URLhaus Database

You are currently viewing the URLhaus database entry for https://varietykreations.com/wp-content/plugins/wp-roilbask/includes/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1973479
URL: https://varietykreations.com/wp-content/plugins/wp-roilbask/includes/
URL Status:Offline
Host: varietykreations.com
Date added:2022-01-13 10:05:07 UTC
Last online:2022-01-14 12:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: ffforward
Abuse complaint sent (?): Yes (2022-01-13 10:06:23 UTC to abuse{at}1and1[dot]com)
Takedown time:1 day, 2 hours, 8 minutes Poor (down since 2022-01-14 12:14:29 UTC)
Tags:IcedID link wp-roilbask xll

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-01-14DH-1642161668.xlldll 97f67fca98471d15b171917f1b24e9bc85d4ca6e94b57985235f611c15637bbdVirustotal results 21.21% IcedID
2022-01-14DH-1642157585.xlldll b6e82ee1beaffc29641bedf570c5a2704f76c1da1f0ac9f97337075e6c8ed75aVirustotal results 20.90% IcedID
2022-01-14DH-1642146788.xlldll 3092b1e6b513a751a482e7f83c3e653cd2e44d91d031201c5baad111712a8e1aVirustotal results 22.06% IcedID
2022-01-14DH-1642144296.xlldll f44c7240b424e204e34300a9e93f745fee9095f436ff86b2de9772d1084c0182Virustotal results 35.82% IcedID
2022-01-14DH-1642139260.xlldll a7d8021fc936f12b656c03b768cb00c53888073cd548b179a81529b9e36892f0Virustotal results 0.00% IcedID
2022-01-14DH-1642134560.xlldll 5cd2e18c9954e2224ffb17693487b082a41500d285e703e947a21e8d1b70f106Virustotal results 0.00% IcedID
2022-01-14DH-1642130799.xlldll 61aecc39f888146216a2e12253178d8a10c68e72de71a1ecf1131be56ba4f8d9Virustotal results 16.92% IcedID
2022-01-14DH-1642127416.xlldll 6062599bb13ef036a42185ad9d1e2f58665f29d665626ce95571c49e0107f5dbVirustotal results 0.00% IcedID
2022-01-14DH-1642121914.xlldll cbcb0c99f879bbedf38347b63fa62c480f12580e5cb95a4a357bbef602d96e61Virustotal results 27.94%IcedID
2022-01-14DH-1642118609.xlldll f65fc4fa3431e6e93d85cd91fb1fed68f46db285032c40e0b87df9614e4349ebVirustotal results 21.54% IcedID
2022-01-13DH-1642117694.xlldll cf69a7a2b9beb8ae178df59e31393bc33ba69f9ec15b5cced248ba459f2caefcVirustotal results 13.85% IcedID
2022-01-13DH-1642115442.xlldll 6038cc151cd08a021c57bee8a527e4d816f4020f94f3e43e30990999475cd415Virustotal results 28.36%IcedID
2022-01-13DH-1642112595.xlldll 3160725ecb2e49e109db6db96cb5dd7c537fe5ef8198bdcae2e55a9aa5de3384Virustotal results 0.00% IcedID
2022-01-13DH-1642110847.xlldll 69e2bc37da2c8a6f25fce37a024aca628f8216cb0ddcf70e1e55766eae011bf2Virustotal results 0.00% IcedID
2022-01-13DH-1642107913.xlldll d61b19edd293a0691527f40fb136511022d2c106bac5b770f9aedcea445c70adVirustotal results 12.31% IcedID
2022-01-13DH-1642105030.xlldll 6f7dfdabd97519cfe18e64f8e7d8663c7ad6d7422ba5ed09b473ebe290848e5dVirustotal results 15.38% IcedID
2022-01-13DH-1642104018.xlldll 1ba223ba6300c05c1e29105e519d884c2cebdbd1485838a46378c10dc77a8623Virustotal results 22.06% IcedID
