URLhaus Database

You are currently viewing the URLhaus database entry for http://qwedsatgyhujikolpasdfghjklmnbvcxzqwertyu.ydns.eu/kung444/bin.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1354237
URL: http://qwedsatgyhujikolpasdfghjklmnbvcxzqwertyu.ydns.eu/kung444/bin.exe
URL Status:Offline
Host: qwedsatgyhujikolpasdfghjklmnbvcxzqwertyu.ydns.eu
Date added:2021-06-11 15:38:07 UTC
Last online:2021-06-25 09:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Blocked
AdGuard :Blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Blocked
DNS4EU :Not blocked
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2021-06-11 15:39:04 UTC to abuse{at}vnn[dot]vn,abuse{at}vdc[dot]com[dot]vn)
Takedown time:13 days, 17 hours, 32 minutes Bad (down since 2021-06-25 09:11:23 UTC)
Tags:exe Loki link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-06-24n/aexe 95b28e800ba3db113b766df762c9cbfe45200f2a4078aac8ec9f56eceedf490en/aLoki
2021-06-24n/aexe e4e0857b271733e43190c89d0f20bb647137f68fa7b2b5cc387b0c367ec1427cn/aLoki
2021-06-22n/aexe 27fa1f24657b1710079922f92e16cdc7d1710257aabe93201bbf730b7ddea3a9n/aLoki
2021-06-21n/aexe c0d0bb88f168055f81d335866bc16d4560348d6592714b8cf2e44355b1723942n/aLoki
2021-06-21n/aexe 4173cae36a80ef15ee084a9714c11589a6bc54bcc2b8fdb66e829b246ebf643fn/aLoki
2021-06-21n/aexe 08377819d79016a838d738bb146ee24b852e3405c9247dc97dd808ab94cf56c9n/aLoki
2021-06-21n/aexe 716febe5997423d5119cf34fac0bc06ba25709982fb291c8d8ae57c47b923646n/aLoki
2021-06-20n/aexe 80dc17e49673414cf02cfb5372b4a0fb64b39276ce8b5dd041bac4232bc6ce2dn/aLoki
2021-06-17n/aexe 173256731ccf58460e223bac2eafd0f62f81b3e562fc9ee37625b9c603e3fbfaVirustotal results 16.18%Loki
2021-06-16n/aexe 32ea7f5e9501178a5d69482137073798f9f13b1a48f7a906d87a35bff9c1100bn/a Loki
2021-06-16n/aexe c0928225885d5bd8fa680f7fc6cbe5d8e79923b2adabc3a66cadacbb79099d27n/aLoki
2021-06-16n/aexe bc6b1909338c036dbcc50d017690d87f20eddbe897e25e9d0527dc4651fe8fc7n/aLoki
2021-06-14n/aexe 5f819efef7b557256567d0e9e58aaca82ee9c8df17ae73fda0e29601b7b07511n/aLoki
2021-06-13n/aexe 7bf46725592524d06f2c62378872a34b0de33def00f43cbb1a33b65b963e527en/aLoki
2021-06-13n/aexe 9fb4d3ad8b81a240e66bb1d85651191f37e4bf02f9d0ae6542e102e2dbef1805n/a
2021-06-11n/aexe d6cd76e56facc07bed5280255bb645c1a6aabc711fc92379963fde57adfdf124Virustotal results 31.88%Loki