URLhaus Database

You are currently viewing the URLhaus database entry for http://cor-tips.com/offers/Reynard_Hydra_pg.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1365787
URL: http://cor-tips.com/offers/Reynard_Hydra_pg.exe
URL Status:Offline
Host: cor-tips.com
Date added:2021-06-14 16:56:09 UTC
Last online:2021-06-20 15:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Status unknown
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2021-06-14 16:57:03 UTC to abuse{at}namecheaphosting[dot]com)
Takedown time:5 days, 22 hours, 16 minutes Bad (down since 2021-06-20 15:14:01 UTC)
Tags:32 exe RedLineStealer link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-06-19n/aexe e99a5348d20862546ef7513386f28e388352b93aa5db3225545aef96fc2a0027n/a 
2021-06-18n/aexe d6641062ed9493463b1816b59c1cd1b3338a2767782fdf6e5a88cac9adadde8fn/a 
2021-06-18n/aexe f739170c4f49898039bcf7a50161954eaaaa94e095603738b3cfb62f71ed9746n/a RedLineStealer
2021-06-18n/aexe 223ad758933a8c7c24c3cce0f1216f5c661aeed986ad1334887047f224ad7092n/a RedLineStealer
2021-06-18n/aexe 14b8b22468c4dfe17befeac8bf01d6a8d630cdaf99fc3fb45e9118efdff9091bn/a 
2021-06-17n/aexe 3d31251c3866516a7b8518cea36c3ce42690e556cdc934342c60340aed28f4f2n/a 
2021-06-17n/aexe aed241939b6b85b741042762160753dfb75f4c2e4362a4eab08e59b8f90f2387n/a 
2021-06-17n/aexe 4ca1197800f3968e01d4267bf5f3889fefecf81e0e38b1c4cf11cd4a9b016ef4n/a 
2021-06-15n/aexe ee7916bd7203673f36c996e14787ad3d5c24f61d88328d8826f97eab9ec65bfdn/a 
2021-06-14n/aexe b6dbe343899fbfd10fa3e0cbb5537a6108751e4286065f00298d6515004124e9Virustotal results 60.00%RedLineStealer