URLhaus Database

You are currently viewing the URLhaus database entry for http://freebeeskatobi.ydns.eu/kat1.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1431281
URL: http://freebeeskatobi.ydns.eu/kat1.exe
URL Status:Offline
Host: freebeeskatobi.ydns.eu
Date added:2021-07-06 16:09:03 UTC
Last online:2021-07-24 23:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Blocked
AdGuard :Blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2021-07-06 16:10:02 UTC to abuse{at}serverion[dot]com)
Takedown time:18 days, 6 hours, 59 minutes Bad (down since 2021-07-24 23:09:52 UTC)
Tags:AgentTesla link AveMariaRAT link exe NanoCore link SnakeKeylogger link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-07-23n/aexe 96007bdda9d12cf59fd2844843f62d3a86b85cb732ee76004e2f93ac38d8c8afn/aSnakeKeylogger
2021-07-15n/aexe 90f026ae8692c2199e2a5e8ea618c93ff00fd5d07ac974191ca5f060c1f7c737n/aAgentTesla
2021-07-14n/aexe 58e7c1702583c96deff86dea74d58b0abbd68125448cb9aaf25143e82daef3d1n/aNanoCore
2021-07-13n/aexe e150f981d43106895ce64ebce7b41ae17b0eed49baa4cfc0d8d09c98dd208e8fn/aAveMariaRAT
2021-07-13n/aexe a4f60543551f30903ffb81dbdc7333c1258b71f1c4441e87624048421f0c193en/aNanoCore
2021-07-13n/aexe 7eb24308d8b3c88bd77726ea6b1fa55fda8cc46f6c4ab18f91c78796cb92921aVirustotal results 30.43%SnakeKeylogger
2021-07-09n/aexe aebb7fe3721ab50e0758981b2817beee86fba2797abea2bd19192abc7811761dn/aSnakeKeylogger
2021-07-08n/aexe 28f2a1963d20af74145ba43365f627f668bf4e7ba1c57126d1c25b119d69c355n/aAgentTesla
2021-07-08n/aexe bc181205b5e8590f1400301caf7209dbdbef050ff554f8eda82eea569eb5228cn/aAgentTesla
2021-07-07n/aexe ed1cdbb5aaa0d810370122f4f884a5acb43477bfcf245acac1e452a1cc4a7ab9n/aAgentTesla
2021-07-06n/aexe 999af9b550ed7a68c528d2691bfa040c67289550bb878c2ace8fcb2ae9c7ef19n/aAgentTesla