URLhaus Database

You are currently viewing the URLhaus database entry for http://tdsp.yngw518.com/vzfdjcy1h.rar which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1016797
URL: http://tdsp.yngw518.com/vzfdjcy1h.rar
URL Status:Offline
Host: tdsp.yngw518.com
Date added:2021-02-17 21:46:18 UTC
Last online:2021-08-18 07:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: stoerchl
Abuse complaint sent (?): Yes (2021-02-17 21:48:27 UTC to anti-spam{at}list[dot]alibaba-inc[dot]com,abuse{at}12321[dot]cn,abuse{at}alibaba-inc[dot]com)
Takedown time:6 months, 1 days, 9 hours, 45 minutes Bad (down since 2021-08-18 07:33:30 UTC)
Tags:Dridex link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-07-09n/adll 3f1cf124c17d100d0c07ab532f45f9d278008082cdd9ea15b9db48a8c0c8efbbn/a Dridex
2021-04-02n/adll 5735dced9acffefc59976e593d83116983d3f16b5c5923306c6a0cf144673d13n/a Dridex
2021-03-01n/adll f09b572386b6f98b17a26d14a3eae3712cf15376d75d316389f2156b1444e1d8n/a Dridex
2021-02-19n/adll 24b8298239e488912fd530ebef02f97a44f4f5d12be89391ef1c4059ee75850en/a Dridex
2021-02-19n/adll 8750fd274541ad9f2987113d0d2a1732e8f708a4810cfc4f32b85f561fca1d9bn/a Dridex
2021-02-18n/adll e56c7afb6712cd3edda9400e15c8834477a26443575404b22bb92b137289c1b9Virustotal results 7.25%Dridex
2021-02-18n/adll ff3a35ebb7a529054539464c438c1ac920647e55dac7e8f853cf33c2bfc6da7bn/aDridex
2021-02-17n/adll de7aac41ca67fe226c8cced77b863944ac32ae99cd0eeada4ac85e5eb4ddfe76Virustotal results 17.65%Dridex