URLhaus Database

You are currently viewing the URLhaus database entry for https://nandy.ottimosoft1.com/vyn4doxcl.tar which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1674054
URL: https://nandy.ottimosoft1.com/vyn4doxcl.tar
URL Status:Offline
Host: nandy.ottimosoft1.com
Date added:2021-10-13 13:14:48 UTC
Last online:2021-10-13 15:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: reecdeep
Abuse complaint sent (?): Yes (2021-10-13 13:19:06 UTC to abuse{at}godaddy[dot]com)
Takedown time:1 day, 1 hours, 26 minutes Poor (down since 2021-10-14 14:42:43 UTC)
Tags:Dridex link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-10-14n/adll 929dbc215486e62939ea285bd957d04705b55ebae6604674381a2b21345b8f7bn/a Dridex
2021-10-14n/adll c7bfca1ae6e34a4fc631c0a1ebcfefb9d72122ea5cdb2f9311809502bd944cecn/a Dridex
2021-10-13n/adll c8adc85bc99f52a98ab85ababc361bdf0d14f18bc201346d17548983a135e080n/a Dridex
2021-10-13n/adll 8a47bb3a1987425ac99f81c7a307a30a22f6200782dec8b3cbf2ce825d322c39n/a Dridex
2021-10-13n/adll ea6ab3d6415e07cda3ce76402abca648a43b15228b47eae21e54a468df630263n/a Dridex
2021-10-13n/adll 7ab24453e040b90ec8d8389737ca6968a35ec24a28e494b97eb9eb770c90e8b2Virustotal results 12.00% Dridex
2021-10-13n/adll 7d938aefd1e3971b1b135badfae052ea71a3be5b0b9a74756717702fcc886e1dn/a Dridex
2021-10-13n/adll 631522e561705d7b1e8943b61927aff2be4325cca41ee5458b6180793acb9de0Virustotal results 9.09% Dridex
2021-10-13n/adll c72fa2296308b8500ddb8c345035befee0711451d1272df8b6762c608e0cfb82Virustotal results 12.12%Dridex
2021-10-13n/adll 8a0519ee52a511c3f3184712136569dd8f285646a0bc7eab09bed28bdecf5601Virustotal results 9.38% Dridex