URLhaus Database

You are currently viewing the URLhaus database entry for http://uuviettravel.net/.well-known/acme-challenge/1c.jpg which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:271347
URL: http://uuviettravel.net/.well-known/acme-challenge/1c.jpg
URL Status:Offline
Host: uuviettravel.net
Date added:2019-12-18 06:43:20 UTC
Last online:2020-03-27 18:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2019-12-18 06:44:02 UTC to hm-changed{at}vnnic[dot]vn)
Takedown time:3 months, 10 days, 11 hours, 49 minutes Bad (down since 2020-03-27 18:33:07 UTC)
Tags:exe Troldesh link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-03-23n/aexe c623133f12af50e7c0b30de092deaadc9cff5b2650a367e4238e9ebc3a3a607cn/a Ransomware.Troldesh
2020-03-18n/aexe d5f84d65d5c1b0483948ee1ce9acb5fba9301e4ddde52cfa4d12d7d744ff7162n/a 
2020-03-05n/aexe d7e4722e8021f53d163e6b37e470e79d5663487c2cf3e14273862444cbfa6271n/a 
2020-03-05n/aexe 3202f8db3dba5d199add679012806f5d8534251501ff0385d503029ecfe8bcf1n/a 
2020-03-03n/aexe ebebf62ba54cbcb15db950befcaae536a2a78594b006cb7a7254503500519f04n/a 
2020-02-27n/aexe 649f3135467fb3d8e46c9a0c1c65cf508f301e6e3f0ad74d74aab30460b435e9n/a 
2020-02-20n/aexe bb03e111a820a88638ee2715a4d70c8e251c6828d8753145efff59026ffd35e4n/a 
2019-12-18n/aexe 14fe0fa7e16253e53ce4c25616e08006ad09330bea8df9161a47b2815cd83067Virustotal results 73.91%Ransomware.Troldesh