URLhaus Database

You are currently viewing the URLhaus database entry for http://217.8.117.132/qefyur/6q7jcqdx/belial/files/drop2.zip which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:370371
URL: http://217.8.117.132/qefyur/6q7jcqdx/belial/files/drop2.zip
URL Status:Offline
Host: 217.8.117.132
Date added:2020-05-28 07:17:11 UTC
Last online:2020-06-02 19:XX:XX UTC
Threat:Malware download Malware download
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2020-05-28 07:18:02 UTC to abuse{at}grandcosmetic2[dot]ru)
Takedown time:5 days, 12 hours, 22 minutes Bad (down since 2020-06-02 19:41:00 UTC)
Tags:opendir zip

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-06-02n/azip b27305ebe415073b5203a89b8aa2066fc90763f3e3f0a88e1f723edb00ce3e58n/a 
2020-06-02n/azip 8729bf99256cdb2c20f3e8b674cac4217ec77bb3ddfb6c7cbb2f2c73aa8fc388n/a 
2020-06-02n/azip 20123bf9091617093663c4dbb1a6fd1e74132d260bd537b22d463001a93970d9n/a 
2020-05-30n/azip d7a899ed1124bec140560b8a24f738e7078f847337789bfc5b0775e8d7912d99Virustotal results 23.08%
2020-05-30n/azip bbb6e78a4658c5eef6d0f9480f5497392d025bb4863c938551b8737da63b9f67n/a 
2020-05-29n/azip a20b0c3e4d6918427da0042715c2a17eecd77c19cfb4037df10af4d2c0e39a4bn/a 
2020-05-28n/azip a60da3e8ddd856bdecd2419df2de483f17f0f095760f051347422e4e09963d80n/a 
2020-05-28n/azip 8380a42d63bbe536d2c5e63dbcbaaa1168d82c3093e6c36851173c6843b856e8n/a 
2020-05-28n/azip c6fdd1fe90975496c26984c16c3f0ba36b14e50ca496c0a4f70b06f5a6118ca4Virustotal results 28.79%