URLhaus Database

You are currently viewing the URLhaus database entry for https://www.flexiblecow.com/wp-content/themes/twentynineteen/template-parts/content/idwxU9PGxHSqvg which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:924787
URL: https://www.flexiblecow.com/wp-content/themes/twentynineteen/template-parts/content/idwxU9PGxHSqvg
URL Status:Offline
Host: www.flexiblecow.com
Date added:2020-12-17 06:30:15 UTC
Last online:2020-12-21 16:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: p5yb34m
Abuse complaint sent (?): Yes (2020-12-17 06:32:03 UTC to abuse{at}ee[dot]net)
Takedown time:4 days, 9 hours, 45 minutes Bad (down since 2020-12-21 16:17:28 UTC)
Tags:Dridex link opendir

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-12-21n/adll 6b0379bab410936d4391762ec9551c08608c2960e85b6eae227b18ebd8cdfedcn/a Dridex
2020-12-19n/adll a7f85c8c39d73cc6446e17f2d1b144e2a1ee8eaa482009ec3f7956eb7b3d858cn/a Dridex
2020-12-19n/adll bc215d7c26f72f3ab84787a52f79b327636a8fbdcae288611910825b0a64f8c5n/a Dridex
2020-12-19n/adll c256407f81de4dc71bad7af2bdca5b1494cb6b4b3f172a060abd5cd4dbe11fd5n/a Dridex
2020-12-18n/adll 7be4820f6c02b54133f5dcebbf578da89a4d371ecfff05cf3135ca59b563f3b4n/a Dridex
2020-12-18n/adll 702c04fdb01c80da6a50133839e22fd50253464847931f081a0efd5a020d6671n/a Dridex
2020-12-18n/adll 547e0ee2d856fbf51ed42c9017ba169868c427efbce54ccb7636828a56d1f0fan/a Dridex
2020-12-18n/adll 4bc3ab02a617ede29477f8bea74eb1333938fbe8f44833cc1c91fce80daa57f6n/a Dridex
2020-12-17n/adll 08f82af683233006002a42930e922f9b26cc0c7c13b0fdc82dcd51776abcece9n/a Dridex
2020-12-17n/adll d5d684ea7f8dbdd527a010765ccbf03e12cb2280bf8ee1220711d68b658e385fn/a Dridex
2020-12-17n/adll 0ee64ec6742755cea9430235fe80e3a7cc3d31d764a98ee3c828e7128aad3243n/a Dridex
2020-12-17n/adll fda97f71de6c4a9ff6c4490afa99a93b89d5deb5795007727af89bd93f76ceaeVirustotal results 40.00% Dridex
2020-12-17n/adll 704d180b2471d6d5fa7db3cec4fe2ecce43ff06e822bd0512edb859714449091n/a Dridex
2020-12-17n/adll 3bd2ebbd6f7127b00a32e272a41481b07b89e45bee75d84a867e8bb90499054bn/a Dridex