URLhaus Database

You are currently viewing the URLhaus database entry for http://brownfilleds.duckdns.org/zeddd.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1145250
URL: http://brownfilleds.duckdns.org/zeddd.exe
URL Status:Offline
Host: brownfilleds.duckdns.org
Date added:2021-04-20 17:09:06 UTC
Last online:2021-05-29 10:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Blocked
AdGuard :Blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Blocked
DNS4EU :Not blocked
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2021-04-20 17:10:03 UTC to abuse{at}amazonaws[dot]com)
Takedown time:1 month, 8 days, 17 hours, 0 minutes Bad (down since 2021-05-29 10:10:14 UTC)
Tags:exe rat RemcosRAT link Xpertrat

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-05-05n/aexe 02650bdf290724edd38abc7e303ff74ca1fc7fba26f3f0dcead22cdce5b9b3fan/aRemcosRAT
2021-04-24n/aexe 4fc3343a611a3a6d5ae4347412d0d462733d2eb3f5236b5b2451a1d0d4076bc1n/a RemcosRAT
2021-04-24n/aexe af0249150bee4fec74c124f89019cd260c9aacd7b7a7715192b5097f1948eb82n/aRemcosRAT
2021-04-23n/aexe f5bbb2d019dbf6d8c23bf6e8346e2079c08c8c1e7329586bad691c07519f382bn/a RemcosRAT
2021-04-23n/aexe 974b3b9247ead5b640b495a96efba657ebee885fd25374e294ce55d7472ee402n/aRemcosRAT
2021-04-22n/aexe 93e3956f268d38726acd19958a181d02feaea3e166b7e7d24d7a0c908141a4b2n/aRemcosRAT
2021-04-22n/aexe 980b7e35e43b7589eb7dec6571e43fb6d3589c17559ac14d80115f6b575fc60an/aRemcosRAT
2021-04-21n/aexe ad7352ddb27f165faa309916430d17aead69a6359f74d163c0c488bb551b3fb0n/aXpertRAT
2021-04-21n/aexe 59c441437848b229ccf0ea69598b83e3be1664779a9c7a71142e69fc73a005fcn/aXpertRAT
2021-04-21n/aexe 1bc32420315bf439659c6ca7426e068cb1acab9d5320006a40aeff025318893fn/aXpertRAT
2021-04-20n/aexe 9190802aebd14316ced550d2102f2650a2b4e3d08ec32e4c95ab722db7206e1fVirustotal results 34.29%RemcosRAT