URLhaus Database

You are currently viewing the URLhaus database entry for https://mail.rigid-group.com/jp/phpformbuilder/plugins/bootstrap-select/dist/3IuERBhaVZsMf.php which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:980827
URL: https://mail.rigid-group.com/jp/phpformbuilder/plugins/bootstrap-select/dist/3IuERBhaVZsMf.php
URL Status:Offline
Host: mail.rigid-group.com
Date added:2021-01-27 20:24:13 UTC
Last online:2021-01-28 00:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2021-01-27 20:26:40 UTC to dcundiff{at}a2hosting[dot]com)
Takedown time:4 hours, 10 minutes Good (down since 2021-01-28 00:37:08 UTC)
Tags:Dridex link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-01-28n/adll e16180f593556be1988db6fa8f6dae3e6668deceb67256894152123740088327n/a Dridex
2021-01-27n/adll b22e6554ae819c5caff73528cf8e94dbae6881a9eb73201fd2cb842740caba6fn/a Dridex
2021-01-27n/adll 489cd518e8dddf02234e2e89bbc32f93cf6264cd6b7fa538c5485eeca5c4e97bn/a Dridex
2021-01-27n/adll 01afc140385f2fbcbed59bf534c71da2b2e45b21c87e7f7076918d9949efc4d1n/a Dridex
2021-01-27n/adll 7be227715b752c196963b191fed3d0c091b1a3bda62f076517299a51e8f83803n/a Dridex
2021-01-27n/adll 83dc80c76b4c64abcf0862b8638271a17f6fb24a5e5c70fb3164711e6d3ab178n/a Dridex
2021-01-27n/adll 7ceffa52a4d201ed472f3a2aead2efb283fc24ac5fab05246626cde7f7e07067n/a Dridex
2021-01-27n/adll 490c387e6fef9481711483e80164af60122dc07cce185f66f4c2800006f2c93dn/a Dridex
2021-01-27n/adll 02340826cb84fe3c40f70f8ecc6280a6bca9b23a6debde3bc2e616d7cdeb2fefn/a Dridex
2021-01-27n/adll 71a9148ffc10b2200d21e6f648ea2c51e59d885ae44c126d7a4b1a131404ad28n/a Dridex
2021-01-27n/adll a003bf77fb05d2e7704934911bac9e781f1cc1e9d6a06b9258c4e96ce6557b44n/a Dridex
2021-01-27n/adll 9d1d425abf972664469553a89f6852fa088af98a0a65aa6cf1933e2eeb3be3c9n/a Dridex