URLhaus Database

You are currently viewing the URLhaus database entry for http://acropol.com.eg/pdf/contact.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:123987
URL: http://acropol.com.eg/pdf/contact.exe
URL Status:Offline
Host: acropol.com.eg
Date added:2019-02-14 00:15:13 UTC
Threat:Malware download Malware download
Google Safe Browsing:Clean
Spamhaus DBL :Not listed
SURBL :Not listed
Quad9 :Blocked
AdGuard :Blocked link
Reporter:@shotgunner101
Abuse complaint sent (?): Yes (2019-02-14 00:16:03 UTC to abuse{at}tedata[dot]net)
Takedown time:2 months, 16 days, 5 hours, 22 minutes Bad (down since 2019-05-01 05:38:59 UTC)
Tags:exe payload stage2

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTSignature
2019-03-01n/aexe 8f1c6afe8035f8632757f78d61f9ab52a7a82b515127715931d80d32261311a3n/a
2019-02-19n/aexe 40be411f4176b6affc015739415392e3604541d4c53851bc3befb9206c30781bn/a
2019-02-19n/aexe e9edcbe8792e2cdb7184bbacdb5ded1f9b951327c03dec04f624d4ac16c35a51n/a
2019-02-18n/aexe 6685e970e54923a24cd60f1cb3283b41dfb0d1b0ed9af491c04b4d413c7fcf36n/a
2019-02-14n/aexe 70d7496e53afe57cec1b49000e41ccc352eadbc9bbbe3f3b5335df5338ea6596n/a