URLhaus Database

You are currently viewing the URLhaus database entry for https://rredgh.org/reply.php which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1914408
URL: https://rredgh.org/reply.php
URL Status:Offline
Host: rredgh.org
Date added:2021-12-23 15:47:12 UTC
Last online:2021-12-23 18:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: ffforward
Abuse complaint sent (?): Yes (2021-12-23 15:49:08 UTC to abuse{at}reliablesite[dot]net)
Takedown time:2 hours, 39 minutes Good (down since 2021-12-23 18:28:59 UTC)
Tags:dll rob144 Trickbot link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-12-23logo.pngdll 81557d125b0aa7b731226af9f9b50e2ce4f1eb3e37d863789bb3730c30b52c9an/a TrickBot
2021-12-23logo.pngdll 35c7f39cfa418d221da21f3c3b6d4b10dfc444c9f276624e4e372345c57cd21en/a TrickBot
2021-12-23logo.pngdll d3b6ecc403a04c8df0c501d2cd369c01635620aa5eb2da01698d0d319dd1b781n/aTrickBot
2021-12-23logo.pngdll 9aafb30376010409f4473bac80247c126d05ae121310a50f06ba8f9aafc1c565n/a TrickBot
2021-12-23logo.pngdll 404ec189ebcb87ca43ce283a94cca5fdbee87648cd7a332a002e80ffca9d7ea7n/a TrickBot
2021-12-23logo.pngdll 85430a31db52748184d901201ff5e5b9c44e0d77f304cb9c7f79dae67aa81a77n/a TrickBot
2021-12-23logo.pngdll f2bd63cc3f2ae48c6db3cae66b0d1494120e3007937426e70003c34e6d20b03an/a TrickBot
2021-12-23logo.pngdll e8e6441c13964e7b180c5daf28a47edb8ee24f9f8680a81848a2578910a22061n/a TrickBot
2021-12-23logo.pngdll 51f76466f56723d26cf86fbc903de52d63336441ade685bc15466c033392ca6cn/a TrickBot
2021-12-23logo.pngdll 516f8c5ae4c534d86b2c7f95912b2adff9f3972c4b35a9741233a68300a2da91n/a TrickBot