URLhaus Database

You are currently viewing the URLhaus database entry for https://yelty.info/82550150ac3397ed391e34aa99d35be4.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1609030
URL: https://yelty.info/82550150ac3397ed391e34aa99d35be4.exe
URL Status:Offline
Host: yelty.info
Date added:2021-09-10 21:19:03 UTC
Last online:2021-09-11 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2021-09-10 23:14:03 UTC to CloudFlare Anti-Abuse API)
Takedown time:22 hours, 39 minutes Good (down since 2021-09-11 21:53:11 UTC)
Tags:32 exe glupteba link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-09-11n/aexe a5542a48efa2c746a559ad493aa49360b0d4bf7d1dfe3020026d9d01a5484de3Virustotal results 23.53% Glupteba
2021-09-11n/aexe 7988cd23580cd2c08a522e76080c6800f30f4038f8a151b348f96d6630157051n/a Glupteba
2021-09-11n/aexe 2cef45a17d80fe06edcf1788d7a0d2c3f1c5b372775c70e2d87eb58e0a7010cdn/a Glupteba
2021-09-11n/aexe 57c73a1cc47fe46fa345a3ed63b040a0626599ac1cf02d8ec45642a8c3d5d52dn/a Glupteba
2021-09-11n/aexe a88a186c64f41be1987aeba3715c7e1d3cd7f55b955e8c17def04e2ec70c2e7fVirustotal results 25.00% Glupteba
2021-09-10n/aexe aa15c9a23c122e4df9220823e55ccc39dcb7ac6b0fd07633f5b850e787b1a61fVirustotal results 30.88%Glupteba