URLhaus Database

You are currently viewing the URLhaus database entry for http://taskremindment.com:8088/wp-content/Invoice_796027.xls which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1471259
URL: http://taskremindment.com:8088/wp-content/Invoice_796027.xls
URL Status:Offline
Host: taskremindment.com
Date added:2021-07-21 16:03:07 UTC
Last online:2021-07-23 10:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Status unknown
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2021-07-21 16:04:02 UTC to abuse{at}digitalocean[dot]com)
Takedown time:1 day, 18 hours, 35 minutes Poor (down since 2021-07-23 10:39:07 UTC)
Tags:Dridex link excel

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-07-22n/adoc d89d636c3b010a1c157aa01b863494d5f1f075fa17e22d189aa9a423413e4364n/a Dridex
2021-07-22n/adoc d952ccbc039469621bccc50865bde6bacf8874f39a9f0d505fe0219089625e6bn/a Dridex
2021-07-22n/adoc 28825e50f3c6079374624c445d1d1d24cc715392e513c74faa892392bef96881n/a Dridex
2021-07-22n/adoc 89a7cfbf173adb614b668b5fbf0059f7720b43412028a3c71060ba760761b26bn/a 
2021-07-21n/adoc 8bd8af5c48a5a67877f83254cc8c74a42968fcb38d15e50013a9d315dc044428n/a Dridex
2021-07-21n/adoc 079958de9b0ced1bbd9407dd94968d894bf75733c1d183bd21330e27f48b32cdn/a Dridex
2021-07-21n/axls c0e6e403cdd0be86ab48d7bb16f28a65d9ca32f921fd374a39d4e71280faa5d8Virustotal results 29.51% Dridex