URLhaus Database

You are currently viewing the URLhaus database entry for http://modexcommunications.eu/angel/angel.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:117992
URL: http://modexcommunications.eu/angel/angel.exe
URL Status:Offline
Host: modexcommunications.eu
Date added:2019-02-06 00:13:09 UTC
Last online:2019-03-02 22:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Status unknown
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Not blocked
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2019-02-06 00:14:01 UTC to abuse{at}colocrossing[dot]com)
Takedown time:24 days, 21 hours, 51 minutes Bad (down since 2019-03-02 22:05:58 UTC)
Tags:AZORult link exe

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-02-14n/aexe 70b6a672dff0f57a60a06b874f69224d48fd3481ffac9778c2e2baee750c2c22n/a AZORult
2019-02-13n/aexe 81e1bd57ed1917d301b8f9a9b37a0ebe84b61b6b8979c1a91e8ecfe4fb12c017n/a AZORult
2019-02-12n/aexe 299173249c3c8819aaa632bc0436d068577328956818be9641091d97d1ae9cc5n/a AZORult
2019-02-12n/aexe 71a557e62e85367e3de2096e693f67c98ae05638d462fad96476f6c5ab933eden/a AZORult
2019-02-11n/aexe 19302c7f869fa50dba00d0eb74ef61cc2280cbee7293979639e217487a2733f9n/a AZORult
2019-02-07n/aexe c03a388ea39b55c24ff667e89ef272fcab08a54b6a5999aa2a4a3998bd2b0470n/a AZORult
2019-02-07n/aexe 2a6e77992001f2162bfdce96c3c266bd8541008c4a9c0660184a26a215571d6cn/a AZORult
2019-02-06n/aexe c06ea163195af1a23f97c696ca980b55c8a3539dd7f17956ae29c472eef080daVirustotal results 25.00% AZORult