URLhaus Database

You are currently viewing the URLhaus database entry for https://horsehospital.com/assebles/hamnab.php which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:996661
URL: https://horsehospital.com/assebles/hamnab.php
URL Status:Offline
Host: horsehospital.com
Date added:2021-02-09 06:13:06 UTC
Last online:2021-02-09 19:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Myrtus0x0
Abuse complaint sent (?): Yes (2021-02-09 06:14:02 UTC to eig-abuse{at}endurance[dot]com)
Takedown time:12 hours, 52 minutes Good (down since 2021-02-09 19:06:44 UTC)
Tags:bazaloader link BazarLoader

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-02-0915sdws3dsf.exeexe 5cb9b33ca105d1f74a81fc104a8f6054c8db69f5c20091de74f877a75deceea6n/aBazaLoader
2021-02-0918ssa1dsf.exeexe a73d2584844cb81ead9fd1bc3addb41a564f554d1a343463f9c3207b287592c9n/a Ransomware.Conti
2021-02-098sfsa1dsf.exeexe 74e416eec4384ece4e0b77dfea3ac848590ed0b373273e8ac3fe861cd300f8ddn/a BazaLoader
2021-02-091ssas1dsf.exeexe ecd064bb691172850674938b86f77128dd30f3c79eeded78c4fbcd47c5493ec4n/a Ransomware.Conti
2021-02-094ssas1dsf.exeexe 1907a0185129f893d58a5518a3db48700e40f8046122111e3493d654ae393ffdn/a Ransomware.Conti
2021-02-093sws3dsf.exeexe 3071e5216c2026c9273887c819dfdbf7ac1b35c6ba200af734f321c6d0cf7177n/a BazaLoader
2021-02-0914ssa1dsf.exeexe d73bc1bf2c2de1ae18546143bcff2a8cc7a3c2a228849db96525a0b814cb0184n/a Ransomware.Conti
2021-02-093ssas1dsf.exeexe 5a4fe3ff86810233c99d41e5c527be96ff7b926a8757981b5c368501e9f73462n/a BazaLoader
2021-02-0911dfs1dfs.exeexe 6424cf54b335b171e5fcc4bee2d824aad57f07b9fa12e86226afd07a7e84feaen/a Ransomware.Conti