URLhaus Database

You are currently viewing the URLhaus database entry for https://www.anthemio.gr/rit2efm.tar which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1674061
URL: https://www.anthemio.gr/rit2efm.tar
URL Status:Offline
Host: www.anthemio.gr
Date added:2021-10-13 13:14:50 UTC
Last online:2021-10-22 10:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: reecdeep
Abuse complaint sent (?): Yes (2021-10-13 13:18:46 UTC to abuse{at}hetzner[dot]com)
Takedown time:8 days, 21 hours, 21 minutes Bad (down since 2021-10-22 10:40:22 UTC)
Tags:Dridex link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-10-14n/adll 3fe7d50be8dc280587e381daa4c2d5140078178c925c991f3656bbdc3aab1688n/a Dridex
2021-10-14n/adll db598b60bbd13bd49605c5188057bc5c3daaabaa98d88db9e9890e3478d91a18n/a Dridex
2021-10-14n/adll 1ea43996bae81467da73f71d14f5b421ecd8947d53b79833b307d34058fc78ffn/a Dridex
2021-10-13n/adll 1a8b8b6acd9c2d706c13d2ae3a342522c1c8acf679c15134ce70d6db5c6eb7cdn/a Dridex
2021-10-13n/adll 1ad8659aed6685988f32b35668d5ba772f130bf51e8c553bc3a24d8af18a44adVirustotal results 9.09% Dridex
2021-10-13n/adll ea6ab3d6415e07cda3ce76402abca648a43b15228b47eae21e54a468df630263n/a Dridex
2021-10-13n/adll baead9dfeec5ee594b33b520a975f67a5a20c39cbef27c9b4b6eabb4ca0f212en/a Dridex
2021-10-13n/adll ffa0a2e90b1ec1dc206420825730e97cde53797c183358a842ddfd460c7779e4n/a Dridex
2021-10-13n/adll 631522e561705d7b1e8943b61927aff2be4325cca41ee5458b6180793acb9de0Virustotal results 9.09% Dridex
2021-10-13n/adll 88a94091ec39cf0fcb60f326e81f2a12ac40c6f41072f04dd0088d9c435e2d31Virustotal results 10.61%Dridex
2021-10-13n/adll 8a0519ee52a511c3f3184712136569dd8f285646a0bc7eab09bed28bdecf5601Virustotal results 9.38% Dridex