URLhaus Database

You are currently viewing the URLhaus database entry for http://powardtech.com/poward.php which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:459871
URL: http://powardtech.com/poward.php
URL Status:Offline
Host: powardtech.com
Date added:2020-09-10 23:27:38 UTC
Last online:2020-09-11 06:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2020-09-10 23:28:12 UTC to abuse{at}idig[dot]net)
Takedown time:6 hours, 47 minutes Good (down since 2020-09-11 06:15:13 UTC)
Tags:exe Trickbot link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-09-11201osoros.exeexe bfce92522425c47c3b2aefa60df362a3823c86ba6fa4d34bd73359476ed7813cn/a TrickBot
2020-09-11295osoros.exeexe 0a0483ff954095fe523f2add46afe7b4cb234fe4ad98cc364c1e8132819767dbn/a TrickBot
2020-09-11634osoros.exeexe 3cf985169b9ce680c9ead4415e6eb5f62991ebe22856c53a697bbad1d43bcf5an/aTrickBot
2020-09-11298osoros.exeexe 65d8efcfa3a611aa0a1d5e8d2d5a909be7edfa2f42cdae56c55131fb18c2c24fn/a TrickBot
2020-09-1198Orthisg.exeexe de8f760c68ce3d90ac68d67bd7aa1cc90ab41c1a7c8fe4d6c145f31ae8bf2317n/a TrickBot
2020-09-11477osoros.exeexe 5122d0b120fc7510f27c53b92319a637fb871cb56e3ca258b2837924899dec26n/a TrickBot
2020-09-11444osoros.exeexe f5ead975f27590c7aa8e191ea9e413597542e0a665e6641f27e9011a18b3a4b5n/aTrickBot
2020-09-11372Orthisg.exeexe 16ebfd99b71fbe860f23412ce14045358af6087864a1685fa155a0c392b4d2efn/a 
2020-09-11386Orthisg.exeexe b7623b3571926265036e3b42539cf63eab9de4620145cd092b4fbf444db03313n/a TrickBot
2020-09-11278Orthisg.exeexe 480ad9729ec85fa126a9ac338a189799686a53575d088665890253d2aafbd7aen/a TrickBot
2020-09-11271osoros.exeexe 66b833cc53b7c8984cb521afbb3f91a64e045a2830bc2e456e91becc7d282179n/aTrickBot
2020-09-11491osoros.exeexe 06e399b781a4c5a13d67764d76189854beb3699409a5c5809eede651ba0f7435n/aTrickBot
2020-09-11710osoros.exeexe 8b2a8e5204ffb2fcf0b469a256a1d3b72618a66ad03ddd256210622bac56bae7n/aTrickBot
2020-09-1160Orthisg.exeexe 3e19ed4f33254b7401b94a47e9a01a84990d22f76b6a31781d594d5c283adac9n/aTrickBot
2020-09-11558osoros.exeexe ad6ffe42e13f29cb042920e67867b886fddd40cfae44b5aba4e3331a582b4a0fn/aTrickBot
2020-09-11465osoros.exeexe bea4a28914661d6b96f19150a9231d4718a4566ac737c2703c146dd04cf594b9n/aTrickBot
2020-09-11378osoros.exeexe a5bfe2172e147498ca3a89cd2d6e9d17387b64865ba47c1af97737c1510d3708n/a TrickBot
2020-09-11452osoros.exeexe 7b3850e39e8474d1f218df0d2ba21a3315759ebed9b40957f6336d313103ffb6n/aTrickBot
2020-09-10638osoros.exeexe 6f4e027d6a43811701f9f73b69e77a83e51336457284fb7925dcbed71b13820cn/aTrickBot
2020-09-10153Orthisg.exeexe 897f005084da429d61de951a7a1a1a6d2c64c1716c02d7615fd77cd12cf69132n/aTrickBot
2020-09-10666osoros.exeexe e8b03d2e2f16d44d8ce2272bb7f19c80c3006215b00624c79c204c70f54d1d83n/aTrickBot