URLhaus Database

You are currently viewing the URLhaus database entry for https://aquaprodive.com/images/main/index.php which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2255638
URL: https://aquaprodive.com/images/main/index.php
URL Status:Offline
Host: aquaprodive.com
Date added:2022-07-09 07:13:07 UTC
Last online:2022-07-23 12:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2022-07-09 07:24:05 UTC to abuse{at}amazonaws[dot]com)
Takedown time:14 days, 4 hours, 48 minutes Bad (down since 2022-07-23 12:12:06 UTC)
Tags:DanaBot link exe ua-mozilla-777

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-07-09out.bindll f50c9c33a40da78aad3d100693c9556e997510dc3b15d43d34737e460b8c320cn/a DanaBot
2022-07-0947A6CB9C20C5563FE2654C408BE232D9.bindll 115e22d39900c863f498687b3a8140d272b8423eb65d453cfbe0741b4ecc6aa3n/a DanaBot
2022-07-099CB6DE0E3DB97F1065D182B6BC9D8A6C.bindll f090412d0488ed0780d37bc296587e8eac1b36f9bae780ab06d01e47c0d325a6n/a DanaBot
2022-07-09A68DAC43F0BCFA23C8DB94BC6F7C966C.bindll 8972392c5232d55d6220d7b980afdb7cccd7a23a4f2cbfc2b9c704b0705d12e1n/a DanaBot
2022-07-09AE9D29400FA67303F46BA3ADEDB46B5A.bindll 1392f1c861af1a484b5e55230bd255688b1e0ca3a3fd1a48904c157ffd8958f4n/a DanaBot
2022-07-09D39A9117BA1A1A6EB90B9F07EEB8E2C8.bindll b458ea6f3ce6ee8258f874affeee8c6625c3409e2b57a3875043cfcec9121bdbn/a DanaBot
2022-07-0969C378504B8F354D13B54B3A0F76E264.bindll 423e7545094b516f03fa9b9136117b5cc84fa4f7d15d4a40939cda01cc80fd2cn/a DanaBot
2022-07-09C88E21014F321E99295005388B9016DB.bindll 68027593e9c91fe4f0e1412ed861dcd1d70b4bf1e101d907fd32d58fa95d3c04n/aDanaBot