URLhaus Database

You are currently viewing the URLhaus database entry for https://dev.unitedwebgroup.com/jimmychesterfield.com/wp-includes/SimplePie/Decode/HTML/fsbbr2FFDiSdxw.php which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:972591
URL: https://dev.unitedwebgroup.com/jimmychesterfield.com/wp-includes/SimplePie/Decode/HTML/fsbbr2FFDiSdxw.php
URL Status:Offline
Host: dev.unitedwebgroup.com
Date added:2021-01-20 19:37:08 UTC
Last online:2021-01-21 11:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2021-01-20 19:38:23 UTC to abuse{at}totalserversolutions[dot]com)
Takedown time:15 hours, 39 minutes Good (down since 2021-01-21 11:17:35 UTC)
Tags:Dridex link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-01-21n/adll fe599fab8a2ef53ee512abed9032a07e5328772485caf4389602e0f4c0108b2an/a Dridex
2021-01-21n/adll 75696d0d13749306f8dbb5818e181ea2093e166189b480b3c58c4ceb8770d064n/aDridex
2021-01-21n/adll fbcbe22abf41cbd2f5ca04b24160c3ba163a5fd6a4413d12b75925d9edb500aan/a Dridex
2021-01-21n/adll 472b7e19f822ffcfd7a1ee9c84cb103f71f33508e8586843ef8208996771444fn/a Dridex
2021-01-20n/adll 25502cd5de3e68a22748badaf7a5be6b7030e244569b5289f45754ee7f7ad37en/a Dridex
2021-01-20n/adll a251c34819ab2a8eb4f82e21732b6fa614b18ed828789e583cac23031b32ecb4n/a Dridex
2021-01-20n/adll 341180add29a55869b88e6e50c65cdf37dfedf8394a0b6ad4b0db9c0a9670d72n/a Dridex
2021-01-20n/adll 295d9e5dacc9d4343c70bcac414457bf48d497846d966defa780397e737baffdn/a Dridex
2021-01-20n/adll 2480541cc798350b0a92d815c73210aa4edf88d089b9813ab406cd2fc189bf99n/a Dridex
2021-01-20n/adll 63f2caa6a5fb6b80dcc795301c5d2be54329922693ae97b80c848a5364d807bcn/a Dridex
2021-01-20n/adll 8aef7f271ea8ad3ae33328823e12bf5e000ed443e90fde4b97efd1416a7d7065n/a Dridex
2021-01-20n/adll 33fd1b558ef3069f7919851b82f92ebba2f09642f674bb343a19b3eabc8b2a40n/a Dridex