URLhaus Database

You are currently viewing the URLhaus database entry for http://felionaris.com/xs/mypc.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1796543
URL: http://felionaris.com/xs/mypc.exe
URL Status:Offline
Host: felionaris.com
Date added:2021-11-17 03:05:07 UTC
Last online:2021-12-26 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2021-12-19 19:31:47 UTC to anti-spam{at}list[dot]alibaba-inc[dot]com)
Takedown time:1 month, 9 days, 18 hours, 49 minutes Bad (down since 2021-12-26 21:55:56 UTC)
Tags:32 exe Gozi link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-12-15n/aexe e169baf293bbb638e20571b7e59b369214a54e78a1e1de4b0705170d593d6921n/a
2021-11-18n/aexe 93fcf148e3e197b8b47f998645f9cbdc5492c2f11271aea3bbaf3c0eee9bd93dn/a 
2021-11-18n/aexe bacb14871449da915c5ebcd5c891be8edf5d7790c630902fcb26c3e59676019en/a 
2021-11-18n/aexe 4a6b2122f82fa4228dd9149b135c45b4a6e87ebd1043a087b3b3163e8ac50ba4n/a 
2021-11-18n/aexe 7d4b5a972faf22bf8ed7e517ca13909d5f2105256056673127b06a1e965117a5n/a 
2021-11-18n/aexe 1e348c89a277ce71c5e4b1e73a4b129d34662e7f52a88841dc0f8e456506a5f8n/a 
2021-11-18n/aexe 092310e2789db75270c649bae90db2081ac565c241f265b27883d0c2bad01eafn/a 
2021-11-18n/aexe 9d4183a77d8f8164bbb246044c7e81d0b1e5e65bdf591e097fa26a964906bef3n/a 
2021-11-18n/aexe e57cac95293086a0b73b80fa0958440f762fe453fa9071a5353566859120fb5cn/a 
2021-11-18n/aexe 63e77d8618eb48d7e751ebaff21651915d28b7ccd728eedeae283daf45b246ddn/a 
2021-11-18n/aexe 5673ec4ed2547ce4e1b373549affa36a7718ad66f6e9cbc998e3cc046ffb3148n/a 
2021-11-18n/aexe 306dcc06f0e9bf01bb1d19d57888da368027d7359bb5459f4c016d18527caab3n/a 
2021-11-18n/aexe 93c854d7b9dd871c43be5084bf88cb1cd615f73f53ce459c3ce5c53e8d31ef27n/a 
2021-11-18n/aexe f1fb6f4482571a4429e7ef7c75595303ac6c8367023d725dd3021db1015c3221n/aGozi
2021-11-18n/aexe 131e144d389054a6b48cf44c9b75ef8c5d99d9c5fcd38362c6cdd0a5f23585bfn/a 
2021-11-18n/aexe f6695f35a0ba30e59592b2f5945df4378bf9a293ffd6abff6bd44d186fd70b11n/a 
2021-11-17n/aexe 96b98b0b77a3e458bfbdf84bc7c05b73d592e5fd6f8691742ac7c463489ac26bVirustotal results 30.30% 
2021-11-17n/aexe 7f9f09f56d5dbdf1f62cc02670cfcc6968754b886c1612fa6fd5d247530058e5n/a 
2021-11-17n/aexe 17082f459a8624ff09630c0a32ce4b6b728c10222e14804efbf8b6692622675an/a 
2021-11-17n/aexe b64ff8349a65716f10578f2ab51a809d9e25950b7960a82906b1754217db7acdn/a 
2021-11-17n/aexe 8324a91bb79655e1b539d3fda1c378c43bbfee6c391b65eb1b3f7acade3ad133n/a 
2021-11-17n/aexe d79679c84d90ba5d7fabc8503154a80ce705528098f89b62104ccbceba664fd3n/a 
2021-11-17n/aexe 2fd0b6810c7fd9272473ea889d24b3c42ba7ccdf6bde755a11c664b4945ffcd0n/a 
2021-11-17n/aexe 6ed5a5198fe7397be32d8cbbc31dcaa59c971be5ffc74a40709100ec4bc0f77bn/a 
2021-11-17n/aexe 6883da2533c649d46c1095c7a73d65397ce3769c49820f6afd1fe43619b9221fn/a 
2021-11-17n/aexe 6167875e1f00c91406cf169490fe1694e9a3e4fa7e3e8b5c66dc5bfaf616a182n/a 
2021-11-17n/aexe 67554421dd6b893467fe4e5a9dfbcc60dacf9db24c021b567e625eb9c1d9b450n/a 
2021-11-17n/aexe 2c1cfaeb1cb2168477f7e90e671a7ba182cb95b4845c0cf4c44f5809edcd5cc2Virustotal results 35.29%Gozi