URLhaus Database

You are currently viewing the URLhaus database entry for http://purefoe.top/bestof/gfers.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1056715
URL: http://purefoe.top/bestof/gfers.exe
URL Status:Offline
Host: purefoe.top
Date added:2021-03-09 12:11:14 UTC
Last online:2021-04-02 19:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2021-03-09 12:12:20 UTC to google-cloud-compliance{at}google[dot]com)
Takedown time:24 days, 7 hours, 36 minutes Bad (down since 2021-04-02 19:49:13 UTC)
Tags:exe RedLineStealer link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-04-02n/aexe 7b31e9a3eb1d1b86583a4ce6df3e7acc24fac0c6ad9bf484b0158a508476c7b8Virustotal results 43.48%RedLineStealer
2021-03-31n/aexe 127094ebdef2ba4286949a781d2d756ddc8ae76b42e14b0ba49da4ba6d191444n/aRedLineStealer
2021-03-30n/aexe dac8697e24dbe30b33cc0de5ac7584319b134ad59d11aeffdecb861a6868a8a3n/aRedLineStealer
2021-03-30n/aexe 16ef7729e2bc71fd3b55f6772025a82a4fd6f049f5faa81da8466a8ba5bbe24eVirustotal results 41.18% RedLineStealer
2021-03-27n/aexe dc588705c74d26785a3bce4a0f58e5f722dc9851b7591f62fbbe406aab2ca955n/aRedLineStealer
2021-03-26n/aexe dc05f8eef2d694a880ced4170a493a9d0aeacc122f671bedd44fb8bba4b320f5n/aRedLineStealer
2021-03-26n/aexe 4879b5e9fe8c26e10594ed4c9a15410d4f2a1d85ca0125d1af7ba0287cd3cbcbn/a RedLineStealer
2021-03-24n/aexe c7d64e661c96d03e4b08bf7edb1e9667743133eb72207f19ebfe3f4cb6c7a4b7Virustotal results 35.21%RedLineStealer
2021-03-23n/aexe 82c688930586c5afd7db267a158b8cac7d7efab22c14ec217cdb006a19c04b35Virustotal results 37.14%RedLineStealer
2021-03-20n/aexe 35aac4dc4ab85c75852a93a573b654f275e6c1dcaae69cc3176c05271a097750n/aRedLineStealer
2021-03-19n/aexe 807e65fc407c3d9f024b10e8cfb20c2e10ad067aa217fe97ec1b075c24dbc936Virustotal results 41.18%RedLineStealer
2021-03-18n/aexe 7eefafe85ed6277d9c6abd81fa1ef7969c2ce6767c609baafc79206f78d13685n/aRedLineStealer
2021-03-17n/aexe fd38d6e7ee598b9ead8640b414b0251e85b8cdd7c59ee456ea5ef973b476b3ecn/aRedLineStealer
2021-03-17n/aexe 254f8a160343897dc3e748af2f4c2164455afe3daaa75654c0a7e13483a43f0cn/aRedLineStealer
2021-03-14n/aexe 861a237188f0e380646af2228e4330d1fbcabae18da1e4593f562ac2f617e88fn/a RedLineStealer
2021-03-14n/aexe ca3f25030ff8f3c92d29caa22bae001d1d795a0ea2289cae3074679d86341b2fn/aRedLineStealer
2021-03-14n/aexe 369e3c4b6730652146d275cd3db45eaa369c25fcaad3b11cdd3844878193768en/aRedLineStealer
2021-03-14n/aexe bd824ea4c4eda6ab14aa271fa88dae5e1102d4cbaae86d46e47b80be0247d11an/aRedLineStealer
2021-03-12n/aexe 2b65f398247039abc85b2742607f828b0516be3a63be7fae80608c30f649f0cen/aRedLineStealer
2021-03-12n/aexe 0e498e6cc7dcffbfdb67a8c7f070f6e7a7be614729b2e350f9c7973d62e09ae7n/aRedLineStealer
2021-03-11n/aexe 6f9ca1a18eb9a5c5938a9a74a1072a44fbd16685172468e61c7a564a8175c9a7n/aRedLineStealer
2021-03-10n/aexe 20d2a831d8c0d91df5a26a5c3251b82c31254185ec12bd4ff8fa305c2103235bn/aRedLineStealer
2021-03-10n/aexe 0a5a39d2e42746ac3c06bae3c5a95a9ef34062a4c629854737ff55286581f3d7n/a RedLineStealer
2021-03-09n/aexe 5d63d1c4eb964d27d53d83b399b38ffad6609b204b8741e5626d4427cc7421afn/aRedLineStealer
2021-03-09n/aexe 7ad0f14d763cfe8710a7bce6ccd3bb6589d059142d2662800f2b4f81e3cf2737Virustotal results 45.71%RedLineStealer