URLhaus Database

You are currently viewing the URLhaus database entry for http://cleanlaptop.ru/chashepro3.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1008274
URL: http://cleanlaptop.ru/chashepro3.exe
URL Status:Offline
Host: cleanlaptop.ru
Date added:2021-02-13 12:26:21 UTC
Last online:2021-02-16 13:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: de_aviation
Abuse complaint sent (?): Yes (2021-02-13 12:28:05 UTC to abuse{at}reg[dot]ru)
Takedown time:3 days, 1 hours, 26 minutes Bad (down since 2021-02-16 13:54:42 UTC)
Tags:exe RedLineStealer link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-02-15n/aexe 37df8e4b8062cb29e177aaf9fb6568991549b0b08e0fb7490f59f4f61abca74cn/a
2021-02-15n/aexe 83d4fdc5b00de721047eb913bcac685a9890c329cde35b5c6947b77bf542752bn/a
2021-02-14n/aexe 6630b9829efe7c95acb06df3abeb69453b07c05c30c9dd2d1d08e5430327d830n/a
2021-02-14n/aexe bc6bc13cd553b284aba971cd1f0b39c1522e3065afca9c77eaae5c2f86d6bd73n/a 
2021-02-14n/aexe 3144cb2d6578438d295e1aad2370450ffff2abc4c042b8c56eb56473f329df68n/a
2021-02-14n/aexe bbb04927af754dd285a5da688f2eef5d7ec51f57369812798bf70730a32f771bn/a
2021-02-13n/aexe c52fac51a37934832e79f7d272f1b37f1a63f3e11fbe48ca741927a103d3f70cn/a 
2021-02-13n/aexe 7f2da313a75add2d2762a6f8ef8ca2828fb96661ab726b8aaad79ae5f89577c9n/aRedLineStealer