URLhaus Database

You are currently viewing the URLhaus database entry for https://marfra.ottimosoft.com/w530d0u.tar which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1674122
URL: https://marfra.ottimosoft.com/w530d0u.tar
URL Status:Offline
Host: marfra.ottimosoft.com
Date added:2021-10-13 13:15:22 UTC
Last online:2021-10-14 17:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: reecdeep
Abuse complaint sent (?): Yes (2021-10-13 13:19:48 UTC to abuse{at}godaddy[dot]com)
Takedown time:1 day, 4 hours, 8 minutes Poor (down since 2021-10-14 17:28:47 UTC)
Tags:Dridex link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-10-14n/adll 5bc5e163eb9c79c7fec76b1adc04d74460bbd2d0897fdd76af282baa5b07b442n/a Dridex
2021-10-14n/adll 95a4885068a795c1461a3d0e5602042ba9d1f809d94442bd89fb46a1961c89b3n/a Dridex
2021-10-14n/adll 8841632d649ce7a2d74544a90adb5610eab42324f45eb63c3655e438d6bf8111n/a Dridex
2021-10-14n/adll e6e11378cd641ce0ec075db2564b4a158c34e36b8beb11c0d38d236f5744b016n/a Dridex
2021-10-13n/adll e11b7b074a05e563e6dc7db463bad2edc69902777e88f79e4851ff0eca9c947an/a Dridex
2021-10-13n/adll e0ec9e2fc8fa51382c02913bf365b80fdbb5d57e694a6f8aa47b65ee50102b4fn/a Dridex
2021-10-13n/adll 426b5c4332e09b331eeabd7a4338c58a275fc0a6d99547a27b4c3e5c47182c95Virustotal results 9.23% Dridex
2021-10-13n/adll 7ab24453e040b90ec8d8389737ca6968a35ec24a28e494b97eb9eb770c90e8b2n/a Dridex
2021-10-13n/adll 7d938aefd1e3971b1b135badfae052ea71a3be5b0b9a74756717702fcc886e1dn/a Dridex
2021-10-13n/adll 4061a376c81071e9c54fae9d0e3e924ad57ffa734f25066c9c655319fae367f7Virustotal results 9.23% Dridex
2021-10-13n/adll c72fa2296308b8500ddb8c345035befee0711451d1272df8b6762c608e0cfb82Virustotal results 12.12%Dridex
2021-10-13n/adll 99dfcde4f61579e52164bee9c1078b50f84c8246d86c68ff0c8352df88032d66n/a Dridex