2022-01-13DH-1642100953.xlldll d1e61f9b080e3b6892df3660c346870ec62ce7627437bc666d7e369e215f5f43Virustotal results 0.00% IcedID
2022-01-13DH-1642099330.xlldll 25cccdb32c59c9f617d5a40b1c0f8fc39760ae3fc2a68bc3c3708c02a0a7389dVirustotal results 23.53%IcedID
2022-01-13DH-1642098230.xlldll e4fdc8b6743a24bcb75957fc1c2591dd552637e33184affe233f2ec7aa694225Virustotal results 13.64%IcedID
2022-01-13DH-1642096609.xlldll 105047a088c424564285c660467e7d848743d0d932918d060b937e85e9f7ddd0Virustotal results 0.00% IcedID
2022-01-13DH-1642096214.xlldll 282807737e0679dc3fa77ee725ee4d6ab74f4ceaef2f33fc317cf70e82878b60Virustotal results 0.00% IcedID
2022-01-13DH-1642092908.xlldll 63775b5137b9d9e831bafd186f5cfafe4f7a7417a7bae5b5e15ebc99e0edb406Virustotal results 12.12% IcedID
2022-01-13DH-1642090501.xlldll 358bc65f18ec9fd2337171e4058855d4ef5aca1f91c02894d34b099dc1ef45adVirustotal results 0.00% IcedID
2022-01-13DH-1642089581.xlldll 93680a56efaa95e69cf26ec2a98c2de094425654db8a6c3b91f2fabc95d5cc21Virustotal results 0.00% IcedID
2022-01-13DH-1642088034.xlldll 386a6b2542e3d43404d66edb56283b4bbb8b54f0c67812ac8ae272601774e676Virustotal results 0.00% IcedID
2022-01-13DH-1642087101.xlldll 99011744097f00273285be391363bf68107fcb70e26734aab9158d6ce41b5553Virustotal results 16.92% IcedID
2022-01-13DH-1642085024.xlldll 718c54d1146a1d4a10fa7791295332e1bc18b906cbf5ee56e1f8a34b238b4cf0Virustotal results 2.99% IcedID
2022-01-13DH-1642082961.xlldll 149e1550810651ae047350af9dd52f2875b483fa7cc2b5a641d68678317d5e97Virustotal results 0.00% IcedID
2022-01-13DH-1642081394.xlldll 31ea2c96fb914d5d932a3176db0400ffbaac1af2d5b89d4f5bb58380d5cb7fa9Virustotal results 0.00% IcedID
2022-01-13DH-1642079922.xlldll 1a47ab49a5341a3cfc40bd7a64dea46cb8cad224314a51410e7ad56bb6bb93b0Virustotal results 0.00% IcedID
2022-01-13DH-1642078206.xlldll 415abfb2785209977e7293d58e6ec29345a1be9dc343ae69f17e96c5346f9fe7Virustotal results 0.00%IcedID
2022-01-13DH-1642076395.xlldll 36eea2780c6330a824f03fde03e1c465c19d1706909af8ab1da60acb3b7f02b4Virustotal results 0.00% IcedID
2022-01-13DH-1642075430.xlldll 88e452f7857567a9172ad966b76be4c9153224a32f22fa025daed33cef0b5d51Virustotal results 13.85% IcedID
2022-01-13DH-1642074139.xlldll bd865e20e2f5900398bc876d184e0abab7d62715d91130961a6a61d3cb64315aVirustotal results 0.00% IcedID
2022-01-13DH-1642072850.xlldll 0252b28502d3816c562652cf9734146ed889233c20dabf81204fd54c3631ad54Virustotal results 13.64%IcedID
2022-01-13DH-1642071172.xlldll 5a5bcd7586232234b26c06e0a0bce8ab5e4fcf32379c4f1529fa4f3797e4ea95Virustotal results 0.00% IcedID
2022-01-13DH-1642069956.xlldll 0668e57db363de949b9490d0e2498d4b2820e4009f1eae1682bee2d147858eb0Virustotal results 15.38% IcedID
2022-01-13DH-1642068306.xlldll 4db9f2e3a6a38aa75ae3cd65ce4f9e01a51f17ef831a4b95a1b8c7f4a0c4d5f8Virustotal results 0.00% IcedID