URLhaus Database

You are currently viewing the URLhaus database entry for http://asdjgkfwsas.com/plkdmc.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:408271
URL: http://asdjgkfwsas.com/plkdmc.exe
URL Status:Offline
Host: asdjgkfwsas.com
Date added:2020-07-06 14:57:08 UTC
Last online:2020-07-07 09:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Not blocked
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2020-07-06 14:58:02 UTC to abuse{at}selectel[dot]ru)
Takedown time:18 hours, 38 minutes Good (down since 2020-07-07 09:36:29 UTC)
Tags:Dridex link exe

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-07-06n/aexe a633e85176faf87dfa99e89e559e3be3f2854592a3adb9f6ea6aab88c06dd198n/aDridex
2020-07-06n/aexe 47b55092c74fb3719d458aae65d6217c6f0c588a9ffbd0167ed4c0c97319f0b4Virustotal results 30.56% 
2020-07-06n/aexe 3ebaf782fb6b1b08ee82744fe9ad6ce0b170771ff4b782aac57104b4c0312305Virustotal results 32.88% 
2020-07-06n/aexe e1f4861f858efcd1cb1cf975515025571cf5536683681b36af9633150d0ff0a1n/aDridex
2020-07-06n/aexe a13eb2cde59d8129588b001d4d8b8c15eb469208da7cc7d4eeecd370c2f6e435n/a 
2020-07-06n/aexe c1aff265ab59e2de4810abf9b612e02081481b4ad087a31fcad2fbd9930028b1Virustotal results 34.25%Dridex