URLhaus Database

You are currently viewing the URLhaus database entry for http://clariann.info/app/app.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1381645
URL: http://clariann.info/app/app.exe
URL Status:Offline
Host: clariann.info
Date added:2021-06-20 07:01:06 UTC
Last online:2021-06-20 18:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2021-06-20 07:02:03 UTC to CloudFlare Anti-Abuse API)
Takedown time:11 hours, 13 minutes Good (down since 2021-06-20 18:15:54 UTC)
Tags:exe glupteba link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-06-20app.exeexe 921d1099c47c52d22d5a5b101fda36b3ac585675887868e91e686e568da310cdVirustotal results 35.71% Glupteba
2021-06-20app.exeexe 9bd70e957ebed1e65ad67ec7b0c683ee17f62b0c68adca27a9ccc98a65f13f68Virustotal results 40.00% Glupteba
2021-06-20app.exeexe e16353bda7c7bd58aed4e295c699368c7227ea17c475a53e68f5e3ba238ca870Virustotal results 30.30% Glupteba
2021-06-20app.exeexe bf348bb3548e36fc86c7cd916f08be6f2b6e870ba20475e9aa660bf81cccb525Virustotal results 34.78%Glupteba
2021-06-20app.exeexe fb6dc575c8c198be8af4f170e7ff62ab2301ebef1720cb5ae6a835abd0d3a1b6Virustotal results 41.18%Glupteba