URLhaus Database

You are currently viewing the URLhaus database entry for https://playd.healthnlife.pk/ldms/a43486128347.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3206745
URL: https://playd.healthnlife.pk/ldms/a43486128347.exe
URL Status:Offline
Host: playd.healthnlife.pk
Date added:2024-10-03 10:08:05 UTC
Last online:2024-10-04 09:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Status unknown
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: NDA0E
Abuse complaint sent (?): Yes (2024-10-03 10:09:08 UTC to karina-rashkovska{at}ukr[dot]net)
Takedown time:22 hours, 56 minutes Good (down since 2024-10-04 09:05:34 UTC)
Tags:exe

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-10-04n/aexe ea58b049c423125f289e21177fba00b8494e6d056a2cac115ab6357fc9adace4n/a 
2024-10-04n/aexe c53982ef3b451b1a55e36e27934813b2a99ef297854913334b9fd4ade182854cn/a 
2024-10-04n/aexe cf69a95d1daab33bb17e96291f906d1976bc5f3d65a6458bfb64445e3ea3d89en/a 
2024-10-03n/aexe b6157069a7cbba319e27ab7cd3bfe7ca736f82c08ecafe62a0b5182120d26222n/a 
2024-10-03n/aexe 9dccf01ef8e637e06306eec5c1fdcf078ba54c296f2c9788de8ee07e83666139n/a 
2024-10-03n/aexe 15e731281cc7f647e34b31d0ce795c44526f9cf8618e6ec766253250f922c754Virustotal results 26.39% 
2024-10-03n/aexe 41d41f7afcad83f488344f71a20b432c84570083aeb618adef9ce01bf77df6e4n/a