URLhaus Database

You are currently viewing the URLhaus database entry for http://playd.healthnlife.pk/ldms/a43486128347.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3206744
URL: http://playd.healthnlife.pk/ldms/a43486128347.exe
URL Status:Offline
Host: playd.healthnlife.pk
Date added:2024-10-03 10:07:05 UTC
Last online:2024-10-04 07:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Status unknown
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: NDA0E
Abuse complaint sent (?): Yes (2024-10-03 10:08:11 UTC to karina-rashkovska{at}ukr[dot]net)
Takedown time:21 hours, 42 minutes Good (down since 2024-10-04 07:50:22 UTC)
Tags:exe

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-10-04n/aexe c53982ef3b451b1a55e36e27934813b2a99ef297854913334b9fd4ade182854cn/a 
2024-10-04n/aexe f63bbbb09308de273116e3bb2d5240d220b4b5c8bf6a52c6e18c5b9fdb427acfn/a 
2024-10-04n/aexe 9b1a4c4ef8f44ea423c16d3cdfc6d4c1f8705fbfec3567d4117c62734c52886bn/a 
2024-10-03n/aexe b6157069a7cbba319e27ab7cd3bfe7ca736f82c08ecafe62a0b5182120d26222n/a 
2024-10-03n/aexe f2bd0be0369b4e63c70a027e42487f59abb5a8518f112492c661f62a023f6209n/a 
2024-10-03n/aexe 9dccf01ef8e637e06306eec5c1fdcf078ba54c296f2c9788de8ee07e83666139n/a 
2024-10-03n/aexe 15e731281cc7f647e34b31d0ce795c44526f9cf8618e6ec766253250f922c754Virustotal results 26.39% 
2024-10-03n/aexe 41d41f7afcad83f488344f71a20b432c84570083aeb618adef9ce01bf77df6e4n/a