URLhaus Database

You are currently viewing the URLhaus database entry for https://ghusain.in/ikbdfy.jpg which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1674086
URL: https://ghusain.in/ikbdfy.jpg
URL Status:Offline
Host: ghusain.in
Date added:2021-10-13 13:15:08 UTC
Last online:2021-11-19 06:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: reecdeep
Abuse complaint sent (?): Yes (2021-10-13 13:19:11 UTC to eig-abuse{at}endurance[dot]com)
Takedown time:1 month, 6 days, 16 hours, 48 minutes Bad (down since 2021-11-19 06:07:27 UTC)
Tags:Dridex link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-10-14n/adll ed01d6524a1ab3c38528f74bed5668002e96f5c2cba7dbadbd6a84ddcad37534n/a Dridex
2021-10-14n/adll 73538ddc6c59c993af0164bfc82564f8d61bda080185cb5b2d238de684b5f0e4Virustotal results 13.64% Dridex
2021-10-13n/adll a34987511b26e4ba166200b8e40f73952713debc5bd9e20016a5325e45de7a93n/a Dridex
2021-10-13n/adll 94d5b3d610ee219d7c02c07ff7c80a5059359fb16b49284f02749e34097dcb0aVirustotal results 10.77% Dridex
2021-10-13n/adll 0d002228f1c316bbeb0df23eb1af59353764670a4573520b6756fe1b100e2447n/a Dridex
2021-10-13n/adll e19ffa56150021f69ad88bf6c2650f66b6bf4350f3163275abbf98ca94acd157Virustotal results 10.61%Dridex
2021-10-13n/adll da930217646b35a663b885a27d5705caf030d41cb11a06eb0c3edea8914f2b68Virustotal results 9.52% Dridex
2021-10-13n/adll 5c3838607d36367564b0a9e46973f7d95b1d13862657d552feabbf31cd9f7549n/a Dridex
2021-10-13n/adll ccc3dbe6e59089f3f31ceca66125cf024ae13c583275474e50af07788eafd89dn/aDridex