URLhaus Database

You are currently viewing the URLhaus database entry for http://ajaxtracker.com/file.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1178232
URL: http://ajaxtracker.com/file.exe
URL Status:Offline
Host: ajaxtracker.com
Date added:2021-04-28 06:45:11 UTC
Last online:2021-05-28 11:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2021-04-28 06:46:03 UTC to google-cloud-compliance{at}google[dot]com)
Takedown time:1 month, 0 days, 4 hours, 41 minutes Bad (down since 2021-05-28 11:27:30 UTC)
Tags:exe RaccoonStealer link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-04-29n/aexe 82e9e16b5b07418082d99003446ec83e0157e8c4c507ef1d0fb79dc08efee10an/aRaccoonStealer
2021-04-29n/aexe bcc686566d85f4c07451658ac4d224f77ebb3b469de7cfff7c24b66c0fe73ec8n/a RaccoonStealer
2021-04-29n/aexe 7be0644fb00735b1f7251d6cca6ae5c00562ae0c880460d6eb905947cca1981cn/aRaccoonStealer
2021-04-28n/aexe 5a2f2c14ae6ff0c58e2c7b04b53baa83801b069479af2e5605a012a110883742Virustotal results 44.93% RaccoonStealer