URLhaus Database

You are currently viewing the URLhaus database entry for https://preview.happyhomesnri.com/xcmargug9.rar which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1674088
URL: https://preview.happyhomesnri.com/xcmargug9.rar
URL Status:Offline
Host: preview.happyhomesnri.com
Date added:2021-10-13 13:15:08 UTC
Last online:2021-10-14 04:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: reecdeep
Abuse complaint sent (?): Yes (2021-10-13 13:19:14 UTC to abuse{at}ovh[dot]net)
Takedown time:15 hours, 38 minutes Good (down since 2021-10-14 04:57:59 UTC)
Tags:Dridex link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-10-14n/adll 49c516dff10c2a3b48dfeeb1dd836bc6e8b160ce44d0de7e9ef8183df762d991n/a Dridex
2021-10-13n/adll 56f62756ff804ebd6ca38ad579bd20f17de569e603cfa714e895f4fda9d45cc8n/a Dridex
2021-10-13n/adll 9829e1b7094a2d346c7799d30836af2ad00e34dab2c5f5c9095b4fa0b3d8ba7fVirustotal results 10.61% Dridex
2021-10-13n/adll 11a796292aced5a713251ae6da4329fc6bea7b6e843a8ae493c7db4a2a862181Virustotal results 9.09% Dridex
2021-10-13n/adll 3b364e31a563973065c5854fcc58b8bad931721906928b4f8f85caea4b6493den/a Dridex
2021-10-13n/adll 30b40720d873ce6004dbd00f8aaa822adb272913338853ca92375fe7bf8ccfd9n/a Dridex
2021-10-13n/adll efebca575770915e982ca2a9e5890314445b6207e700a51bd6347bf9ae91f4b2Virustotal results 9.09% Dridex
2021-10-13n/adll 69b266a06229673e16bacf6fa94ffb8b4d8b662cec510d4c210c512d47a80327n/aDridex
2021-10-13n/adll 59ac53dd8926fd3118d03d2e71d7fba56d132303ce30e9ca85f28fd729af700an/a Dridex