URLhaus Database

You are currently viewing the URLhaus database entry for http://loganlogisticss.com/frhe/19114/GxMHTfMvNwBOY6y5xcvi/51853/depon1?time=fUXeeJZzzn&Di=Mes3A&2FZUK=jDhYzue96VGtKVe&ref=YTgZuWjtU0QpNNeffxhWRXmZJfims&q=7TEnjbfu9d5MdKvI&=hSCZWaUdF3yq&time=qEwhzmMjH10za4ihOugaZLYr&ref=OLc which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1907803
URL: http://loganlogisticss.com/frhe/19114/GxMHTfMvNwBOY6y5xcvi/51853/depon1?time=fUXeeJZzzn&Di=Mes3A&2FZUK=jDhYzue96VGtKVe&ref=YTgZuWjtU0QpNNeffxhWRXmZJfims&q=7TEnjbfu9d5MdKvI&=hSCZWaUdF3yq&time=qEwhzmMjH10za4ihOugaZLYr&ref=OLc
URL Status:Offline
Host: loganlogisticss.com
Date added:2021-12-21 16:44:11 UTC
Last online:2021-12-21 18:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: AndreGironda
Abuse complaint sent (?): Yes (2021-12-21 16:46:35 UTC to abuse{at}pq[dot]hosting)
Takedown time:2 hours, 4 minutes Good (down since 2021-12-21 18:51:22 UTC)
Tags:bokbot dll IcedID link IceID link TA551

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-12-21depon3dll a14f87a62810694635e88e35a59ac24651a6fd873efadceeaed97d8ecfb2a084n/a 
2021-12-21depon9dll cec773b499c75432b3f2831ebe705fc9bf775dc2a1a050224fd189523fc3b2f0n/aIcedID
2021-12-21depon3dll 3fb722526f2fbe720246825a00433ad01c84c61acceb48d0a5332156364b692dn/a 
2021-12-21depon2dll 9035c7f39f0b9894cd46fc60036373ec73fad2ed3db1b39c2b8b3c8f4194a151n/aIcedID
2021-12-21depon2dll 5b9bd84a90158acd2ca0ec48d481e56a1944fe95185c55f6de81b9b451619d21n/aIcedID
2021-12-21depon11dll 412282576c10d146eb48e7d72c6434d9335b1e3bdb44693f59643a426499e95dn/a IcedID
2021-12-21depon10dll 7bb52ca6ebde0f5558c9e7422f0fe63c66d4c1d332290767c6854baae3c176d9n/aIcedID