URLhaus Database

You are currently viewing the URLhaus database entry for http://host-file-host9.com/files/6735_1637688230_500.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1812796
URL: http://host-file-host9.com/files/6735_1637688230_500.exe
URL Status:Offline
Host: host-file-host9.com
Date added:2021-11-24 12:55:05 UTC
Last online:2021-11-30 14:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Status unknown
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2021-11-30 14:19:03 UTC to noc{at}baxet[dot]ru)
Takedown time:6 days, 2 hours, 38 minutes Bad (down since 2021-11-30 15:34:18 UTC)
Tags:32 exe RedLineStealer link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-11-28n/aexe 41a4274a6a46ad93098767e8d081a0df5d636537a11c69333cc3ce1f17ed9a5cn/a 
2021-11-28n/aexe 91f3e7aa84aeeb01c42eabe22816c6d2f40fc6ec1b5b932ec980d56d7e382ca3n/a 
2021-11-27n/aexe b8e3bf80edf18fc9935ad905837edffc92398a3c50ec93853a2f067c63b9669dn/a 
2021-11-27n/aexe a7c4b5864920ac1a990cf72d45cd3e2aa6101d74101d09350b51b28c60a50e10n/a 
2021-11-27n/aexe b90822d36f6dea1dada1b8ecb83ab061d6005b54b1f9c7c67774b06d977e5dd4n/a 
2021-11-27n/aexe fdf2a3b6eec85df88ca1cb8d1ab0d7d35e0b0d8d8d632148d8794d67abee614bn/a 
2021-11-27n/aexe 28fbcb3fd8d645598f1a1a0cb5db453056b5569812c82af5597c939e91bb75e6n/a 
2021-11-26n/aexe 85f5c6865815fdf6f04b54b442809e0653b2b435abd0ccb8b03bb050e8a303dcn/aRedLineStealer
2021-11-25n/aexe e0722c91e9c47f61ef917a735135c1525329e8c6921363eaf48b1796bd28fecbn/a 
2021-11-25n/aexe 03dba6431f9a582e834aa7833a65d33203f295a306a479d41dd6f367d933a466n/a 
2021-11-25n/aexe e5c1869b8b6d5884bf553462b0f10405865b63db2bfa27d584c25f76134c7974n/a 
2021-11-25n/aexe 6bf57f7080b33271a6ad507602cd84e2d067bd6a836ad0c9ddc72110894830c1n/a 
2021-11-24n/aexe 1fb4024a5d9db5517e6c96921d1d32e224981aa3558b8a7bde1e9c2cd07f36dbVirustotal results 27.27%RedLineStealer