URLhaus Database

You are currently viewing the URLhaus database entry for http://urydiahadyss16.club/raccon.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1598789
URL: http://urydiahadyss16.club/raccon.exe
URL Status:Offline
Host: urydiahadyss16.club
Date added:2021-09-07 06:09:07 UTC
Last online:2021-09-07 18:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2021-09-07 06:10:05 UTC to audit{at}firstbyte[dot]ru)
Takedown time:12 hours, 11 minutes Good (down since 2021-09-07 18:21:32 UTC)
Tags:exe RaccoonStealer link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-09-07n/aexe a69aab2844cd1c1e9ae37f50742e017a9dfbca40e21e9053970ba801fa6aa71an/aRaccoonStealer
2021-09-07n/aexe 36198e5386e35543868f300ca7e3daeaaa78278b407bc012e354cd7aaadff67en/aRaccoonStealer
2021-09-07n/aexe c8b9c67e88433a5dc3de557658cb99677a4ecf6fdef6a790e48f5311444800c1n/aRaccoonStealer
2021-09-07n/aexe 42b4995177469966fd17d3efe6df8b16a94727993a63041b6320043536997e1bn/aRaccoonStealer
2021-09-07n/aexe f3a77b593a000558bb8e09aa0d936137654e3b6c527532bd1e384a4e4d81896cVirustotal results 33.82%RaccoonStealer
2021-09-07n/aexe d2571368e905d848a83fd5ab2d25c5d2a91c5705243ca558b5d751dcec89ddaan/aRaccoonStealer