URLhaus Database

You are currently viewing the URLhaus database entry for http://xandirkaniel20.club/raccon.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1619927
URL: http://xandirkaniel20.club/raccon.exe
URL Status:Offline
Host: xandirkaniel20.club
Date added:2021-09-14 19:39:07 UTC
Last online:2021-09-16 22:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter:Anonymous
Abuse complaint sent (?): Yes (2021-09-14 19:40:10 UTC to noc{at}baxet[dot]ru)
Takedown time:2 days, 2 hours, 53 minutes Poor (down since 2021-09-16 22:33:53 UTC)
Tags:Raccoon link RaccoonStealer link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-09-16n/aexe 36b5f054383663feb8c9fb63e362ab6e52807020a8f4d190c92c832c967ccc72n/a RaccoonStealer
2021-09-16n/aexe 06f8ea1ebeec929f33cc7362262bebbfeedcf4bf4c390b5c4a5582a8fe7f2ceen/a RaccoonStealer
2021-09-16n/aexe 46d9289edb96f18f0e7ecbb439438ea76987b3f07743e51395a06195279386c3n/a RaccoonStealer
2021-09-16n/aexe 6a1c3d895474b28f37d4e482fbcbe075d7bdc7006024f6fbd4acdf210bce55d8n/a RaccoonStealer
2021-09-16n/aexe c6386d966ca063633bcd9ccf8fdb008d10db514325269630b2930bb5e3ecc60cn/a RaccoonStealer
2021-09-16n/aexe e5513bfab94c89609fb1ea345d4c66b4f43d7575f265407ff1a6b1e098f209c4n/a RaccoonStealer
2021-09-16n/aexe 3ff8c8d2a7796e6367a88264f9aaf0e01b184b982215252c1746b0e0ff9a466en/a RaccoonStealer
2021-09-15n/aexe af662b73778e0c01b806a569a01e2f68421d45d25a36610e97b91c88d6d901d0Virustotal results 32.35% RaccoonStealer
2021-09-15n/aexe 66d654dd0a5a3236d7c037f6bcc4965fb1a42ba2505cf8c7419c0e0edfbb8bden/a RaccoonStealer
2021-09-15n/aexe ed6449b41ec135327f70bcbb1abbff59fabed4d639c125c4985bc46533cd8af0n/a RaccoonStealer
2021-09-15n/aexe 5496bcb9dd1596bee870c775104c1cd543e8dbfe675dde7b814f41a92eb0dd97n/a RaccoonStealer
2021-09-15n/aexe efb52321ea56f820e55356e22389d3cf1640f37473193239929c16da4870d7d4n/a RaccoonStealer
2021-09-15n/aexe 3054f4aa2716f6234a90b88872c78906911ed3b961738baf0c73f87ab290c578n/a RaccoonStealer
2021-09-14n/aexe f0c98f4c47a7f3890884cea6e1e84d19fd63eeed8b05ba9cb367707a0f28aeban/aRaccoonStealer
2021-09-14n/aexe 00d87244c335ba9a5a300244f8a5fe399b4e8ac946b56b4f3009f246ed91bae9n/a RaccoonStealer