URLhaus Database

You are currently viewing the URLhaus database entry for http://dahgarq.top/jolion/lipster.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1481337
URL: http://dahgarq.top/jolion/lipster.exe
URL Status:Offline
Host: dahgarq.top
Date added:2021-07-25 22:20:12 UTC
Last online:2021-08-09 07:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2021-07-25 22:21:06 UTC to abuse{at}hostzealot[dot]com)
Takedown time:14 days, 9 hours, 2 minutes Bad (down since 2021-08-09 07:23:08 UTC)
Tags:32 exe RedLineStealer link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-08-09n/aexe 7e05f4642d1de973d7f93938f049de28d6e544ad1eb3729de2a9cb027d46f881n/aRedLineStealer
2021-08-07n/aexe b3d4a34d6491e5030a9f749ea17210c2d49e06b683082b5354defb082dec4b4cn/a RedLineStealer
2021-08-06n/aexe 17e6a54f93998dab95762bd0b1f9d9fda200ad172f69ae0cf253ba7a89c36556Virustotal results 40.00%RedLineStealer
2021-08-03n/aexe 3ed1b5a2e4f00e969eac37e713ea20644812c90997cce9fc56ede9c96b25a778n/a RedLineStealer
2021-08-02n/aexe 00704b3de114926c42a8d02c0fa1c84816e62a716a0e895b92f11edf604febden/a RedLineStealer
2021-08-01n/aexe 17cc58e77877849e90ead801f4c0295a29067a8a013e8d852d56b1f4bf71f88en/aRedLineStealer
2021-08-01n/aexe 74cc95f2ce7cddc62d807faf5aea98a0b0f9e772a0c49327d754e4db154b6356Virustotal results 37.68% RedLineStealer
2021-07-28n/aexe 0059c00e889f36bb102b5e61f7f2f0f4420729d2f43d4178ed16ab3a0c2ce05cn/a RedLineStealer
2021-07-27n/aexe d2f692dd8b90eb0ddc71ebcff4d769e669916a4482cb50add82db1b3ae81586dn/a RedLineStealer
2021-07-26n/aexe 49677240c8140b4c04008b2503143cb4e0dbb2ec75b28996a8b0b82e964addafn/a RedLineStealer
2021-07-25n/aexe 0a9ff0b46182a441c0f9c021722817984ec884266c123d2fd6257f9c70d322abVirustotal results 34.78%RedLineStealer