URLhaus Database

You are currently viewing the URLhaus database entry for https://mercy-tv.com/ds/4.gif which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:786755
URL: https://mercy-tv.com/ds/4.gif
URL Status:Offline
Host: mercy-tv.com
Date added:2020-11-04 16:21:04 UTC
Last online:2020-11-11 17:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: lazyactivist192
Abuse complaint sent (?): Yes (2020-11-10 15:38:04 UTC to abuse{at}contabo[dot]de)
Takedown time:1 day, 1 hours, 53 minutes Poor (down since 2020-11-11 17:31:50 UTC)
Tags:exe Qakbot link qbot link Smoke Loader link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-11-11n/aexe 2eafd204076978f8a4a3e39ab0b8dd4cbed9bec5a4ac39146e40d921c8af59ffn/aSmoke Loader
2020-11-11n/aexe e934da8d0b455bcdf23e6e9c2fa5580982bf2f9b39a5d0246b2f462bbf1ae141Virustotal results 25.00%Smoke Loader
2020-11-11n/aexe ad5592929818b5ee09b99dddb8a652d84621e0b70efe51c2f2b6ca54aeaa3713n/aSmoke Loader
2020-11-11n/aexe db4a1546780f794d3fc6d3614051778827f609da6c8f7e0c8ff4621e73594817n/aSmoke Loader
2020-11-11n/aexe f5d6498574e03f954a8b2fed5af8b5bbb4acb1a454ee6da4c9fb6e281f9f4281n/aSmoke Loader
2020-11-11n/aexe 723e9dbcf8852561b9c2d5e8af3369a7711e363ac96d134fcc00e893e3c7f38an/a Smoke Loader
2020-11-11n/aexe c78663af760456420e3e699a22f0eae8dc077e008006eeed6e9a9862bd1e46cdn/aSmoke Loader
2020-11-11n/aexe a4643670f66baed3c27b174a0f19297923fb8303aeaa90f1f8bb012816451bf7n/aSmoke Loader
2020-11-11n/aexe dcd09b13e19a92b884cb28ba68a979c7f0ebb5426646a4621573eed16d5582fbn/aSmoke Loader
2020-11-11n/aexe 58fd3ffdf5af37a59560784fa697d86fda0671e19c0fb12eb1c69107512e0b08n/aSmoke Loader
2020-11-11n/aexe 83b2869c5a013a86b0871ede8cd7fa0b556770794943eabc89dd42850de68426n/aSmoke Loader
2020-11-11n/aexe 2c10f6776795d59fe038ed6b7ff9e2d1a710a027a35845e34e4cd5fef17892f8n/aSmoke Loader
2020-11-11n/aexe 860ce43cef0bbd5b0447f02c55a6c0827aa09e3b7d537b1167bd67047980ab93n/aSmoke Loader
2020-11-11n/aexe 8cabd15a4d2dd2ba194d40548bd0218e2d86e592caa778b035e08c705cfa34c6n/aSmoke Loader
2020-11-11n/aexe ef248bae94e9f2e71b1a1a895e4b850edc487f26aaf69bb0aca4124b4adb82ecn/aSmoke Loader
2020-11-11n/aexe f57ecede28fa0147d09d5a29bb1868b266b3dc6684f82418822186dc829cc886n/aSmoke Loader
2020-11-11n/aexe a1f5590d6728d7aa1dfe61c8dc83b250c9210a101cb99eff58b7b3ad1f09ef89n/aSmoke Loader
2020-11-10n/aexe aa313a82112e4de4aea38b72fb3614d4a38bd8a42f61ab813b8b49ce6c89e065n/aSmoke Loader
2020-11-10n/aexe 2678ba851940686c1ba6c3654dd36f07dd6df96257ce6228f0b176440eae68e9n/aSmoke Loader
2020-11-10n/aexe 10b934376b942b499011c37c9af64b4b57e2331657ac9377cc34011ddb54d28cn/aSmoke Loader
2020-11-10n/aexe 5e893a569533f7464e35b23fd00eefce1fc9af2512d918b73a493ec99b5e31c8n/aSmoke Loader
2020-11-10n/aexe ab3cdb12407fd462c852a5d4565dfde55ff3baaf019f99125970d4355c238a09n/aSmoke Loader
2020-11-10n/aexe 2832bc292000609b8588c686aa05adb5995b0a790121b9c4d832d5cbe2a00047Virustotal results 29.58%Smoke Loader
2020-11-10n/aexe 810054919862bbf27f86e170be95aa80bc516a99704fc46103f24905a8099401n/aSmoke Loader
2020-11-10n/aexe fad3946d6059f0202f550dde5f55f6676b0347b3c013503c835ffb161b40cdacVirustotal results 27.78%Smoke Loader
2020-11-10n/aexe 06491c15b329dae4f216d67422dae965989b99f78343549265a2abf35263019fn/aSmoke Loader
2020-11-10n/aexe 37d36e83dfe0cfc994fcdaf5e51bc12c0ad62e712b03b8cb76419cbd19d8f40an/aSmoke Loader