URLhaus Database

You are currently viewing the URLhaus database entry for http://wushupalace.top/jollion/apines.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1599352
URL: http://wushupalace.top/jollion/apines.exe
URL Status:Offline
Host: wushupalace.top
Date added:2021-09-07 10:34:04 UTC
Last online:2021-09-19 06:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2021-09-07 10:35:06 UTC to abuse{at}sprintlabs[dot]ru)
Takedown time:11 days, 20 hours, 8 minutes Bad (down since 2021-09-19 06:43:57 UTC)
Tags:32 exe RedLineStealer link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-09-18n/aexe fcbfe602c2c6a8a8f82cc5b9a71e8feb8175cbeb23d7025a10897bc64d597e24Virustotal results 50.00% RedLineStealer
2021-09-17n/aexe 9cbbf0751960bee84a15c7285d364682b0a40b4fa31294a8ce0e073e9c274904n/a RedLineStealer
2021-09-16n/aexe c5ac7c737cf48b5e4d016e439ec25b657d0f22d7feac1c93779f5a16eaaefa77Virustotal results 35.38% RedLineStealer
2021-09-14n/aexe 1f92fcdfb40475f95f044971dbf32a4617d5d02b790a0d6e86b58724783f2eeeVirustotal results 44.78% RedLineStealer
2021-09-12n/aexe 912e8205fc8bcc3b22705ceb7ddf866db47398d7266ea60ca5da85044fb1c1d7n/aRedLineStealer
2021-09-11n/aexe 0cb70d3d6102437c6ef69ee84d2641c6266cbf00536f03bc85d9d6619d56e18bn/a RedLineStealer
2021-09-10n/aexe ff573ea4f27cadb5766e0d749a6a017082b7f28721bfbe9a6c754160f0cd9addVirustotal results 37.88% RedLineStealer
2021-09-09n/aexe afd1fcafcf469b9df15b175885da6844b9aa9881f88864813de7a6c210d76c8aVirustotal results 30.88% RedLineStealer
2021-09-08n/aexe c918a66b721ead859f84b6bc168265e0d79725529e9f1a9104d2bd5878fdce74Virustotal results 36.76% RedLineStealer
2021-09-08n/aexe 9d29d5a2fa3e1b5213d8e73bfbc32cc9f716a7d8a261289decd409a806a4220dVirustotal results 45.59% RedLineStealer
2021-09-07n/aexe b5e70dbc0fe7595643acebc96c040c279270d333b9cffe095a3d860297ef3591Virustotal results 50.75%RedLineStealer