URLhaus Database

You are currently viewing the URLhaus database entry for https://celvadesynola.gq/34rt134.php which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:404397
URL: https://celvadesynola.gq/34rt134.php
URL Status:Offline
Host: celvadesynola.gq
Date added:2020-06-29 18:48:21 UTC
Last online:2020-06-30 04:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: DynamicAnalysis
Abuse complaint sent (?): Yes (2020-06-29 18:50:03 UTC to CloudFlare Anti-Abuse API)
Takedown time:9 hours, 22 minutes Good (down since 2020-06-30 04:12:44 UTC)
Tags:ZLoader link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-06-30rzDjYu.htmldll 11e776800f0dbb4b58521ba609bd6e96b662702caa9b446f232089402feefdf9Virustotal results 2.78% 
2020-06-30OTDZwSz.htmldll 5c7c848058361f7effbfcae6375506b08bae4f5fd9d08859c3a3529d79244c7an/a 
2020-06-30uzFlj.htmldll 7e8846953727dab0df312c29127fecd31a66cde5200382d3905c68f3f2ce0558n/a 
2020-06-29Io2Gvu.htmldll 6fdae60d4bb0470984446858b2fe7dbbf83901d0ce6bdc95c82cd21f78c8bbcdn/a 
2020-06-29FvQESwA.htmldll a8436cb63cf2cf160e4dda554f6d12337d4fc4105015826b1f8e5c9d4aa35566n/a 
2020-06-29mvMrIowu.htmldll 7b11fa39f64504d1d54e473ea54f682ecc7c994be2e545039de75b7659534681n/a 
2020-06-29Pwvi8Ko.htmldll bc180a272a35bed3b3de2a66b9e7db7442082e72e282841221319fce5355ffden/a 
2020-06-29ok5hvJ.htmldll c45c1577d001ffaaba36e362e047935562f43f11d7528b5fc40a60ab088059adn/a 
2020-06-29SmsdN.htmldll ca755b8915cb1025b4b5748e12cd7d3cbdccbcf90fd5986c911b066043d6d136Virustotal results 2.78%ZLoader
2020-06-29nKo9.htmldll 11181ef4e10650a8c5db10ac547350c8f584ef151a7af6b7c678a2e99828a94fn/a 
2020-06-29tVKfQH.htmldll 8286f11272af77ca725f4874bdc26df93473f18250d803a1373fe1059ef253d1n/a 
2020-06-29qv1m.htmldll ad8d37ffc58775d5b87adbe5cde63b8e770ff52745b14358c2c2597caa7e5fccVirustotal results 2.78% 
2020-06-29uqIMyVrp.htmldll 4e253aa16abf08030a0562f92ed1430b1bce3eb3911b2cde79204cb38618e70dn/a 
2020-06-29K9pXk3P.htmldll 17ddc83d49b6cd1d511e8c5498c44d8b4bdbbb69b13011a180f8bded117ff2f7n/aZLoader
2020-06-29OBULX.htmldll a6e59f6ed3a98fef10f49c90c7418d473e219456199dda9285d96644a4b8895dn/a 
2020-06-298B6rV7RY.htmldll 455c21fbac342659cd4b5cc162772117cce60f6b59f04dba0dd4327868a428ebn/aZLoader
2020-06-29eT4PSa.htmldll bd6d598d1d9bb09584d542780fc5fd02854d813d1d62a792924e96ecda19accaVirustotal results 4.29%ZLoader
2020-06-29NPV5agXC.htmldll ab2498c45e86e2e8807280bbdc8be8a584f7328359def50dd01bcc9f4067de73Virustotal results 4.23%ZLoader
2020-06-298PSJcw.htmldll 1f6afc74f18e32ac425549e3e5d79363c47d195cb441b66491735ec99d860530n/a 
2020-06-2957tHEB8N.htmldll b7a306bd407cca438202bfb3b92abff60f959418c7fd129487a6510554ff5706Virustotal results 2.86%ZLoader