b3438c149eafc7fe76c61d1fbdcb90212eca07e31fbdaa000fbd7dcb33an/a AgentTesla
2021-02-24n/aexe c7095733777fe7cb0ac0430dcc1258e0e28a6ba97a9c48effed3d2aa12f2e4d6n/a AgentTesla
2021-02-24n/aexe 0e2c26e4ec2085bea6478e5ed2dd33f6b83cc8fb8b49382ea0f9810cfbf83b78n/a AgentTesla
2021-02-24n/aexe d38ebdfe7c4502c07f0da21f6ce1a39b1bff09023c7621b9c03ac0803c6065acn/a
2021-02-23n/aexe 6cd229138eebfe9418ca06b03bcfc4d4a51755220f01c76396274ee6dde9b534n/a AgentTesla
2021-02-23n/aexe ce1daf4b4c6e3194680e04379a4132cf9cc4e776b15b5e07b70dafff28c5f32fn/a
2021-02-23n/aexe fd0884ca18599509ae5516ee52b1279074c5c445c647a58a17925a99a1182942n/a 
2021-02-23n/aexe 31e5fea1f5eb60618b313cdc6bcba30d1bac8731f3fcd6ee0c9bb1c5cdc1ca7fn/a
2021-02-23n/aexe 868aa394cb266d344100b628407348003905f4d38050555b4554c17b489fd32an/a
2021-02-22n/aexe 6e737d04db23fcdad764326bb3aa7bd9e7feed4a1f7cc3c0c9fb51b99948cffan/a
2021-02-22n/aexe 6decd08c189de40b50e790ea9cd9785c0960908bf5bbccf885d2d5c34b4349afn/a AgentTesla
2021-02-21n/aexe 6314821d38f870d9262416cd87485840f047fa93eff1744ec08f93b5a3f0aaf6n/a
2021-02-21n/aexe c677e39925c5b68b38f6d62736e489a6f16feaa4e19af360283419c6974ded73n/a 
2021-02-21n/aexe 0b90a42cd6d86597d117120f6f3319da87b1bd622c0e199d0559fcef4c876d54n/a AgentTesla
2021-02-21n/aexe abe87bf7bc7c4857fa57dec883a889ff427c430750d0d739e3f3fb0bd7fdce2an/a Formbook
2021-02-19n/aexe 8ac8986fb258ed8c9b72b3dd4d155dc30323772ccf03943586e924439d05d1cbn/a Formbook
2021-02-19n/aexe 6f9d32690a2bd1bcad4e60388da79997404c4b2a921ce1b34f4477d55e343e3fn/a Formbook
2021-02-19n/aexe 996eb941a419bf53553ee789e2afe2773e57ebf87290cb24d63a07a2bf53674bn/aFormbook
2021-02-19n/aexe 323d335eba73568d0783efe93c9e6a2bf8fcbd0d258219b9c2cc6a5d2a6d8c89n/a Formbook
2021-02-19n/aexe a19171f0f3fb44d9fcf8ee913403ff26bf71a7a7203a2c216de194df2d88c2d4n/a Formbook
2021-02-18n/aexe 836a38fd86be48b5f8c1203c0ae034b03d638a9f35fdb0e320599fd3e504ddc5n/a Formbook
2021-02-18n/aexe ffc54937d94ddf7349aca1084a33af08bb2316b6d4d644e050d64235bdd42afan/aFormbook
2021-02-18n/aexe ae497ef3edc5a30c6e99456cd7f4e579c1f5e77121a6b963e1f97643aac55a0bn/aFormbook
2021-02-17n/aexe 49b3b1d07c57d5be5a8c557feffb1307a1701928183b56e3eb1af6954ef298d5n/a Formbook
2021-02-17n/aexe a255d032f74d5eff627215eac85b4a404626de490d5e561b115af459ca5622dbn/a Formbook
2021-02-17n/aexe ffab23421c1d109637df40b1d3c2924da2376b8185ed34cad7e25ad1632573een/aFormbook
2021-02-15n/aexe c848b9f81ec7dcc330cc57ede3482805ccad25143eac801f7f56fc5cc0ccace5n/aFormbook