URLhaus Database

You are currently viewing the URLhaus database entry for https://vastralaya.shop/ynibgkd65jf/Scan/ToKGN8vSc/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:184222
URL: https://vastralaya.shop/ynibgkd65jf/Scan/ToKGN8vSc/
URL Status:Offline
Host: vastralaya.shop
Date added:2019-04-24 22:13:04 UTC
Last online:2019-04-25 06:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2019-04-24 22:14:03 UTC to abuse{at}cloudflare[dot]com)
Takedown time:8 hours, 34 minutes Good (down since 2019-04-25 06:48:11 UTC)
Tags:doc emotet link epoch2

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-04-25LLC_618939540072US_Apr_25_2019.zipzip e02cfc8b42b7406efa85fd8da8425b5b763cfa57d3441bc57c3d30b32aed25dbn/a 
2019-04-25FILE_925271428680US_Apr_25_2019.zipzip 4526fea460cd589367c6181c9a893aadcb4c911f2d6800e4fb4b5b4a296018ecn/a 
2019-04-25SCAN_07244794483US_Apr_25_2019.zipzip 0e169c315ed41107f8a6a5b8cd3d769ca7dbc485ed06e67e65867984f3616750n/a 
2019-04-25LLC_50219777231US_Apr_25_2019.zipzip c1c6cb609c87456a49f0b5d19f212f2ab11ce65293d3ae92a01d15f6ea59ffa9n/a 
2019-04-25SCAN_949181166097US_Apr_25_2019.zipzip 062c1cc3375ff36b10b5eaedd9f1c44aa6f4bec64089a5e3aa31cea8c360e6e1n/a 
2019-04-25SCAN_2589214075US_Apr_25_2019.zipzip 35a9c22676dd796881d202356c1de5f252c7367bcc0a091419a6a6636d77e892n/a 
2019-04-25DOC_020866442548US_Apr_25_2019.zipzip 838f5c751433aa4b40aee7b83b7765122264d208c9058cb131982ac4154abfd3n/a 
2019-04-25Document_7995731763US_Apr_25_2019.zipzip 744521cecd28b6903c9017cffe68ea7b69006adabd14be530a40566eb04ef574n/a 
2019-04-25DOC_25182468071US_Apr_25_2019.zipzip 765e87177b620e7d9526987ab27ddca1a302c85bc0163f61f54f7b88050516bfn/a 
2019-04-24FILE_8587951418US_Apr_25_2019.zipzip 6b6909d89ea4d1a489ff21640e4f36ca410f323dc3df1f6895b94503422fe95cVirustotal results 18.64% 
2019-04-24DOC_079035166661US_Apr_25_2019.zipzip 65bd2f039a6ba720598c2b7a653a4a7a8a96180dd5df0a0af2aa52d52149a192Virustotal results 22.41% 
2019-04-24Document_6202233445US_Apr_25_2019.zipzip 19395774ce7a8a1630551bbbaf9988c5fe6a54ebe4b8d6a36ecaf10bd3220efcn/a