URLhaus Database

You are currently viewing the URLhaus database entry for http://readinglistforjuly8.xyz/raccon.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1527049
URL: http://readinglistforjuly8.xyz/raccon.exe
URL Status:Offline
Host: readinglistforjuly8.xyz
Date added:2021-08-12 06:41:05 UTC
Last online:2021-08-12 09:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2021-08-12 06:42:02 UTC to abuse{at}mgnhost[dot]ru)
Takedown time:2 hours, 31 minutes Good (down since 2021-08-12 09:13:42 UTC)
Tags:exe RaccoonStealer link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-08-12n/aexe 50b9bd3aea9355d60bb03f5d0cbcf3f601f1ec3d1b3c6e160bd0984d62baf15aVirustotal results 27.27%RaccoonStealer
2021-08-12n/aexe 0cc9be306f17292de354f16a2ec83e81c8a7635f0412df2986451447cba938a2n/a RaccoonStealer
2021-08-12n/aexe 9dab2a8cd79a947c700da1f58f7e967fd81cc321414d4cb512ab65b483834798n/aRaccoonStealer
2021-08-12n/aexe 7b5c65ae580d887398957fdeb574f54427e5dccdd0ab8cb7a9e6f91074e28b17Virustotal results 27.94%RaccoonStealer