URLhaus Database

You are currently viewing the URLhaus database entry for http://d1.udashi.com/soft/dnyx/20812/richedit.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1283175
URL: http://d1.udashi.com/soft/dnyx/20812/richedit.exe
URL Status:Offline
Host: d1.udashi.com
Date added:2021-05-25 16:11:11 UTC
Last online:2024-08-01 19:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2024-08-01 16:57:07 UTC to ipas{at}cnnic[dot]cn)
Takedown time:3 years, 2 months, 24 days, 11 hours, 7 minutes Bad (down since 2024-08-02 03:19:20 UTC)
Tags:exe

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-07-05n/aexe 2d71531eaff8e3a769670ccfdd7ba037e60408e6c2c3e331aa77e0f3ff6215d3n/a 
2022-06-27n/aexe 53852dbe9bdd8befe32ac4acdd5505cc1397c94a3dace841a9a105fef2658e49n/a 
2022-06-26n/aexe 52badf1e7154d392677b2d2580e8872eac899e54ea148f237105416337a3f42cn/a 
2022-06-18n/aexe 747e6df2a091e9688bce1b56d11c676dea04922c7a9f82b53354810e0ee0ed87n/a 
2022-06-11n/aexe f81e87b6d392c527a406c8ba6d2443fa4e939edf1783802328cb7307267c5a25n/a 
2022-05-04n/aexe 87f48358acaee5d9f203de15c0d73344347224e93e2a0ad6f0392d336547ca34n/a 
2021-05-25n/aexe c41cfbf30ba7bcc2e7d12562b82ab474911f73f12944df0e3c6865f5ae3e2a0fVirustotal results 47.22%