URLhaus Database

You are currently viewing the URLhaus database entry for http://frekodi.top/holler/rollerkind2.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1531921
URL: http://frekodi.top/holler/rollerkind2.exe
URL Status:Offline
Host: frekodi.top
Date added:2021-08-13 23:07:04 UTC
Last online:2021-08-14 07:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2021-08-13 23:08:03 UTC to abuse{at}neohost[dot]net)
Takedown time:8 hours, 32 minutes Good (down since 2021-08-14 07:40:42 UTC)
Tags:32 exe RedLineStealer link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-08-14n/aexe b1d980676668f008aa494f0c769ab774900ddb6211d843664dac36771936b065n/a RedLineStealer
2021-08-14n/aexe 43a2676b796049188a3fec2c3a0c8fe60f7160a945cb55272b7d761c918ca324n/a RedLineStealer
2021-08-14n/aexe 654ea82fbd71f1a74e4d4ec06a53f07982d039c80a67fa011de64b60032c28c2n/a RedLineStealer
2021-08-14n/aexe 9932ffa697b4afd72f39a94832b744f525cc6d614fbe22d739f5b8bd7b960298n/a RedLineStealer
2021-08-14n/aexe 86196ca365dcb540ea489ce9ebf2273decba35c4c5160971282a91661a31593cn/a RedLineStealer
2021-08-14n/aexe 8a794d63608b3f190e56488fccfc228301595b3799f99a38d181f8f2007aeb9bn/a RedLineStealer
2021-08-14n/aexe e70f5c5086fa900d5965c151fd1e197a2f4109beb75b8492008823e7b054b69an/a RedLineStealer
2021-08-14n/aexe 164394b884690a2a4c0005867a8ad69616d1fd406659722fc2019c3fad7b3e9en/a RedLineStealer
2021-08-14n/aexe d460b752699b03b31148fd1ba0089d5499c17624140cfd5b7e6de1d4c3fd4a55n/a RedLineStealer
2021-08-14n/aexe 796c50585bd17f86b59641ab362bb5aa017ec73143052ddcc82360f7602bf62cn/a RedLineStealer
2021-08-14n/aexe 0f0b201db1a7926cf768cbec1633e57a2a3cb86487e074324a5f3946ae30d93bn/aRedLineStealer
2021-08-14n/aexe 176e3a00a71c689b8239689432f5420092df00e2f497146fc7a87bb029014a69n/aRedLineStealer
2021-08-13n/aexe f83ff096f4980980eae6c666d70d49763f35e17980a231e7ceaea40f9615f5e1n/aRedLineStealer
2021-08-13n/aexe c8c9ac9588a132bbff1ed31922a18b697d63581667232cfa71a551559ceb3324Virustotal results 30.43%RedLineStealer