URLhaus Database

You are currently viewing the URLhaus database entry for http://celulasmadreclinicas.com/bsj53ps.pdf which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:829503
URL: http://celulasmadreclinicas.com/bsj53ps.pdf
URL Status:Offline
Host: celulasmadreclinicas.com
Date added:2020-11-18 12:14:31 UTC
Last online:2020-11-19 13:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: reecdeep
Abuse complaint sent (?): Yes (2020-11-18 12:16:21 UTC to abuse{at}register[dot]it)
Takedown time:1 day, 1 hours, 35 minutes Poor (down since 2020-11-19 13:52:00 UTC)
Tags:dll Dridex link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-11-19n/adll 1a53345f98b56c930e91cdf35a07ddaa8db19f8055d0ea6cec9f8477a81a6aedn/a Dridex
2020-11-19n/adll 32e5106716190cbe7c6417a4247f61b01143f8357188afccbdc1ed94c886ad1en/a Dridex
2020-11-18n/adll 581a2419d8e96d3367e5ead5f7de2c743133db0e69e6f3721d4a99c9ebafda36n/a Dridex
2020-11-18n/adll a6dd0ab287f5ec1861244476be86389947ebc9539c7730c09ee9b679c48ba798n/aDridex
2020-11-18n/adll 3a051adde831c2fd025774dfa237db5b442bc654eceacf99b3b6aec7092a29daVirustotal results 28.99%Dridex
2020-11-18n/adll 77419f5d237715b7664ae53e806dea7465cdb6159f76a462fc31fcd731db5f2bVirustotal results 28.57%Dridex
2020-11-18n/adll 2e38ae5201156a5b159173b3e8b6d274d16cc5da67040cf71580e9b3308d1be5n/a Dridex
2020-11-18n/adll 92513d7788e6c70e269721a5454411ca78b13513ab597e3e16b9f9fad2bf0807Virustotal results 27.54%Dridex