URLhaus Database

You are currently viewing the URLhaus database entry for http://twittond.info/app/app.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1279245
URL: http://twittond.info/app/app.exe
URL Status:Offline
Host: twittond.info
Date added:2021-05-24 17:58:04 UTC
Last online:2021-05-25 04:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2021-05-24 17:59:03 UTC to CloudFlare Anti-Abuse API)
Takedown time:10 hours, 8 minutes Good (down since 2021-05-25 04:07:11 UTC)
Tags:exe glupteba link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-05-25app.exeexe b41f401bf6daa04d28c5ee89492a5c2c3c36d0bdab6b1babf14af6f394a07803n/aGlupteba
2021-05-25app.exeexe 02e3af4e6de5b587d1bb7ffe0b9346f48034dfacca31fda114a5632fd47090f1n/aGlupteba
2021-05-25app.exeexe 1345cecc08aebc36ecc2b2b81bfb304426f66fe1a09be6ac1d65bd718b13f0daVirustotal results 37.14% Glupteba
2021-05-24app.exeexe 169c39767804a0a73ccea5efa00427c3af74448462246ccab88997edb4158e15n/a Glupteba
2021-05-24app.exeexe 198c007bba9ab6f106cb6d55568f4af5f1f1aa3f7c36b2f9c2196b2120fb1e09Virustotal results 37.68%Glupteba
2021-05-24app.exeexe 695965e2f4f12b30a24fa30880d4506b24dd8f2745239552d5bf963a27f3cd55Virustotal results 37.14% Glupteba