URLhaus Database

You are currently viewing the URLhaus database entry for https://ezps.co.uk/images/JoSetp.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1430950
URL: https://ezps.co.uk/images/JoSetp.exe
URL Status:Offline
Host: ezps.co.uk
Date added:2021-07-06 12:59:08 UTC
Last online:2021-07-29 12:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2021-07-06 13:00:03 UTC to abuse{at}iomart[dot]com)
Takedown time:22 days, 23 hours, 51 minutes Bad (down since 2021-07-29 12:51:57 UTC)
Tags:32 exe RaccoonStealer link RedLineStealer link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-07-17n/aexe ccfd6e626a5381e700e06cec9abf41543d924a7f04d9f78ef3a04a847577d31en/aRaccoonStealer
2021-07-16n/aexe c4496950e547f2b96ebe298789d43750fdee76eed20187310a454dbb2fe89a5bn/a RedLineStealer
2021-07-15n/aexe 1e39513b16501c1ff55a8a9d4c7b4b27ad067f3063002541b74b43e547ca8bf8n/aRedLineStealer
2021-07-14n/aexe 22448b09e9a75b9fd0af4c6034f754a771f42b34af5f35daebb75abb81b06358n/a RedLineStealer
2021-07-14n/aexe 9fe9b2f35c467177077ddb809213375fb68a0e0136b1752c75457f33b30ecb96n/aRedLineStealer
2021-07-13n/aexe 26751422de10c39d24478c969264b24d0507e8abdfd3091967edd61ab3e2d670n/aRedLineStealer
2021-07-13n/aexe 07da9a7d80de3e79b1ef8aa16b8ae3c8b3a043662b5162c97a045fafeb7a05a3n/a RedLineStealer
2021-07-11n/aexe 83c7dfa900d5dd89a2ca5bb3f882671b9287a845693248de43a70aceb41798e4n/a RedLineStealer
2021-07-10n/aexe 05a3d863e7f8709e42aaedc5f273d05218a0a030a0624b91e4930e68791a9f04n/a RedLineStealer
2021-07-09n/aexe 7ebb287e673a747d39ed28cba490f993223ad8cfdcbfec67cb7d66f98d769cf1n/a RedLineStealer
2021-07-08n/aexe 6d334a26d26cd19d8bde3b9c6a7ac64aa9c92030145f22e81b4ee611a4bb7d8en/a RedLineStealer
2021-07-08n/aexe 337890ed642abc51dae573a19d23d0c9109e0f8f94f3007702bad844de1de817n/a RedLineStealer
2021-07-07n/aexe 9d5b37657bca43b8be31db47f9a29ea3022b5b21d4da7748d9911d6bef0a1079n/a RedLineStealer
2021-07-06n/aexe fdccd5539f179d7b405ebbc63749ce662af29a3bbe0b66816cce09029e785aafVirustotal results 40.00%RedLineStealer