URLhaus Database

You are currently viewing the URLhaus database entry for http://suriyecastajanslari.bykmedya.com/new.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1623735
URL: http://suriyecastajanslari.bykmedya.com/new.exe
URL Status:Offline
Host: suriyecastajanslari.bykmedya.com
Date added:2021-09-16 03:12:02 UTC
Last online:2021-10-13 01:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2021-10-12 23:41:03 UTC to abuse{at}ni[dot]net[dot]tr)
Takedown time:3 months, 14 days, 11 hours, 6 minutes Bad (down since 2021-12-29 14:19:18 UTC)
Tags:32 exe RedLineStealer link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-11-30n/aexe 677296f8b1f65537d5b31bd0ce8431da7088843861fa816160d6188cffb6b811n/a 
2021-09-21n/aexe 5368d720c17234fa4aac42b20464b7d0a0fb02436a67dd65d088f3488ece563fn/aRedLineStealer
2021-09-21n/aexe ad291dd59e6dce5245e1a3c7a81514353a0d6a107f86c8e37fc4e9171f4ff1c5Virustotal results 35.48%RedLineStealer
2021-09-21n/aexe 92b230998990399e6c733b38d0c023236c9311eedd99f60e294a4ec43b6cecd8n/aRedLineStealer
2021-09-21n/aexe 7cad51a346a2c1441d4f87e9c4f848a61ba22506926fdeff1c0d315dfca515ben/aRedLineStealer
2021-09-21n/aexe bcfaabe847b4b231c0bfb5ce7e50a95e580c3dbe6e4089369a9a35ccd6867372Virustotal results 37.88%RedLineStealer
2021-09-20n/aexe e2ace55d41f15f1cfaea0912f852ca34805061aa98863639e796e101fb79197bn/a 
2021-09-20n/aexe c590ddcca494bb3d21012c0e539ad382e5e8f74350a70ed1db464f80590e1134Virustotal results 30.88%RedLineStealer
2021-09-20n/aexe 18e1b90d3d02e4fb5e3ec7ffd2f4173a45ee47fe99b25440aa91ee9fc296f4efVirustotal results 29.41% 
2021-09-20n/aexe d994b29cc12f54743522938126dc878076dc55075ed9b3ae39cf12ff69406044Virustotal results 26.47%RedLineStealer
2021-09-20n/aexe 32bbafcfeb06498d54fd75c87947404055dc95c7baefb381fe49de79d4a47065n/aRedLineStealer
2021-09-19n/aexe ab3944567e7481bd882bb9c3425d23efc409fc18a31fb5cb2b534224f30976bbVirustotal results 42.03% 
2021-09-19n/aexe b557b6faa529023d009474b88f16f8e6400a3592d959416f434d366c0018f433n/aRedLineStealer
2021-09-19n/aexe 7ea0d2fd8931d60838d30d6b619b35ce8350d092e85d336d9adacb4c50257980Virustotal results 36.92%RedLineStealer
2021-09-18n/aexe fe42adc8284f0845ce123a0c8c3d82affa84643dfa9da2f7cf727a2ec0005525n/aRedLineStealer
2021-09-18n/aexe a8c66fa9f677eef9b0346115211edf5126762e20751dd8c118f7fc13c104f40eVirustotal results 25.37%RedLineStealer
2021-09-18n/aexe 98ffa0202661a4f6b96a90ef7adadb476d67a64ebcb8a6a15df56e68bbc5f814Virustotal results 25.37% 
2021-09-18n/aexe 2a7d8e9aa4eb7ea7cd820178956ca720312387b799c541ad95acfeeffbee1abcVirustotal results 23.53%RedLineStealer
2021-09-17n/aexe c8c0bdca8ef4b2ef0ad2ff23eb7718e0ea055ed950e34125bffa56798b056b5fn/aRedLineStealer
2021-09-17n/aexe f73dfe3cc464c79d969abbd91af335f2c5840453fd0fe69f26dcd6ee6c625c4fn/a 
2021-09-17n/aexe 946bf7b20b10f5841a2b98aca1d12b4214b7b1961863a6dc4078740e236715c0Virustotal results 29.69%RedLineStealer
2021-09-16n/aexe 6908334d28af7e1137f9d82c0c7a29edec0ec5fcd8583a9533eefa44894f7437Virustotal results 32.35%RedLineStealer
2021-09-16n/aexe eafee164cc6c7cd4f545d5dd7bc9a10a931aa6c30162be00215520bb3b010fa4n/aRedLineStealer
2021-09-16n/aexe f5ad5f72cdd46c72b9272c1df0a4294a5bbf7ff8857b603147ab4478773124d3Virustotal results 45.59%RedLineStealer
2021-09-16n/aexe 1e25a64762271a2a6fc9a8d4ce479fbf23915a29b1a3b946a100f62f88cb00cdVirustotal results 46.38% 
2021-09-16n/aexe 1778913fe94865396756b84bff8e6180de47c8371869e9582ca34d8355d439dbVirustotal results 46.38%RedLineStealer