URLhaus Database

You are currently viewing the URLhaus database entry for https://mansion.co.zw/rcbart.zip which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1674018
URL: https://mansion.co.zw/rcbart.zip
URL Status:Offline
Host: mansion.co.zw
Date added:2021-10-13 13:14:33 UTC
Last online:2021-10-27 16:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: reecdeep
Abuse complaint sent (?): Yes (2021-10-13 13:17:20 UTC to eig-abuse{at}endurance[dot]com)
Takedown time:14 days, 3 hours, 24 minutes Bad (down since 2021-10-27 16:41:30 UTC)
Tags:Dridex link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-10-14n/adll f8627cd76553400312c37b67a69dfc1427ce10fa9fdbfd89ffee39ecfc8a3572n/a Dridex
2021-10-14n/adll c37fd77fe23ffeb45b9b968b77e720e359f5c2a662066bb83a63717217138db7n/a Dridex
2021-10-14n/adll 0e3f9da31f1b55027d3ebb7e6d723a97d0c617ccb885fd81f63d7863084793f8Virustotal results 13.64% Dridex
2021-10-13n/adll 665a542ab46238e9aa0c1ebdc0c3e3386d9ee0e3c61fc58c6ff4c5726f00705an/a Dridex
2021-10-13n/adll 9ce22bc6f3c5e27928af42f3865d99bb76b446de2112bd96b5c53a276c86ca9an/a Dridex
2021-10-13n/adll 449ec986ae0c06bcba5465bc7a14bf58f54e3bf9b76fafd85759529b6193b58an/a Dridex
2021-10-13n/adll 713fc62a1cbadf2ab1fef4c2bb5cc80eefd5d5e6eb091b888232c5bed5a3051aVirustotal results 10.61% Dridex
2021-10-13n/adll 0f3516e196cf3cd6f1dce38d96f9bce41107c9b6840eec16486f777e15919200Virustotal results 9.09% Dridex
2021-10-13n/adll c9138b00a8c2a7c622bf97589eda1d3a6f11f0861f9f892c98d0999a436d7fc1Virustotal results 9.09% Dridex
2021-10-13n/adll f97357d8db0ae59cafa51ca6bbae3356dd92311607e0b3192404969f4ff3f860Virustotal results 9.09%Dridex
2021-10-13n/adll 7e6119d4bec01a6fbb11045405a697d9bd879fa6ec4887139b5f7def4a3815ffn/a Dridex