URLhaus Database

You are currently viewing the URLhaus database entry for https://email.lhccontabil.cnt.br/twh2xzxtd.jpg which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1674024
URL: https://email.lhccontabil.cnt.br/twh2xzxtd.jpg
URL Status:Offline
Host: email.lhccontabil.cnt.br
Date added:2021-10-13 13:14:36 UTC
Last online:2021-10-30 19:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: reecdeep
Abuse complaint sent (?): Yes (2021-10-13 13:18:11 UTC to eig-abuse{at}endurance[dot]com)
Takedown time:17 days, 6 hours, 27 minutes Bad (down since 2021-10-30 19:45:28 UTC)
Tags:Dridex link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-10-14n/adll 7a6a02edc9411240e2290a47921ea95ec236c1d4bba13948b5e7dcb9fdc86e43n/a Dridex
2021-10-14n/adll 1aa693d2aae69475e151885a61ea791afaf9f4a3533bf6d1182fc031b898faefn/a Dridex
2021-10-14n/adll ff32882e03c490121358ec7a804f3568b8ffd5a9e02ceedb0f66f7dfb951cbben/a Dridex
2021-10-14n/adll 1dbcadc5f2d2764dbc01194777e786416278d6d83a58cd72fc262fac51752b04Virustotal results 13.64% Dridex
2021-10-13n/adll eeec0d9f9c56d990ad2f537b919d23117cf9610b2babcc88c2ace6e4387a206cn/a Dridex
2021-10-13n/adll 17de50a0f26b28ca1202553e74acdb2bf3efa327c68f83c90fc1c97352266a2cVirustotal results 10.77% Dridex
2021-10-13n/adll 060896c12e1e76d584225a256cb9659fe3f94ab5188040cc8a0df2e3ca59467cn/aDridex
2021-10-13n/adll e19ffa56150021f69ad88bf6c2650f66b6bf4350f3163275abbf98ca94acd157n/aDridex
2021-10-13n/adll da930217646b35a663b885a27d5705caf030d41cb11a06eb0c3edea8914f2b68Virustotal results 9.52% Dridex
2021-10-13n/adll de8df48e21afdf54a34d0491f7664ddb8953ba6af0e921b209fdabc4479a91f6Virustotal results 9.09% Dridex
2021-10-13n/adll 04622665ec1dccb6fabcd0d62b24747bb650aa6964a84a966a633066c840d379n/aDridex
2021-10-13n/adll 04383e92078b7bba5951c99dc00908e38ec8c544aedf9c30743ae2a8516621f9n/aDridex