URLhaus Database

You are currently viewing the URLhaus database entry for http://www.isurucabs.lk/Ads11.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2488375
URL: http://www.isurucabs.lk/Ads11.exe
URL Status:Offline
Host: www.isurucabs.lk
Date added:2022-12-27 16:31:11 UTC
Last online:2023-01-14 20:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: andretavare5
Abuse complaint sent (?): Yes (2022-12-27 16:32:07 UTC to abuse{at}hivelocity[dot]net)
Takedown time:18 days, 3 hours, 35 minutes Bad (down since 2023-01-14 20:08:06 UTC)
Tags:ArkeiStealer link drop-by-malware LgoogLoader PrivateLoader

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-01-09n/aexe 9146cee3d387cb3d665885b95d885734541f281cbb2a4726b6a59df922a83ee7n/aAdware.Neoreklami
2023-01-08n/aexe 75fcb5d94124e7f3d099d6ac35a1af401bd52d68d6480a231171ae3b4833688an/aArkeiStealer
2023-01-07n/aexe 42a811dc46e91618c4c1aea2cc52c72a3c6f2ef04d5fe0468e94eda595af4c24Virustotal results 17.14%LgoogLoader
2023-01-07n/aexe 42a811dc46e91618c4c1aea2cc52c72a3c6f2ef04d5fe0468e94eda595af4c24Virustotal results 17.14%LgoogLoader
2023-01-07n/aexe bc8560177aa43a687207e68c27c1c9378eb6fff83e61d279641c9256d79ea055n/aLgoogLoader
2023-01-06n/aexe 53af5fe3b8955c9975a05b1607e5dd7fafdc4eb5b23c44b04e40e073f9ac7f99n/aLgoogLoader
2023-01-06n/aexe 08d04ae40642e0e82bb05e71df5ca2df95af9144392d4b59e9f88bfc86dd2a92n/aAdware.Koutodoor
2023-01-05n/aexe 97b357375a52567547a6b5f537d6cccafcf3217fdad3024ea2d654795539bdbdn/aLgoogLoader
2023-01-05n/aexe bf9cbad13935f939f44add9a131188c73e3dda014e039debc553ebacab228d83n/aLgoogLoader
2023-01-04n/aexe 2267fac6e4bcace94d9ed232cc4ba7e128424e80c5730ea38f23610c11bdc168n/aLgoogLoader
2023-01-03n/aexe 5b0fca6f18ae8fde80d95ae6578dd824271372ca5448ddcb4ffb7f81c8d5607en/aLgoogLoader
2023-01-03n/aexe d7c5c83f2939b82f5a5bf69d4ec2476b599ba4f03cb105cb3b5ff7525c065410n/a Adware.360Installer
2023-01-03n/aexe 7874691eb92e635526717c0099f6b0a6b7bc85edd2b499992ed623e39a7f3789Virustotal results 17.14% 
2023-01-03n/aexe a0d5541207037da42fb775802def799429d666a0fd52bb034e825afa2c1a51e9Virustotal results 30.99% ManusCrypt
2023-01-02n/aexe 9d9849b524012665ec0676be4eb85efcd6d51bf1dd4a68c13f364f6e74c4bc60n/aLgoogLoader
2023-01-01n/aexe 543f76321ebed2152e30f469bdde6464e9f3f35e3bcca111b297147acecf0b5cn/a
2023-01-01n/aexe 948ee2d018889c293979266e1199ad316dbc36fbea1b37a3ecb2fe9de9795c6en/aLgoogLoader
2022-12-31n/aexe d63c20debe9373a877e50c3679bb096d63cb56dfd6525e53d414980f438012aan/a
2022-12-31n/aexe 1099a94d3847925fa30d83ce653a8b6e88e36ee7748998da5358a1b4ff623af8n/aAdware.Koutodoor
2022-12-30n/aexe c7943ee404bd5a75c74a3570ed1c118fc190b0c03bd66f37c6495ef84b47ee27Virustotal results 6.56%LgoogLoader
2022-12-30n/aexe d0dcf56a1d4cdd036f873875f4baa5052ab8084178496a72fe4c4c8c404c4071n/aLgoogLoader
2022-12-29n/aexe 94ec294ea845d31c41223a7329a33c6952b3a03e7a9a7d59314fa10a118354bdn/aLgoogLoader
2022-12-29n/aexe 2e128ec938bbb7fc4c2c9444ad21ffe9e2dee5fdc74ec9bf91d9663df77c49d4n/aLgoogLoader
2022-12-28n/aexe 4ae50705d897b5c7a148bfe6241b8c1e50d8bd836ea1af326264128d58ced7c7n/aLgoogLoader
2022-12-28n/aexe 4aba54c660a656f5bb5b75ea11029217bdf96c931c21d1143042ac3278ac6e43Virustotal results 16.90%ManusCrypt
2022-12-27n/aexe 0a2277b023072b23e557dff89a6b762d232c26d464fc04fcaa906e71924d752an/aLgoogLoader