URLhaus Database

You are currently viewing the URLhaus database entry for http://host-file-host9.com/files/2850_1637431006_5200.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1809826
URL: http://host-file-host9.com/files/2850_1637431006_5200.exe
URL Status:Offline
Host: host-file-host9.com
Date added:2021-11-23 18:00:06 UTC
Last online:2021-11-30 10:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Status unknown
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2021-11-30 07:24:03 UTC to noc{at}baxet[dot]ru)
Takedown time:6 days, 21 hours, 24 minutes Bad (down since 2021-11-30 15:26:00 UTC)
Tags:32 exe RaccoonStealer link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-11-28n/aexe fc751dd8713ec9d304a86bcb5897892f92fdd9584c25306deb1cfc38f89dd877n/a 
2021-11-28n/aexe 6f87eec5d084149c81d86ccab956f6402d782689d00cf5ba260b693b5edb1e76n/a 
2021-11-28n/aexe 99e620f329b7cddab57cebdb0b2f57037138ce54b2f51c06eace05b6770d0df3n/a 
2021-11-27n/aexe 7da34b827a10e9244e5d96e04037642fc8b6f58726344d99b7177fb6da2f2108n/a 
2021-11-27n/aexe 7c335447e3d56dc9bf7e6fc99212800ed08ed40d49035f94bc5fe14f070c8d49n/a 
2021-11-27n/aexe 216cb2054d5b1b63592c76657f1d4ada7b5b395c84fc3be51da5b9e407b82825n/a 
2021-11-26n/aexe 248d5af4e028cadedef29b580ab3a28d5d5d45086fbb99f248f7856761d50454n/aRaccoonStealer
2021-11-25n/aexe 81ef0bb9fc3b17b4774d151058278277e409d0caacf8b9c61a7343519d7fdfa1n/a 
2021-11-25n/aexe ab64e467cfcf7998441ce1a26e63b37edfd100fdc00afcfce85af6a28086e63fn/a 
2021-11-23n/aexe d06e335a2ae5ec650f1272bdb4c780ee859c6ebe54b2d0948b6f9cd8db6b316eVirustotal results 28.36%RaccoonStealer