URLhaus Database

You are currently viewing the URLhaus database entry for https://31.172.80.212/obfdownload2/task.dll which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3691003
URL: https://31.172.80.212/obfdownload2/task.dll
URL Status:flame Online (spreading malware for 3 months, 16 days, 21 hours, 31 minutes)
Host: 31.172.80.212
Date added:2025-10-30 07:16:11 UTC
Threat:Malware download Malware download
Reporter: DonPasci
Abuse complaint sent (?): Yes (2025-10-30 07:17:25 UTC to u-abuse{at}ultahost[dot]com)
Tags:dll donutloader orcusrat

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2026-02-14task.dlldll 232ac40e22d3c390269ceb7fe687deb1f6fbacbcc67b80108b1c508622c00e8an/a 
2026-02-14task.dlldll a98743b61e8aa5a495c5ff7cf0cfd712bf07b62c9c80b0a2ee6fc252cf0d7cb5n/a 
2026-02-13task.dlldll 09552e55d8bd4470163218f55849d1aeb35c7b6e554e8a68a8652868820d1f09n/a 
2026-02-13task.dlldll 948c8df7b0b425315256f4ec36a66197ee8c9a1fecbe918cdb976812b7bb4c30n/a 
2026-02-13task.dlldll 2383f57820b067a412a47d023b287adf131da01bbcb0464577751557f0a5091dn/a 
2026-02-13task.dlldll 11bd1ae9c62b586173c016134fca90053f59f761e8a3a14ea301b291b09b341en/a 
2026-02-13task.dlldll 0893e0eaa033e7405d9a449d38c947f7efbdf0406853bee3c1ec351e8e54501cn/a 
2026-02-13task.dlldll 50955409c958b5964d07bd543e8767d3b894ab35641e04b0f1a9a7365c90634fn/a 
2026-02-12task.dlldll a9c2a2a8bf494dd1d21719be1605de351e37f7564e9ca3be20aa595245c5a4ddn/a 
2026-02-12task.dlldll 4ae5012c8ded69e79f0c3d6785172ad9f3f410770eed9e36aabb0e8e92e167a8n/a 
2026-02-12task.dlldll dea107177a293fc777261bd2ed4e1f88a61ecdaf37887e2921b4d7ed9bf6a347n/a 
2026-02-12task.dlldll ea5dde14d246ccd06503dd2b05822618b7d62a9630ccd5d2351efd1e3ede9682n/aOrcusRAT
2026-02-12task.dlldll 4ad9bf9e3c39e377636a2391510f41f562122fad82aebfb18ae7923cfb932c9bn/aOrcusRAT
2026-02-11task.dlldll c5c37b03c253c7900b1c810ea10c03f89951d2558743f885ab2d0a8113d7a29fn/aOrcusRAT
2026-02-11task.dlldll 2ed1e219132beb9f057dfa6c27c83d094a886331d224215ce597bbb3e3b6f84an/aOrcusRAT
2026-02-11task.dlldll 46ac2ac73b0d42cacb46b0bdc9f2c359973d3dc2e20afe37576f611ce54550e8n/aOrcusRAT
2026-02-11task.dlldll 2dc1310a2a0eb9b773d07ff527972aea4b150c3beae2a9cfa3e938cf122b1343n/aOrcusRAT
2026-02-11task.dlldll f00547cdf83e7bb80d0303c13b05477b08e86b257bd8431cfa7d71db3a0c3d0dn/a 
2026-02-10task.dlldll 40ed56e26e47008704cf4ad456eb9fbe9512a00a22e29cebec2a6c70ded14354n/a 
2026-02-10task.dlldll 2312350df0f03b510c60ee69e9ec69e090e925ec598780826ef00aad5c62a9f6n/a 
2026-02-10task.dlldll cc425da9e1ac6272b39db00b4bfacfa89c15f78a00d72e50e86c2fae6e7675a8n/a 
2026-02-10task.dlldll f0e176b360d37129d509134d9a7733e88f975f7fb8d8e966fcc5c949c7a91ee3n/a 
2026-02-10task.dlldll 337261789a227b8877c63ce88f4061fbbd062ea26d5b4fcdbfd63e1f227f07a0n/a 
2026-02-10task.dlldll 47cc63ca4f7d8b286d8bc5331bddb20d6defa09d86430065249bee2505b9c021n/a 
2026-02-09task.dlldll 202a068ef03aaf4f1a5bbfb5c4f199fde241a1d2df1c5570fbad6e9af4826900n/a 
2026-02-09task.dlldll 19fe392b80c7b71c5e274fd1a5d898e125b5469aa098f37fbe30baa178aa4f7en/a 
2026-02-09task.dlldll 86d36605c0bff57790002479157d0b48f168c8e07ee40c812833dbb8a8621ff2n/a 
2026-02-09task.dlldll 2ecafe384f53790d2e83a35d4f2f43d3d8709e5be9f22c0059670e54ca89e824n/a 
2026-02-09task.dlldll 1e2a40b9a85200a0a87eb7f5d1f6f38e89d77939dfe01e3d5668f4315a4cfa3fn/a 
2026-02-09task.dlldll 08ee6897b8637bbf5c7539ebeb00444541b6a6838e95963027bda6342c95d1d0n/a 
2026-02-08task.dlldll c2455a95ac2a181b17db0cafed5f0f1a8e468f16bf56b9e4ea40436967dbcbben/a 
2025-10-30task.dlldll 475dcb5a908d7f69295570adbaa3f68d13a0bccaf2696583237f39ca70caebe4Virustotal results 11.43%DonutLoader