URLhaus Database

You are currently viewing the URLhaus database entry for https://merchantbli.myitas.net/k8qo0i.zip which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1674035
URL: https://merchantbli.myitas.net/k8qo0i.zip
URL Status:Offline
Host: merchantbli.myitas.net
Date added:2021-10-13 13:14:40 UTC
Last online:2022-01-13 06:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: reecdeep
Abuse complaint sent (?): Yes (2021-10-13 13:18:07 UTC to abuse{at}exabytes[dot]co[dot]id)
Takedown time:3 months, 1 days, 16 hours, 51 minutes Bad (down since 2022-01-13 06:09:54 UTC)
Tags:Dridex link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-10-14n/adll af642ae23696b4b2897ee3a5756c81a82eeb9071053a1eabbd4eeeb0eb05efcan/aDridex
2021-10-14n/adll e97cf451c4ddfe98247c8cadf81592e89dbf2e6a3dc89bc6dbd6dde1f8ebd419n/a Dridex
2021-10-14n/adll 2b234c64c132eda3af390625929cbca1d17fcb0c189decf98fbd5204205fa0f2n/a Dridex
2021-10-14n/adll 9f3a6c8a11ae21ac5fb58a0aee5dc18027ec7f02ab0ae7bb935cef2488b0d575n/a Dridex
2021-10-13n/adll 665a542ab46238e9aa0c1ebdc0c3e3386d9ee0e3c61fc58c6ff4c5726f00705an/a Dridex
2021-10-13n/adll 9ce22bc6f3c5e27928af42f3865d99bb76b446de2112bd96b5c53a276c86ca9aVirustotal results 10.61% Dridex
2021-10-13n/adll 449ec986ae0c06bcba5465bc7a14bf58f54e3bf9b76fafd85759529b6193b58an/a Dridex
2021-10-13n/adll 19ed109f5dfa9e589d28b3126e849a9b022a85486b70e39dd193720d2cbdc743Virustotal results 9.09% Dridex
2021-10-13n/adll ea0fb6f428df5ba78dc44c8b5133af259784a0feaae87da8699199bdde82b6d8n/a Dridex
2021-10-13n/adll 32a6496366e25d43a22b26a85924ae655e3bad9878cecff70176deff9690d2bdn/a Dridex
2021-10-13n/adll f97357d8db0ae59cafa51ca6bbae3356dd92311607e0b3192404969f4ff3f860Virustotal results 9.09%Dridex
2021-10-13n/adll ffe271af6c57a5f01fd692ad0c94801eff3116cdf5d6c82b2f44d666dcebd424n/a Dridex