URLhaus Database

You are currently viewing the URLhaus database entry for http://host-file-host9.com/files/3786_1637260554_7626.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1800585
URL: http://host-file-host9.com/files/3786_1637260554_7626.exe
URL Status:Offline
Host: host-file-host9.com
Date added:2021-11-19 08:34:06 UTC
Last online:2021-11-30 15:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Status unknown
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2021-11-30 14:19:03 UTC to noc{at}baxet[dot]ru)
Takedown time:11 days, 7 hours, 1 minutes Bad (down since 2021-11-30 15:36:55 UTC)
Tags:32 exe RedLineStealer link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-11-28n/aexe efc4d95b43d33102fdf5ce5969a941dd320f5a0eee4d42075e115577b37d2b48n/a 
2021-11-27n/aexe 28cf957e800a1b0ac955ec02d6ef438fb2778af260e48d5225f5c1a2ea63ecben/a 
2021-11-27n/aexe b438178ce54bde16679357d010118b395e5b4c8bd5d4aef453ae8e7531ac2c5fn/a 
2021-11-26n/aexe 6c6ad20c43e0fa26e30b11a6ac74f3cb5bf0537a7dd3b7a6cba765d9c30fe81cn/a RedLineStealer
2021-11-25n/aexe caa92892a8927e1745ae1e5dcf629484b21bb6993afe66b81f67b577d963fe56n/a 
2021-11-25n/aexe 4afb70712235ec6d1e070fc90324920387de42502d54b17c2da867c41ff845f4n/a 
2021-11-25n/aexe 078eb736da3cc08f8494200192b86d383454d750dc8fd202110aa99b9dd615dan/a 
2021-11-25n/aexe 4c91a020f8d91a78844c608389a1087330c34211da7ae6d87c41621a15bea121n/a 
2021-11-25n/aexe 3a3fa6e9c27a9e1a6752353336fd753a34759aa5da96a8e1ee6ef0952673a26fn/a 
2021-11-25n/aexe ec8c2fa6c8f67166fe15beb62eeca9e43c9513778ceaca6c540ee9e223be0cf4n/a 
2021-11-21n/aexe 6456ad97a9adc8d42d6071e47b1f7829c5174c6067986ba8a951360bcaf3c89dn/a
2021-11-19n/aexe 2da3288d12a78e932244f25279ae672e7196d8a91a743983c69690bfc2446d4dVirustotal results 47.06%RedLineStealer