URLhaus Database

You are currently viewing the URLhaus database entry for http://prayonline.it/cm5xssc78.txt which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:829494
URL: http://prayonline.it/cm5xssc78.txt
URL Status:Offline
Host: prayonline.it
Date added:2020-11-18 12:14:26 UTC
Last online:2020-12-22 04:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: reecdeep
Abuse complaint sent (?): Yes (2020-11-18 12:16:10 UTC to abuse{at}wind[dot]it)
Takedown time:1 month, 3 days, 16 hours, 5 minutes Bad (down since 2020-12-22 04:22:08 UTC)
Tags:dll Dridex link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-11-19n/adll 6be8b6682317689d5f502805f34c96fa9487400df1c69bdc377837c3b90ee37cn/a Dridex
2020-11-19n/adll 69b8edabcaa280d39bfab15c7d12e8aef75d94090ece29a9b074bdef2906fa25n/a Dridex
2020-11-19n/adll 083a0a9224164d091360e1888a7cd2baa0f496b28be420ffdcfa293530c445cdVirustotal results 32.86% Dridex
2020-11-18n/adll 581a2419d8e96d3367e5ead5f7de2c743133db0e69e6f3721d4a99c9ebafda36n/a Dridex
2020-11-18n/adll a6dd0ab287f5ec1861244476be86389947ebc9539c7730c09ee9b679c48ba798Virustotal results 9.86%Dridex
2020-11-18n/adll 0dfab637891eaf6ff9134a21c5200d677f6e915a25b43e8a4acc5fe90f793033Virustotal results 28.17%Dridex
2020-11-18n/adll 77419f5d237715b7664ae53e806dea7465cdb6159f76a462fc31fcd731db5f2bn/aDridex
2020-11-18n/adll f051d9f61ef1f401ae946ad290128df9772cd030fce4fe289037b650906c9dedVirustotal results 28.17%Dridex
2020-11-18n/adll f4e65ecea469214769a863058823613437eb066a0baf40b5f9342958fce1e7a7Virustotal results 27.54%Dridex