URLhaus Database

You are currently viewing the URLhaus database entry for https://bluecovertrading.com/s/newddll.txt which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2164701
URL: https://bluecovertrading.com/s/newddll.txt
URL Status:Offline
Host: bluecovertrading.com
Date added:2022-04-26 09:21:05 UTC
Last online:2022-04-28 01:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-04-26 09:22:07 UTC to abuse{at}godaddy[dot]com)
Takedown time:1 day, 15 hours, 44 minutes Poor (down since 2022-04-28 01:06:57 UTC)
Tags:base64 exe txt

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-04-27n/atxt 875239807b4afec0ff3b762bbb413cd92f3d109439517edf38f08e5d002bc147n/a 
2022-04-27n/atxt a6b47b1155bb22cd2e07298294801d6dcb0aa349db43d6d5e70c1411c748d4d8n/a 
2022-04-27n/atxt 89e7eed9a82c0151406f0a41d3435f9927da46d9074f13e7b32b012d5cb2c76cn/a 
2022-04-27n/atxt aa84df552ca2f63a3b70fc8ed1e0e5b74ce91aa54a06dee67c58edabcb1dd73en/a 
2022-04-26n/atxt a3071756eaf1da2e01a96fa49a45df5c5b69b64f3567c75424cc1456bd07bfbdn/a 
2022-04-26n/atxt d02ad18f9f97ca19c0d9a79fa0199ed6f020e4f9fee3e386b5007b2f2412be4bn/a