URLhaus Database

You are currently viewing the URLhaus database entry for which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry

URL Status:Offline
Date added:2019-04-04 18:53:03 UTC
Threat:Malware download Malware download
Google Safe Browsing:Clean
Abuse complaint sent (?): Yes (2019-04-04 18:54:02 UTC to hvfopserver{at}protonmail[dot]com)
Takedown time:20 hours, 38 minutes Good (down since 2019-04-05 15:32:15 UTC)
Tags:exe GandCrab link

Payload delivery

The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTSignature
2019-04-05n/aexe 1a26ce3b96b1ccd7af4c8d6f4de0e4b4320535b20895a295e1a96aa009843a71Virustotal results 22.06%
2019-04-04n/aexe 9878e7706f740b3d379d46e037af02e9e22930150f23dd007143e2123c4c48a6Virustotal results 26.15%Ransomware.GandCrab
2019-04-04n/aexe 60924e938260500bea6ca3a3475455bdea8ec70ad6df3358f2f867460061c535n/a