URLhaus Database

You are currently viewing the URLhaus database entry for http://www.alhadafmermer.com/bnz0iu4.pdf which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:829476
URL: http://www.alhadafmermer.com/bnz0iu4.pdf
URL Status:Offline
Host: www.alhadafmermer.com
Date added:2020-11-18 12:14:14 UTC
Last online:2020-11-24 07:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: reecdeep
Abuse complaint sent (?): Yes (2020-11-18 12:16:07 UTC to abuse{at}godaddy[dot]com)
Takedown time:5 days, 19 hours, 2 minutes Bad (down since 2020-11-24 07:18:28 UTC)
Tags:dll Dridex link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-11-19n/adll f5951b345050e10fa0d3b70b42e6b56d5a720a7a67c381345e33c145e2ba2452Virustotal results 22.54%Dridex
2020-11-19n/adll 4dd698afd7543c5417458e1c3de1311fa36d0e061afe1399fdd3b22f08e76afan/a Dridex
2020-11-19n/adll 1dfe14e510aab5090641306725e2eb96d1fb3347654ef4c342b48ba4f9770636n/a Dridex
2020-11-19n/adll 1a53345f98b56c930e91cdf35a07ddaa8db19f8055d0ea6cec9f8477a81a6aedn/a Dridex
2020-11-19n/adll 32e5106716190cbe7c6417a4247f61b01143f8357188afccbdc1ed94c886ad1en/a Dridex
2020-11-18n/adll 581a2419d8e96d3367e5ead5f7de2c743133db0e69e6f3721d4a99c9ebafda36n/a Dridex
2020-11-18n/adll a6dd0ab287f5ec1861244476be86389947ebc9539c7730c09ee9b679c48ba798Virustotal results 9.86%Dridex
2020-11-18n/adll 3a051adde831c2fd025774dfa237db5b442bc654eceacf99b3b6aec7092a29dan/aDridex
2020-11-18n/adll 77419f5d237715b7664ae53e806dea7465cdb6159f76a462fc31fcd731db5f2bn/aDridex
2020-11-18n/adll 2e38ae5201156a5b159173b3e8b6d274d16cc5da67040cf71580e9b3308d1be5Virustotal results 28.57% Dridex
2020-11-18n/adll 92513d7788e6c70e269721a5454411ca78b13513ab597e3e16b9f9fad2bf0807Virustotal results 27.54%Dridex