URLhaus Database

You are currently viewing the URLhaus database entry for https://siwannews.in/u7ihg0i6.rar which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1673953
URL: https://siwannews.in/u7ihg0i6.rar
URL Status:Offline
Host: siwannews.in
Date added:2021-10-13 13:14:04 UTC
Last online:2021-12-23 10:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: reecdeep
Abuse complaint sent (?): Yes (2021-12-22 11:03:01 UTC to abuse{at}publicdomainregistry[dot]com)
Takedown time:2 months, 10 days, 20 hours, 14 minutes Bad (down since 2021-12-23 10:34:56 UTC)
Tags:Dridex link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-10-14n/adll 63b166d743b92d781ffb3dff55c0c8b56868d66b3862b9e3a2f45b05a4fe4872n/a Dridex
2021-10-14n/adll 667c24ee30e0cc8bdf26b87d362172d04e6cc0bc4f3e80f44ccffb8e09b69087n/a Dridex
2021-10-14n/adll 731e99ec21ae0b6b299f8ec361399761d86accb9d99d266d6c747a15e0c9a9e2n/a Dridex
2021-10-14n/adll 49c516dff10c2a3b48dfeeb1dd836bc6e8b160ce44d0de7e9ef8183df762d991n/a Dridex
2021-10-13n/adll 0920db07c5bac8024eacafaaab54427445656d34837b987099d930a305f600ddn/a Dridex
2021-10-13n/adll ab32ffc1fdb9c1d54b0ee3e1b5e0dd588e5369b6e530692c3a49ef1e45eb9342Virustotal results 10.61% Dridex
2021-10-13n/adll c4ba2f91bd439b1d2d5efc30f87d5717e8cb6ec9f8110a28ea1dd8ccc93297e5n/a Dridex
2021-10-13n/adll 12ffd6ca58913913fd51e51f2db6805092e5265b846601f3399bc3402ebf9273Virustotal results 7.81% Dridex
2021-10-13n/adll 06e41c9e1128631c9e0c2174ed4b367d0f6ed7e3481fdcc95b24d66edd02a45fn/aDridex
2021-10-13n/adll 6d5675bcaae40f069f0179c0a7302062d2b786b5bd437d2a913b058e6d053196n/a Dridex
2021-10-13n/adll 022300768af4879806a62b295825264657708576228f92efda2ba023ef0d955cVirustotal results 10.45%Dridex