URLhaus Database

You are currently viewing the URLhaus database entry for https://test-engine.drillobjection.in.net/05fe317c-0981-4de2-bc8a-930d369db441/verification.google which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3813209
URL: https://test-engine.drillobjection.in.net/05fe317c-0981-4de2-bc8a-930d369db441/verification.google
URL Status:Offline
Host: test-engine.drillobjection.in.net
Date added:2026-04-06 23:26:10 UTC
Last online:2026-04-07 22:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Abused domain (malware)
SURBL :Not blocked
Quad9 :Blocked
AdGuard :Blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter:Anonymous
Abuse complaint sent (?): Yes (2026-04-07 09:42:16 UTC to abuse{at}cloudflare[dot]com)
Takedown time:22 hours, 37 minutes Good (down since 2026-04-07 22:04:20 UTC)
Tags:ACRStealer ClearFake NetSupport link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2026-04-07verification.googledll 577137ad2f239cadf7b85dc38d88c52ddc76f4b308e5d14e69b5c679a4e5fc1cn/aNetSupport
2026-04-07verification.googledll 688d98d5c9bea350ebdd7550d1d927fe55baaa9daf2e139512a629c40deda1d9n/aNetSupport
2026-04-07verification.googledll 19db0556e82f47aa3a31102548cc253b887602d8ca606e6b5640c6632d4c38a9n/a ACRStealer
2026-04-06verification.googledll 093b79e8169cccb94d05d9484615168bbcbc7162eb3050453fa5e041ce7bc740n/aACRStealer