URLhaus Database

You are currently viewing the URLhaus database entry for http://originador.com/iuwgjwxr.rar which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:829497
URL: http://originador.com/iuwgjwxr.rar
URL Status:Offline
Host: originador.com
Date added:2020-11-18 12:14:27 UTC
Last online:2021-02-11 08:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: reecdeep
Abuse complaint sent (?): Yes (2020-11-18 12:16:29 UTC to abuse{at}hostmar[dot]com,abuse{at}dattatec[dot]com,pablo[dot]pepe{at}adinet[dot]com[dot]uy)
Takedown time:2 months, 24 days, 20 hours, 42 minutes Bad (down since 2021-02-11 08:59:05 UTC)
Tags:dll Dridex link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-11-19n/adll 6be8b6682317689d5f502805f34c96fa9487400df1c69bdc377837c3b90ee37cn/a Dridex
2020-11-19n/adll 69b8edabcaa280d39bfab15c7d12e8aef75d94090ece29a9b074bdef2906fa25n/a Dridex
2020-11-19n/adll 083a0a9224164d091360e1888a7cd2baa0f496b28be420ffdcfa293530c445cdVirustotal results 32.86% Dridex
2020-11-18n/adll 83c390d82e19beec14d007b7350f4296c23ce9b3d131a3670ebb7424ad917410n/aDridex
2020-11-18n/adll a6dd0ab287f5ec1861244476be86389947ebc9539c7730c09ee9b679c48ba798n/aDridex
2020-11-18n/adll 1fbb0c8ee6525007d9a4daef511a4d24f4b49cac18746a7a0cd3c20689c8c61cVirustotal results 28.57% 
2020-11-18n/adll 77419f5d237715b7664ae53e806dea7465cdb6159f76a462fc31fcd731db5f2bn/aDridex
2020-11-18n/adll c209236632e40ebb907a7d288bf879bf81542cbdc4b2046ae45280c305fdc980n/aDridex
2020-11-18n/adll 1fd19222df72ea875613e81a37e94c30a25cb2d69d857159ee1d7fdfc8848348Virustotal results 25.00%Dridex