URLhaus Database

You are currently viewing the URLhaus database entry for https://bigben-soft-down.com/ecm/ibm/1654790838/converter.dot which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1522201
URL: https://bigben-soft-down.com/ecm/ibm/1654790838/converter.dot
URL Status:Offline
Host: bigben-soft-down.com
Date added:2021-08-10 14:12:04 UTC
Last online:2021-08-10 15:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2021-08-10 14:13:02 UTC to abuse{at}digitalocean[dot]com)
Takedown time:1 hour, 25 minutes Good (down since 2021-08-10 15:38:54 UTC)
Tags:1654790838 IcedID link RTF

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-08-10converter.dotdoc 95fe3feb80e48064ffbc4b21b100e796b179a508c44a0b83d1061ecb3851d7cen/a IcedID
2021-08-10converter.dotdoc 45b0abdc72838c6c1005ce7fe4b0bae1a2963ac603daae902552d101d8bc6047n/a IcedID
2021-08-10converter.dotdoc 826d12a35dbf9b20da489e7979636a8b41406e8f07a5a1d959f7e83220b7c85an/a IcedID
2021-08-10converter.dotdoc 02f355e20922fb9f325569f7bb3466587823b799ae4a43bf715ee92864d0bd74n/aIcedID
2021-08-10converter.dotdoc 43a6a73b76e865ce40f8d61ffd2e961990122c190d7a76af334ddf1182f78137n/aIcedID
2021-08-10converter.dotdoc 1469b1b33aa7feb7c0cdf521ec0ca75d55f6f9d82d5b4dbcd542b84493b8630fn/aIcedID