URLhaus Database

You are currently viewing the URLhaus database entry for http://down.54nb.com/%D3%B2%BC%FE%D0%C5%CF%A2%B2%E9%BF%B4%C6%F7.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:110142
URL: http://down.54nb.com/%D3%B2%BC%FE%D0%C5%CF%A2%B2%E9%BF%B4%C6%F7.exe
URL Status:flame Online (spreading malware for 7 years, 5 months, 9 days, 20 hours, 56 minutes)
Host: down.54nb.com
Date added:2019-01-25 09:25:14 UTC
Threat:Malware download Malware download
URLhaus blocklist:Blocked
Spamhaus DBL :Abused domain (malware)
SURBL :Not blocked
Quad9 :Blocked
AdGuard :Blocked
Cloudflare :Blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Blocked
DNS4EU :Not blocked
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2025-04-28 23:39:06 UTC to anti-spam{at}list[dot]alibaba-inc[dot]com,abuse{at}12321[dot]cn,abuse{at}alibaba-inc[dot]com)
Tags:exe

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-04-28%D3%B2%BC%FE%D0%C5%CF%A2%B2%E9%BF%B4%C6%F7.exeexe b8786ebe38e8910776363b804d29e6e57525ab262451c490351f851e735938a9Virustotal results 8.70% 
2019-06-09n/aexe 7f77e6d6f40028fe2904b9666803ce3facb518095568640af5347d01daa7cea1n/a 
2019-04-08n/aexe 5e74b1a2669ce394647327f585e55a1b5d79c17990f6661eb0582372c2b5f76bn/a 
2019-04-06n/aexe ceb7822148aac9955d6cb09b76215a2aa69d3d3db7e05d5e935ccf0c92b4f44fn/a 
2019-04-03n/aexe e709bdc8e64646f2350818cda955ae893b743772a95d4028b3068ed90242139an/a 
2019-03-27n/aexe 80499ca3bb0136a09ea9ac4a65bf21606e44ca03ead76f5b71e9996abe5d94d7n/a 
2019-03-21n/aexe 7a948a409a8db1ecb5d8c3b19fbbbee3c500890bcf9addf4dbdb423f93e1e345n/a 
2019-03-15n/aexe 507e293b34ad0799399f9eb3d23e99023a9fc38fcfb77427e224072ceaa9c584n/a 
2019-01-30n/aexe 0516736980d15f126a8b0ddd77e06afa56a4e01a1b7d13c95d656f732444f0fen/a 
2019-01-28n/aexe 04e1200bac412448ccf0cf4fc0ae0a6b9beda285191bfed8feb973180301c695n/a 
2019-01-25n/aexe d70b09d90cc885da14f12da4ca5d7ca8af361e5b54efaaa97a2cfb915daf8126Virustotal results 50.72%