URLhaus Database

You are currently viewing the URLhaus database entry for http://nestradas.com/wp-content/plugins/contact-form-7/admin/css/2c.jpg which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:233574
URL: http://nestradas.com/wp-content/plugins/contact-form-7/admin/css/2c.jpg
URL Status:Offline
Host: nestradas.com
Date added:2019-09-20 12:11:06 UTC
Last online:2019-10-02 03:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Blocked
AdGuard :Blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: JAMESWT_MHT
Abuse complaint sent (?): Yes (2019-09-20 12:12:08 UTC to abuse{at}namecheaphosting[dot]com)
Takedown time:11 days, 14 hours, 50 minutes Bad (down since 2019-10-02 03:02:18 UTC)
Tags:Ransomware Shade link Troldesh link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-10-02n/aexe 4ec73917b313f528e854fefb5c6c467af5aec0e5ae8a9065abc00f38b04658ecVirustotal results 52.86% 
2019-10-01n/aexe 067364ef7ba19e38b3dbbeba452416dd23d849ca2a8ff860560d2478513c85d9n/a 
2019-10-01n/aexe dfe57a7a0828fadf6fbcfd82374de0ef154a32268935a1e6b2c24724ec5e6b8cn/a 
2019-10-01n/aexe 07288a7372424950dc7caeef00983297fb0f0736519c6578d527e0b0742e67e6n/a 
2019-10-01n/aexe 94a4510a44aaec16b5020dfe20e703186580b015de406fe5e18e074114c2c100n/a 
2019-10-01n/aexe bbc13a739aa76d19b09d49581f019cb0777dd6352abe3825dd075a338853c12cn/a 
2019-10-01n/aexe fbd365095977410504e89f457c506c86dc38dff21b605bc49c550ab9c7c2a00cVirustotal results 38.03% 
2019-09-30n/aexe 5f2ab5aa6ecd8e18c00a62df4c98812069167ae6889a22f90d4409b42a49ab06n/a 
2019-09-30n/aexe 9dad6e694335678ce9fba1c3839b9d2a8bcd66fac8782f212947d47f3d0a9bd3n/a 
2019-09-30n/aexe 1e13384886104bd2c65f01c983e8e54400c5561a5100b242f8f7e51a78feaf84Virustotal results 36.23% 
2019-09-30n/aexe f7211cc00cd484a4be41553f9c32de3ae812a61e9eba2b52f11da9bcdf7716e0Virustotal results 50.70% 
2019-09-30n/aexe 8592c2f4d354b3ab4e46852098efe9ef9cc86c2ef54194be51a8596349eeea06Virustotal results 49.28% 
2019-09-30n/aexe 51202a5ebdf1aa64026549161fd63b71ba5f02622ae475e1bc29b012767245b2n/a 
2019-09-30n/aexe 07a1a741d46808a894b3e85a6c74433b9c3e7a9dfe0b56ee3429a63cdd195c7cn/a 
2019-09-30n/aexe 954af755b8a31ea8b447c099264c3117db4590694c8b2db6037aa238c510c6f9n/a 
2019-09-30n/aexe 9d99205a99b64592022d338e632abc506ccae9c6f7b8e3fe9337272615bb9e7bVirustotal results 42.25% 
2019-09-30n/aexe adbe39b8965dd0aab85a10ea202e66e1531afda313117e18b4e4361c1ce2a04fn/a 
2019-09-30n/aexe fcfc258973f9a15834c4435fdee090012f5cd6c5cab77534249d4227e708a2f4Virustotal results 49.28% 
2019-09-29n/aexe 68604ddd3addee6eb14d51262e810620d0a695642affde2e32ccffd947486ed6n/a 
2019-09-29n/aexe 17e5af24dcf7d55c62f15ffd5dd4b4421967d0c26eb5396b9bd711cd25bbb80en/a 
2019-09-29n/aexe 8c87ee78138c9ea2ff80a322689bcb86b7dd63ac65d1d5f912eb89ab342d3842n/a 
2019-09-29n/aexe d91c972affd2792641bb3c33b419f6ea27fc9c315a57fdee278e44e6ed5ee34dn/a 
2019-09-29n/aexe 21355b1c3d140b6b6779234df1f9bd74cb2327ecd15c93bb11a65a9e494a9c5bn/a 
2019-09-29n/aexe d1cd17d3ec8a3016c2f66affe414fec996701cdd7eaa911d58b4a086b6194758n/a 
2019-09-29n/aexe 41dc61ad9069cc04249170ea33f8a338cd20bf0231a975c9f028c194ced042dfn/a 
2019-09-29n/aexe 79720b45dfca2f62ee7098f529f5b6175d0a4a085d42054c1e631d1b90b668e9Virustotal results 51.47% 
2019-09-29n/aexe 3f4666e161788be12595071f2a998c78e68455ba46f43f604ca1ea8c111d68b8n/a 
2019-09-29n/aexe 65572b00ef1f4a6a48b461b8d450fadfa3dfe71e89e1a865ad6ab1f323c603a8Virustotal results 49.28% 
2019-09-28n/aexe 81eb4b59c2fba0278f1eff6025c2c3a68a0e2ab0f39dfbf1207a6b22085853a3n/a 
2019-09-28n/aexe 85de9029098ea3fe1e6059a0e0082989c467e101e9d71926cd5204ddec2c1b38n/a 
2019-09-28n/aexe 40844c828c7d0a76c9cfbf6f15695577b3dfef9aab2e2a2f0001c74c69287232n/a 
2019-09-26n/aexe fa2930a0f2060839cdf5255674bcbadf36e14370a05c454cff3266f5350011ebn/a 
2019-09-26n/aexe 01cf8ec4e32525dd98d1a4a1ed1c6b47f727e760382fe3e96b741d222708227en/a 
2019-09-26n/aexe 429712d042889f01bde251f4808c08ff40f0a0f269701b0625930494bfc4284dn/a 
2019-09-26n/aexe 8041facb5ae4c3d991dcfe1a5f1bfc1536da095b86e7b2f83128e4df5d067eb9n/a 
2019-09-26n/aexe ca941b028a74551edf748531b2485d88c7bbab4b59f3564665d02c04d484dbfcn/a 
2019-09-26n/aexe 2498c9e5a361d005cc451d0049d5de37845f70c7be1709c634fe0b528d6e5bc0Virustotal results 45.59% 
2019-09-23n/aexe 198cd0c71b4972f102044d03d5124a4d84d8c7d368c1f9805ea89e8380480086n/a 
2019-09-23n/aexe 12d243d51dee5b26047357ebdabdd46e4250d722aba239cb58a5d1d05f8bdf4cn/a 
2019-09-23n/aexe 6d0a15074126186aebd286d10afcfc30901a3ed423470e53eab4f155105dfcb2n/a 
2019-09-23n/aexe 9c51ed41dd76ca6271e556adafbeaab89d9555d88a1903cb17e3f2d873429f92n/a 
2019-09-21n/aexe d61ddbb3d384e234499ca50b1809a258ec92f646331cf47483394131ab3705c7n/a 
2019-09-21n/aexe 0d9b32f08e8c0af957405a39752ecef4b5b686d11ee978b6780915c3ed0b641fn/a 
2019-09-21n/aexe 903899cc6385beb85022e8bec633d3c57b3553221a929ec27262940744ece624n/a 
2019-09-20n/aexe b7d5c66725810c90c16eac28adfed02a40ea845d38f7a2ff2d6020c1092f21b7Virustotal results 33.80%Ransomware.Troldesh