URLhaus Database

You are currently viewing the URLhaus database entry for http://host-file-host9.com/files/8955_1637574441_9850.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1805938
URL: http://host-file-host9.com/files/8955_1637574441_9850.exe
URL Status:Offline
Host: host-file-host9.com
Date added:2021-11-22 16:51:22 UTC
Last online:2021-11-30 14:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Status unknown
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2021-11-30 14:19:03 UTC to noc{at}baxet[dot]ru)
Takedown time:7 days, 22 hours, 4 minutes Bad (down since 2021-11-30 14:56:40 UTC)
Tags:32 exe RedLineStealer link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-11-28n/aexe ef02085966695c56b8b828f37ec96c4e7d9322b419e0af5199ace8b879b76273n/a 
2021-11-28n/aexe 2e0d477b910afad8960ae0e945252eeecf1374239037bd27b551d296fa6cbbc7n/a 
2021-11-28n/aexe e15d2d20f15a5239e5d7edf47e0f454875afaaf93e119d4214c00e29537586d4n/a 
2021-11-28n/aexe 46020b9fdec192806897751b72bd3badc2a44c9607d6fbb060ea15879c6527een/a 
2021-11-27n/aexe 4c1721148a41454c3a4fa2c3dfd060848d7a203afcbcd07e22a8d1a10a39f9e0n/a 
2021-11-27n/aexe 6cc6783b89e5a255916acec6bdd11cc7d608fc7a118ad2c62b1a12b23bb112afn/a 
2021-11-27n/aexe d4b032ae36c935453acd1ce981549cee3b5b228211371fa95f4dffefd92ad869n/a 
2021-11-27n/aexe 8afb128746f2c7a94a76470cee9d3869028fc569257527d16641d16315b471b1n/a
2021-11-27n/aexe 51ffdb9649dbaf36c2e808304de25bbb0346c5c8710a16b0deabee51c12c107bn/a
2021-11-27n/aexe 4cdf940a386ffbe74ae1f4d3477c30ce5d9f563648ca1520d6e03f81c22b31e4n/a 
2021-11-27n/aexe f792a96d496fa2d6063966f2c3edb0ce7550150e43fb15c4067d9f470df0c8e5n/a 
2021-11-27n/aexe 80c77f84c216d3509581cf51fbe77fc86379fb8d3c3da1dcc5895e2ce912320en/a 
2021-11-27n/aexe 7342b1e9bb8d064938a0cc7835299107eec90a57487e1f53196071c05622e485n/a 
2021-11-27n/aexe 6b632c84c6634bbc56f0b023c4250edcde6492b5cc359e43318828b8dfff3e6dn/a 
2021-11-27n/aexe 9511906aebfed90101a1eec44fffa9423dcbb4998fc8066d5c7ae4345fd69718n/a 
2021-11-27n/aexe e47ca47a4b79c17e46b1fa603384e98c51b6fa9b699442d293c861a3afbf2ed7n/a 
2021-11-27n/aexe b31fe1733e362dba17497ff2fb8848a83774e367786222a18fa9a0928631f6d3n/a 
2021-11-27n/aexe 7149ec00f0123fdc9caae46f0477b8682c959b5a362ee01f32c9cacd995479a9n/a 
2021-11-27n/aexe 18e2bc18dedba1628b760720e3bf431faf316822753e131885cb38cca80cc700n/a 
2021-11-27n/aexe 891b971574f3043e3dae3ab847779fc707391360181b38b52f2662e7a87be75bn/a 
2021-11-27n/aexe 92e39cbfde8fa53e6de715c8373d25fc6e27ae5d296ad1f3889c690a0d2d10f7n/a 
2021-11-26n/aexe b783576367f63a3c889c474fffe7c849df190fa33b68442d825450e9b57254fdn/a 
2021-11-25n/aexe 99fdb8e1cdd4b1a58c309b9445af2094f831933a375a7fff9bfd8915877fd5a2n/a 
2021-11-25n/aexe 0ab2e368bffeaff45b1c46454ed4893ae45f7db5ce0278235036570f8fc308cbn/a 
2021-11-25n/aexe f54b696d17b548c89644d71a0487a08e638ff5401bfdbd738d020d11640fb433n/a 
2021-11-25n/aexe e66c5f26657dc044008484c744b275819e250a73c76387763fba34d42d0ad3acn/a 
2021-11-25n/aexe 91b2574360cc352103ef2d3135471e6028a1b513c0992f3500906b849fa4ad46n/a 
2021-11-22n/aexe 3dc0a065b99149f33fa5cabe36b40d59de52d1e02bec13072d09eeba05d3f526Virustotal results 25.76%RedLineStealer