URLhaus Database

You are currently viewing the URLhaus database entry for http://www.landgfx.com/templates/chaarfile2/includes/classes/sserv.jpg which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:78784
URL: http://www.landgfx.com/templates/chaarfile2/includes/classes/sserv.jpg
URL Status:Offline
Host: www.landgfx.com
Date added:2018-11-12 16:30:07 UTC
Last online:2018-11-19 14:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2018-11-12 16:32:03 UTC to abuse{at}ovh[dot]net)
Takedown time:6 days, 21 hours, 54 minutes Bad (down since 2018-11-19 14:26:06 UTC)
Tags:exe Troldesh link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2018-11-16n/aexe f140cab283c35c92dc74db53b6d9964706538554d4151a637a406b093746692bVirustotal results 23.53% Ransomware.Troldesh
2018-11-15n/aexe b973df57610a3a216c95feab8e75b4ba61bde4e8d6cc7bfe15100eae2539e446Virustotal results 34.33% 
2018-11-15n/aexe 50992d9ee47283a09dcbb68a9f56f75b461910a865f584d18b569c03d7b1becaVirustotal results 20.90% 
2018-11-14n/aexe b8a4655b79681d5c85aafa7da358b04c34eb10f9110852efe77827be375b03d7Virustotal results 26.47% 
2018-11-14n/aexe 3f5c33fe848a036a39ea7624b7b16452a216487db71257cec6341ca7112d2d00Virustotal results 26.47% 
2018-11-14n/aexe c2b777db387e84c008ebf47cfe821eb079e36e594614c17d8a771ca95bd086abVirustotal results 19.70% 
2018-11-13n/aexe 1973cc857f5f1cda83a4d398fe3d8eb6e51ce4306fed19ea57b52c49aaccbb35Virustotal results 26.47% 
2018-11-13n/aexe 884889664da9a0dae4ef3f93d55c6b5ee8ac7e99fbb501f4d8592a6a3f9fbb2eVirustotal results 12.90% 
2018-11-13n/aexe 7a19bff555c95a92a5cdfb8e2eda6f078a43349a5d6dfc664226cf38ef5b9418n/a 
2018-11-12n/aexe e920835548ad7b62943d9e1f9fac3cb32112b9cf8c02acbeb8d60c17e08c0818Virustotal results 13.43% Ransomware.Troldesh