URLhaus Database

You are currently viewing the URLhaus database entry for http://host-file-host9.com/files/8364_1637262017_3569.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1800497
URL: http://host-file-host9.com/files/8364_1637262017_3569.exe
URL Status:Offline
Host: host-file-host9.com
Date added:2021-11-19 06:23:05 UTC
Last online:2021-11-30 15:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Status unknown
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2021-11-30 14:19:03 UTC to noc{at}baxet[dot]ru)
Takedown time:11 days, 9 hours, 1 minutes Bad (down since 2021-11-30 15:26:01 UTC)
Tags:exe RedLineStealer link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-11-28n/aexe 8dd9634d9ddaeec6a51204ce4569689f1250d1a370b870ed7f5fd5f206dcd89cn/a 
2021-11-28n/aexe d4517b0e3c9ee2cd3940e237dd1b5fe99cab60b5ebab95f593b7579311306e99n/a 
2021-11-27n/aexe fa5e66cea585d734c4ce7f4956d9f6201e20140dc710ab95fa7d4ef8a5866ef8n/a 
2021-11-27n/aexe 773dc0d233c393ceaf82d4fcae0e51181419f4115f61ceea1c19678013dc09c7n/a 
2021-11-27n/aexe 76e3d45ec1ed5b76370b2d31c7a551e515faa5a2c652885bd0b910d6625e1037n/a 
2021-11-25n/aexe f8bb206f5577b6acc5aefff8d8a71952f08777807d02a5fd97615c887f4506f9n/a 
2021-11-25n/aexe 469b2b8beb24c9708c5e5f84ee0fc1194422fc9cdcdd376092e846aa250a8799n/a 
2021-11-25n/aexe 17bde80a8b49729638e2b818a8418156bec44f7e3055eb9201bd172fc1686ee7n/a 
2021-11-19n/aexe fe0f1fd4a510707f64b904fc422649f8ce38cefa77e13d9607abf19b7d6be83dVirustotal results 43.94%RedLineStealer