URLhaus Database

You are currently viewing the URLhaus database entry for http://host-file-host9.com/files/3079_1637676967_8671.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1814426
URL: http://host-file-host9.com/files/3079_1637676967_8671.exe
URL Status:Offline
Host: host-file-host9.com
Date added:2021-11-24 23:38:11 UTC
Last online:2021-11-30 15:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Status unknown
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2021-11-30 14:19:03 UTC to noc{at}baxet[dot]ru)
Takedown time:5 days, 15 hours, 55 minutes Bad (down since 2021-11-30 15:34:48 UTC)
Tags:32 exe RedLineStealer link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-11-28n/aexe b73821c852ff2884cda16e4c2fe538a9a0bc7464306c29a4649ea9d1bb76a497n/a 
2021-11-28n/aexe a2e5c665377b953ff6f164c9f76d0738918895dc0f781e4d67ac0648ef0c3e1dn/a 
2021-11-28n/aexe a5315349a5c055d203ccc246d3427f52ef026814e44f11a4e3602f561db86e67n/a 
2021-11-28n/aexe b5b76bb1d637bb3a0448325ada109042dbc18b3976941c290085c92d39ad6100n/a 
2021-11-28n/aexe bef546a88e778639d5378cbfc3fffa8a970fbffc19b36a26fdb4da3a73c0440cn/a 
2021-11-27n/aexe 37341dd10fa7cf351387f9f5e12b51a3ae3d178a49c175a7b52b749afd01eb76n/a 
2021-11-25n/aexe db79e0c2243229f8ba6a52deede597287b93801aa182af42f278542f31fb3324n/aRedLineStealer
2021-11-25n/aexe bef655776d2afc0344ca8039054cf2a54ce958525ac98ab798a508b08424e216n/a 
2021-11-25n/aexe 45e62989a611d5b6b01cf5b54ce357a8f328306f288a63a9de54d1e16f290d3dn/a 
2021-11-25n/aexe b7ee813e982fe4dec4293c218db309495d2d550741b9c70169c6d2a0405a5f81n/a RedLineStealer
2021-11-25n/aexe 7159262d7640abddf7fdf6eec62ea98a4dfad9ec2559759436f0711adbbbfe28n/a 
2021-11-25n/aexe 403cc6be9f1c7ebea73611b13769c690aabab5abf42cbb0cf678cfea25c00866n/a 
2021-11-24n/aexe 353e8efbfa1586ae7dc457b6840459fb64ec0df10387154d18e7adbc8a3133f5Virustotal results 48.53%RedLineStealer