URLhaus Database

You are currently viewing the URLhaus database entry for http://flywoodsun.com/index.php which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1100003
URL: http://flywoodsun.com/index.php
URL Status:Offline
Host: flywoodsun.com
Date added:2021-03-31 10:52:20 UTC
Last online:2021-04-01 15:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter:Anonymous
Abuse complaint sent (?): Yes (2021-03-31 10:53:49 UTC to abuse-ip{at}vivacom[dot]bg)
Takedown time:1 day, 4 hours, 11 minutes Poor (down since 2021-04-01 15:05:04 UTC)
Tags:ArkeiStealer link exe Smoke Loader link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-04-0158e9331d.exeexe bc80d1fb5849235c0a8f7938a972f1fae4cb52cbe418b7be6229512f3a3c1373n/aSmoke Loader
2021-04-012eea547b.exeexe fec18786605b62adca40aa9567058ddfa34ae9bb231c1c932fc5765ada1cbe43n/a 
2021-04-01189217d5.exeexe dd8c3f3c72834081f519535babb2fad32283422a0b2ec5c219bdb44d737437ccVirustotal results 23.44% 
2021-04-01869410b2.exeexe 75e82b2d88666d9ce17cb3972c0f3cf7b6e3773456f8a0bc74ffb54d1a8ffe59n/a 
2021-04-013c3c16fe.exeexe bce3d63b57074a1b7431d48afe371758878e2925f3ea4523bf1b3a66ddd8f8c8n/a 
2021-04-01bc18cae6.exeexe ef422d847eb596e2dc5d766ddbf766153e57a89ff66e4846c71499139a47b220n/a 
2021-04-01992f28ad.exeexe 101f88e166c6d6400f011add7b788b36b9d791b69fbc82621711d681283c1177n/a 
2021-04-01f953af73.exeexe 45d673c173f0d6a651132729ad0dae65212bae3a165188d6996bc75dbb033b4bn/a Smoke Loader
2021-04-01d31d8036.exeexe b2ff5dd3d11055a941665b7a2e9aeb1324f1781681dc4b90470ad03efe3ccacan/a 
2021-04-01244d4a09.exeexe 3d04d8ebdc6a765fdc326c6e298e41473509e15b4aba80022972a08e746ae629n/a 
2021-04-012252d258.exeexe 1a90831ab31a6d1b84fb739d81c57b5012de6c3fc91c6050d2ca2c51b04be577n/a 
2021-04-013c0a1a87.exeexe bd61b7312f187dfa04c78ae340e8b5c340bfb09db24efff2f836a484fe70d8cdn/a 
2021-04-01037ddb35.exeexe 62a71d7723c2ae5cad6cdd0d3347d2cf691f4a8e01bc2e79e8fa57b1bfb752f6n/a Smoke Loader
2021-04-0157256585.exeexe 8a90ed1591d896bb95d4ffac98d14525c002caa2c6cf0fd590f954f62a50eff5n/a 
2021-04-012a35e728.exeexe b286c5996909318bea1e5ce8d9947d2d2ccc54050327b5d2bc299b550969646an/a Smoke Loader
2021-04-01e423545b.exeexe c8e651bcfb9e5b6085fe4058ebba2b015c71a04aee4d5158102c6554d346b9d9n/aSmoke Loader
2021-04-0125356228.exeexe 3d16b0529b880ef4e082718f113b8fc699635ad5e99ba47b80144f226afbb2d6n/a Smoke Loader
2021-04-0110e1063f.exeexe 3c8f11f61543300f31240b3f8f963fed1a538dd1ff7299ca46db5346f7550146n/a 
2021-04-014c2a4ef7.exeexe e36e20c1d7121ba2f6219bdc52b69c4095f009ca04b2fb78af5b694ee6a35343n/a Smoke Loader
2021-04-0174e96096.exeexe 168eada700bc85528f3405b7f4c72c9d565cc28d90e40b05d429c59a2625dd8cn/aSmoke Loader
2021-03-31ba13d311.exeexe c490ae5b2f9c6a0f3b030c837c57c8c2068f320a2c64e1abfdaa94cbb8ba3333n/aArkeiStealer
2021-03-319272f8b2.exeexe 93efcde6a07b37b75ee413fc74e138b53a3aabab478af5c890484929059f0d4fn/a Smoke Loader
2021-03-31a1139a31.exeexe a290cb96dce474984eacf049784115594abd98d21a3fe3acb69fbc1c000d794cn/a 
2021-03-31a5ef3461.exeexe 94cdffc4c3bacf9a3baeccc47769e990c07c5add78238162decaa1d5664d685fn/aSmoke Loader
2021-03-31f92235ad.exeexe 980c6c75fa4be4924a1800c9bf59e121ec479b087126c7909a93c91cdc10d250n/a 
2021-03-316330fb6e.exeexe bf6e1f3137cf96cb73f84caf360aadf73767edd0de46ee5b12921fad20b1451en/a Smoke Loader
2021-03-31a7a53719.exeexe 848759710407fd3c83109c4333875ec71f207553de30708fbc846b61d2a1b58bVirustotal results 25.76% 
2021-03-312e379352.exeexe d2138d12c12e64a90e911861db4ae043a9c225c5c15b0c4c907fa5f37e824cd4n/a 
2021-03-314fab9cc6.exeexe a0d075910c22ec856cbd281162299ce055630e5873f29450c11b748265331388n/aSmoke Loader
2021-03-31ca13937b.exeexe b4238f117ebca7b67da9d385d596f64b98c6963c4c4a21b5558232a8afda8771n/aArkeiStealer
2021-03-317cbce91c.exeexe 15a0720242e0e13d577776fefa74c511a2e055e2d8b1c8a26778ea2879d5b66fn/aSmoke Loader
2021-03-31fab11e9d.exeexe 889ad8c88f28742d66302c203d1b561fe3040890b4de2ad83f704eb48fe5e94bn/aSmoke Loader
2021-03-3149ec417e.exeexe ea0b1b22d3dc7a4de123c44678015d6daf72e4cfa283889f393fa0724ce2ae2cn/aArkeiStealer
2021-03-314805e516.exeexe ed4c8f72e049a22a51ff3d1b871fb42c1e333d4831710b7180e040d5a27a8b24n/aSmoke Loader
2021-03-310e5788f3.exeexe 1ec171eceaa41c096ef1b91eee79d32b4d3e509ae4670ec272f1f20ec799f7c3n/aSmoke Loader
2021-03-319b82a59e.exeexe 76f6f155b3125edb0141feb31649d48634e23da1a4418e6d89e7c7de6564945bn/aSmoke Loader
2021-03-3113224c58.exeexe deceb572b4fd9c2e2c964ea1a574082a7bb6cc3952ad0c2eaeabe64f20d706feVirustotal results 29.85%Smoke Loader
2021-03-31e0111c66.exeexe fce9f2519328130664d12abb856985da416497b30d5a51c625a1a5202c8f3f3fn/a 
2021-03-31b5652a9f.exeexe addfb046313926c0cfb9e4293f76c408d8e6798e129f1a1043835088c54aa69bVirustotal results 30.30%ArkeiStealer