URLhaus Database

You are currently viewing the URLhaus database entry for https://spdtextile.com/sport/rockstar.php which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:357325
URL: https://spdtextile.com/sport/rockstar.php
URL Status:Offline
Host: spdtextile.com
Date added:2020-05-04 21:59:35 UTC
Last online:2020-05-05 09:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2020-05-04 22:00:09 UTC to eig-abuse{at}endurance[dot]com)
Takedown time:11 hours, 3 minutes Good (down since 2020-05-05 09:03:35 UTC)
Tags:exe IcedID link opendir

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-05-05100Dl2.exeexe 632d2b1e11b5095b242aa241d1d67cb6c200a0334ef731f2a0db9e0e9ca91ba6n/a IcedID
2020-05-0548Dl2.exeexe ee735488c0d9b5ae7175d4fa0d43131d78408c50d48bd0040284b78d29b10b3cVirustotal results 6.94% 
2020-05-0553Dl2.exeexe 0fc76cfef72038b45b555b93428de69731af18a7afa17a405d38105e7bb29452Virustotal results 7.04% IcedID
2020-05-054Dl2.exeexe 5dd6367ba291c7542e598d6d76e6bfa3d986be8b623814ec0b793611101e35d2Virustotal results 9.72% IcedID
2020-05-0521Dl2.exeexe 317a1b393ddc96b838655bb3dcd718184494f3e272189377b8d1ac7f7bc0723cVirustotal results 9.59% 
2020-05-0525Dl2.exeexe ce6c00bab459f8f01365796b2aa05ad3304b4e4273c9001dcbf49a0530875a51Virustotal results 8.45% IcedID
2020-05-0518Dl2.exeexe 9e256928685fee98b0150f91e0eff234b56d79364c23f6189c23fa716c257f62Virustotal results 8.70% IcedID
2020-05-0540Dl2.exeexe a64fa4f1a3df8a773f1fb5a2d3fb43d94246c533e8a35c9ae3849964016d9212Virustotal results 6.94% 
2020-05-041Bl1.exeexe 1986f6e904dd172eee9416942965c5abaf8e27d79f0d786ba88b34100b205f32Virustotal results 4.17% IcedID
2020-05-0442l2.exeexe f711e7742aa145ca03980ec1aa6f09f1cdcb1761532037dbf956fb08ba1e02e2Virustotal results 6.94% IcedID
2020-05-04169Cl2.exeexe 9a3650308303e62c0703d3e17ac6a761cec3b243d1321234a412832f7993779an/a 
2020-05-04155Cl2.exeexe 0c0cc0bfb59cd27820e343a883a988b8f1789dd804beec6e6729dbbd50fbb696n/a IcedID
2020-05-0412Cl2.exeexe 5203655f2284b59719f0a5bb6dadc2937340de4bf764df8ce183d6c2a33fbc81n/a IcedID