URLhaus Database

You are currently viewing the URLhaus database entry for http://blueprogress.org/kng.jpg which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1880953
URL: http://blueprogress.org/kng.jpg
URL Status:Offline
Host: blueprogress.org
Date added:2021-12-13 13:24:04 UTC
Last online:2021-12-15 19:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2021-12-13 20:03:51 UTC to abuse{at}cloudflare[dot]com)
Takedown time:4 days, 8 hours, 48 minutes Bad (down since 2021-12-17 22:15:36 UTC)
Tags:32 exe Loki link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-12-17n/aexe 36417779039f2662db3b8fd4b0053d4b3e99cb4c56415d33f42dc97f2fed2cf2Virustotal results 63.77%Loki
2021-12-13n/aexe 4fd66580e8d664821c64b4ca3711ba680f249ef2b804f21b2a1220900bf8d75en/aLoki
2021-12-13n/aexe a6fb347d6afd7da21673cd72dea473bf1a7133b0ac02a1ce75146644f781671eVirustotal results 32.84%Loki
2021-12-13n/aexe ced602b3c1506b507074aa67d7c92afff240d0a02bb1142868ee09b78ae3b7d6n/aLoki
2021-12-13n/aexe d8bd8cb778625f2bccaf3fa2d274dd77a46ac52206e3324dc98943aa5d0d2036Virustotal results 34.85%Loki