URLhaus Database

You are currently viewing the URLhaus database entry for http://host-file-host9.com/files/9826_1637397848_9072.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1803856
URL: http://host-file-host9.com/files/9826_1637397848_9072.exe
URL Status:Offline
Host: host-file-host9.com
Date added:2021-11-22 01:27:10 UTC
Last online:2021-11-30 15:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Status unknown
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2021-11-30 14:19:03 UTC to noc{at}baxet[dot]ru)
Takedown time:8 days, 14 hours, 9 minutes Bad (down since 2021-11-30 15:37:39 UTC)
Tags:32 exe RedLineStealer link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-11-28n/aexe 3d6b1bff1f84f5e960b881102a9d2bc7a239af054d8f06396c51172db5dc4115n/a 
2021-11-27n/aexe dde6a751a2d54a086028398c09e97b646bc1f9ea09d97f589dcf8edac13db86an/a 
2021-11-26n/aexe 50c01af6ffb8577bbcdc322d84cfcab534869b1f6e81ab985348f5ba88c9bf13n/a RedLineStealer
2021-11-26n/aexe 3b1527d2efd286d2f1659040a98d5c82ce3b1ce2141b5fb5a5bd0ea2d2579c3en/a 
2021-11-26n/aexe 6c4611c174ee86f7a854dfcd639699982f9bc61dabfc12575fe4a811b24cbc41n/a 
2021-11-25n/aexe 2bbaaf340d09804ef2a2755422a82fdf0fbc53870ca71feb87e11bfd354db665n/a 
2021-11-25n/aexe bacf386285c4e9151c8a06f06d130d1b045fd7e920ee6645e4f156b997e3eefbn/a 
2021-11-25n/aexe ba852398c7bf8d5a1d76ac76b29146ee3f39d437905ef634f1820711372d8052n/a 
2021-11-25n/aexe 235f32c2aefc04cab0534ed3a62cfd0d402fdebf05b76a70a4298b947d03fac5n/a 
2021-11-25n/aexe 2e149cff2e74417e0aa14e1c374274c97686630c4c374a2bd5878c6e9a0b9859n/a 
2021-11-22n/aexe 3846f4e05cae581c90dec04c0df1ef6b6167bd7a4bfe6bc928870c037cf7b383Virustotal results 26.47%RedLineStealer