URLhaus Database

You are currently viewing the URLhaus database entry for http://host-file-host9.com/files/3709_1637429977_675.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1803946
URL: http://host-file-host9.com/files/3709_1637429977_675.exe
URL Status:Offline
Host: host-file-host9.com
Date added:2021-11-22 03:19:12 UTC
Last online:2021-11-30 15:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Status unknown
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2021-11-30 14:19:03 UTC to noc{at}baxet[dot]ru)
Takedown time:8 days, 11 hours, 59 minutes Bad (down since 2021-11-30 15:21:01 UTC)
Tags:32 exe RedLineStealer link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-11-28n/aexe 9f0adf625d8294d6aa051bbeb3453e061bf3e4785b4032d5aae9ed7b0fa7fef3n/a 
2021-11-28n/aexe 177b42fc9d1a30239219ca3c179ef3eac11b7b01682c93fa2d86c302749ff613n/a 
2021-11-28n/aexe bec106af2dfef886443896cfe254ba28a592f230bbb86a8c54e41f5f9597d1bbn/a 
2021-11-28n/aexe 655146abf268e4b2113fd7c8e6e05eb176dcefa60d16342a09339a8fabfac0fan/a 
2021-11-27n/aexe 2b274f6411c796003a9e4239748d972bbcd8cf11c75bbc8d9e749b7dbd4d7b42n/a 
2021-11-27n/aexe 28853ab9d9f75566d79e177ac3ba22ac923c2a5e7ed18d477150a38f7b77ebf5n/a 
2021-11-27n/aexe 7de438b7d47340dcede4ff6e0ca9efc7f2ac40cb052c4129716b115432fac95dn/a 
2021-11-27n/aexe 78dba871ba6d089caaa3c9dc24c5492424636256ae5aeda65c1fd26db57539ddn/a 
2021-11-27n/aexe 951d9894b82623a1d9348f439146574f4a84d89e3f4dd56f662ff3eb73de7715n/a 
2021-11-27n/aexe 9ff37f41d8e595cc84999f44291713458fdbe6c95070cfc20764fd8440f63f11n/a 
2021-11-27n/aexe d1acdc72b3d3ca2ce6d682ff71300f64337ffbffaba149cf154539755450a64an/a 
2021-11-27n/aexe 82c7fc6749eeee8ffa26df14f34c5c02c562fa854d7008568fa87ea79111eae0n/a 
2021-11-27n/aexe 2a8863542e5dcfed2f3aa36457e0629bde42ad088b38d796e506a326f9dff3can/a 
2021-11-27n/aexe 9abd0e25222da9b7290bc1abe6e5d509976df5a789da5c2450857a941f9d67a3n/a 
2021-11-27n/aexe 762c4b2a926d14943a9490e6f6de754ae2528b14100345ffe0582785498a27b1n/a 
2021-11-27n/aexe 174a2b37cf12cfc9d8c78efd262c169b76ee0bb2dc380465a39e66c9dd632e83n/a 
2021-11-27n/aexe 90f1b0febb776087744d6f801ad54b536c12a752477951e95682522fbc46f5c5n/a 
2021-11-27n/aexe 04db8027727ef2002ee9a56771edda5748d84fe04b8e1eae34135b46f9f40e63n/a 
2021-11-27n/aexe fb1acd2d1e5e1dc822f063b71067bb5b44e6f7e24c52a30c5bb44dae6f8942e0n/a 
2021-11-27n/aexe 4e4f6710c83a1f1b3baa55adcfa371ac181d911c59039635d5039c3141e739fcn/a 
2021-11-27n/aexe 27d453e72b46fe534be915f5524aa4ced9cb49307a89bc7092cd4651362ae450n/a 
2021-11-27n/aexe 6f7a2200f9a30509b7885166f6966ac6a38ef8c314f4e6e1cc9e458650b3bf10n/a 
2021-11-27n/aexe 2806f5189b54112cb14edb6a0f7738357130c8b8b1b494e7a3719cf1c63efe1an/a 
2021-11-25n/aexe f68ddcb77a542b1efa21839c700a06c75ae9c28b5dd7bd0b733f633c34d8e5d3n/a 
2021-11-25n/aexe 71b49a064a606965268f639044e89d711de7c7df22424d5d39e197ca80f593dbn/a 
2021-11-25n/aexe 146b72ea16e2410dd84ba864e87929bb26c7b11fda5d3c894c00002e64af45bbn/a 
2021-11-25n/aexe 0e57d3d243e6317ceeb840346b8433577bfa6cd36efbbd146268687acd3373a3n/a 
2021-11-22n/aexe f2853986c7ac92ddb00441bb2aa1110b27ba523f49b90f45955575ae75075b87Virustotal results 40.91%RedLineStealer