URLhaus Database

You are currently viewing the URLhaus database entry for https://www.isurucabs.lk/SAM.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2509599
URL: https://www.isurucabs.lk/SAM.exe
URL Status:Offline
Host: www.isurucabs.lk
Date added:2023-01-16 18:53:11 UTC
Last online:2023-01-23 18:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: andretavare5
Abuse complaint sent (?): Yes (2023-01-16 18:54:05 UTC to abuse{at}hivelocity[dot]net)
Takedown time:6 days, 23 hours, 46 minutes Bad (down since 2023-01-23 18:40:53 UTC)
Tags:drop-by-malware gcleaner link LgoogLoader PrivateLoader Rhadamanthys Socelars

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-01-23n/aexe fee142712ee9fba0c3cc57b4e314480bf976e4b1707bbeb202a58ca2b98f39bdn/aManusCrypt
2023-01-22n/aexe a355fbce3b91a02a5b3e3af9a2b7b6fbaf9da6fdd5b2260e8e7c7b8ec1c1e2d2n/aRhadamanthys
2023-01-21n/aexe ca871a9028d80e2b3d73a8fe07b9d1628b52e0f9163402a3ab3199f512a36ab1Virustotal results 24.64%Rhadamanthys
2023-01-21n/aexe 140b117ebb69f027d931787d2a3b0bb445a655e5460c1100b808297c482ae1f5n/aGCleaner
2023-01-21n/aexe b6ff94943387d2c87a943f0467524529892eaa4a3195312e6186da7beb4afa5en/aLgoogLoader
2023-01-20n/aexe d25cffb2218f3a928e86fa11cfc0934da096abdeaf2fbaa53eb3313ecdd89ee2n/aRhadamanthys
2023-01-20n/aexe 6cfc4dfd10e4a160e8d70e9a8178288daff0ec49e39dd5f45f9ea553b94b4a8fn/aLgoogLoader
2023-01-19n/aexe 65a2b3cf112d50e941051116e68b736239d521bf7611e143ae1c83f93716f6f5n/aLgoogLoader
2023-01-19n/aexe 9ba9a2feb73a5cf966c84486493cd6794723538f57e9100d7e5f3bf83c148ba4n/a Socelars
2023-01-18n/aexe 70c0eab50ed39298ca6961b54dff822adde204067d84d1783f7d1b88ebbfe360n/aLgoogLoader
2023-01-17n/aexe 6326bea9cec6e2baec63ed96cd31a97770c6a63b96d1169a8b5586ec071c8778n/aLgoogLoader
2023-01-17n/aexe 6dce59b0eefdba6cc3bd0251bdd553c9657af4ca2f72c584eb1c923cdc551378Virustotal results 15.94%
2023-01-16n/aexe eb5ec9cf758bd526db090f9290d323201911b4181c3bfeb3ebd1f1af8be19285Virustotal results 14.29%LgoogLoader