URLhaus Database

You are currently viewing the URLhaus database entry for http://readwrite26.nl/read.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1057558
URL: http://readwrite26.nl/read.exe
URL Status:Offline
Host: readwrite26.nl
Date added:2021-03-09 18:58:09 UTC
Last online:2021-05-31 15:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Blocked
Reporter:Anonymous
Abuse complaint sent (?): Yes (2021-03-09 19:00:26 UTC to abuse{at}ovh[dot]net)
Takedown time:2 months, 22 days, 20 hours, 54 minutes Bad (down since 2021-05-31 15:55:14 UTC)
Tags:NetWire link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-04-25n/aexe 4f4c33ff9f025a53a5c4f89fb7630b0b9f0af81ed51884c26033cb4d3520540en/a NetWire
2021-04-25n/aexe c0793e854c30020d29cb0def923afbfabf2bd9be384b21b02489e42ccb534528n/a NetWire
2021-04-25n/aexe 09fca7615c3a077da0f8302e4675a71cb889ac1ab5c201a05593546a2a425111n/aNetWire
2021-04-22n/aexe 8ab6edf67b90c3a7dee2674be1a28bfdab79a6bad05cec53b344aec3ac69113bn/aNetWire
2021-04-19n/aexe 5cf88fd0b092517f27703199fab5cea2a4adc40a01f3c20c2f914f3122e42e1dn/aNetWire
2021-04-14n/aexe 019d25696a8fac4686b760ea3390a9b640b626c2c355cad43d6349b9b91410a8n/a NetWire
2021-04-12n/aexe c9b8ec8ccbe3b0ab195d0c472e3f8d6b6a00dc66eb8ab0bff71eb44ad4abd39dn/aNetWire
2021-04-07n/aexe d218d3e24c6485d480b2be1dce00a764aa403a5f2caf58708020f9d231d2c8d2n/a NetWire
2021-04-07n/aexe 7c0d31bca17487efc3f743bb9cb5cf56b5f2fae638cf3681fdc692a5809c94ben/aNetWire
2021-03-09n/aexe 05de3c90179fa8836171ce2ab6c38caaf8c6eb20b1bc47100573c7207cedf7efVirustotal results 42.86% NetWire