URLhaus Database

You are currently viewing the URLhaus database entry for http://plasfan.ind.br/g62tkiapp.pdf which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:829478
URL: http://plasfan.ind.br/g62tkiapp.pdf
URL Status:Offline
Host: plasfan.ind.br
Date added:2020-11-18 12:14:15 UTC
Last online:2022-01-22 09:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: reecdeep
Abuse complaint sent (?): Yes (2021-12-24 08:42:53 UTC to admin{at}internetnamesforbusiness[dot]com)
Takedown time:2 years, 1 months, 5 days, 20 hours, 35 minutes Bad (down since 2022-12-14 08:51:49 UTC)
Tags:dll Dridex link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-12-06n/adll 654bc02b00df29bab785c2c58d7ead2a80aa7b259ceb11154233730b5cf174e1n/a 
2022-12-02n/adll 1e5daa419718fb9d8e14ebd8cf74c631b31d7623e5c29fb502d28560d9e3be8cn/a 
2022-11-28n/adll b1a0acd21d83cac41c42c2c675f58de78bdf333765a1a6b2d0f26202267c8f9an/a 
2022-11-21n/adll d53f23fdb519beb14f246801e66b78961a0be7b72f47ae4314e97604256e013bn/a 
2021-11-10n/adll 3d8e586af606e40a4672a6ad496ad28482c10d30de03631b3929fe6bc0875e50n/a 
2021-07-24n/adll bfd64d4443fd4f3213f7462ec16ad64264b8ede06011001ef3cc27e54e188523n/a Dridex
2021-03-11n/adll 5cde3666ea5d22457b73d994e76f2f9fc6cb49e15c9fd494774a7adce46890b5n/a Dridex
2021-03-10n/adll 2dcbf64022b329ead10728294d0132eb24a2f350374879df2900b6eecc1e62c2n/a Dridex
2021-03-02n/adll e1ddf385674a8354027ccec490ff8551916d404f59bba4c847625ad7640e1371n/a Dridex
2021-01-11n/adll 56ea35b53ea0e751de3f3b559e6a39f7149d3ecb3165cb6e9e3229fa57476a87n/a Dridex
2020-11-19n/adll f5951b345050e10fa0d3b70b42e6b56d5a720a7a67c381345e33c145e2ba2452Virustotal results 22.54%Dridex
2020-11-19n/adll 4dd698afd7543c5417458e1c3de1311fa36d0e061afe1399fdd3b22f08e76afan/a Dridex
2020-11-19n/adll 1dfe14e510aab5090641306725e2eb96d1fb3347654ef4c342b48ba4f9770636n/a Dridex
2020-11-19n/adll 1a53345f98b56c930e91cdf35a07ddaa8db19f8055d0ea6cec9f8477a81a6aedn/a Dridex
2020-11-19n/adll 32e5106716190cbe7c6417a4247f61b01143f8357188afccbdc1ed94c886ad1en/a Dridex
2020-11-18n/adll 581a2419d8e96d3367e5ead5f7de2c743133db0e69e6f3721d4a99c9ebafda36n/a Dridex
2020-11-18n/adll a6dd0ab287f5ec1861244476be86389947ebc9539c7730c09ee9b679c48ba798Virustotal results 9.86%Dridex
2020-11-18n/adll 3a051adde831c2fd025774dfa237db5b442bc654eceacf99b3b6aec7092a29daVirustotal results 28.99%Dridex
2020-11-18n/adll 77419f5d237715b7664ae53e806dea7465cdb6159f76a462fc31fcd731db5f2bVirustotal results 28.57%Dridex
2020-11-18n/adll 2e38ae5201156a5b159173b3e8b6d274d16cc5da67040cf71580e9b3308d1be5Virustotal results 28.57% Dridex
2020-11-18n/adll 92513d7788e6c70e269721a5454411ca78b13513ab597e3e16b9f9fad2bf0807Virustotal results 27.54%Dridex