URLhaus Database

You are currently viewing the URLhaus database entry for http://host-file-host9.com/files/2014_1637345973_1411.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1803338
URL: http://host-file-host9.com/files/2014_1637345973_1411.exe
URL Status:Offline
Host: host-file-host9.com
Date added:2021-11-21 16:12:05 UTC
Last online:2021-11-30 14:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Status unknown
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2021-11-30 14:19:03 UTC to noc{at}baxet[dot]ru)
Takedown time:8 days, 23 hours, 19 minutes Bad (down since 2021-11-30 15:32:32 UTC)
Tags:32 exe RedLineStealer link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-11-28n/aexe 21fb475dcb4caffe9eafa1c4cbe927389a33967c2406b7fee1373bb8add234ban/a 
2021-11-27n/aexe fcf8309b42ef7f220cbdaf8b66d0e3416cf7a32699941527d2b6ee8f20317e2an/a 
2021-11-27n/aexe 9e68c15d9b7402c6c85983caf2b3469d2a209a61951b7edad71079c1ca3a0602n/a 
2021-11-27n/aexe c0102fc1e6f40216a5a66eb3c69ea05c33c6d9bd485d2936dea71228aa9c0d7dn/a 
2021-11-27n/aexe 0ce00e1c79645fcb1ffbbc9a743a60c7617470a21067aca97ae667573c8d861dn/a 
2021-11-25n/aexe 484141beb0b31be9c3ba06db5bd101cf5913e66b74927ecf394f730fe02608a8n/a 
2021-11-25n/aexe 70f4dd39c09eff0100f0228dc11b39c0a82a24639172ec51d5a0b667d3e5aaacn/a RedLineStealer
2021-11-25n/aexe e8db3223be568f1d52aa1cb433871d46fb247d4c32cd20dc132f246341f4aeb8n/a RedLineStealer
2021-11-21n/aexe 7a6278fda5dcee5dca75ea1bc6182f4eac951054a758cd2935dcbaf5c6fc75acVirustotal results 53.73%RedLineStealer