URLhaus Database

You are currently viewing the URLhaus database entry for https://iridium.services/download/DL/NvidiaShare1.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1567692
URL: https://iridium.services/download/DL/NvidiaShare1.exe
URL Status:Offline
Host: iridium.services
Date added:2021-08-26 21:18:03 UTC
Last online:2021-09-09 14:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2021-08-26 21:19:02 UTC to abuse{at}serverion[dot]com)
Takedown time:13 days, 16 hours, 58 minutes Bad (down since 2021-09-09 14:17:14 UTC)
Tags:32 bitrat link exe

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-08-29n/aexe 2dfe2bfefe91c1209836e4017cb2a3bb001a6de6314545f8a8eb6794a2adc204n/aBitRAT
2021-08-28n/aexe 15da7fc578a4c9d29717b19b4d5b604e08307810752fdf63d27335ba3171bbaan/aBitRAT
2021-08-27n/aexe 1e62a15bef6c5fbd94137a339272e93ee6b646f1f18a68a5e52d6e19dea03420Virustotal results 35.29%BitRAT
2021-08-26n/aexe c2e1450509092251b7376c9d4acd0636b41c19060591c0ef6c3bb58ab7e49ee0Virustotal results 29.85%BitRAT