URLhaus Database

You are currently viewing the URLhaus database entry for http://host-coin-data-1.com/files/4773_1637749332_1398.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1814427
URL: http://host-coin-data-1.com/files/4773_1637749332_1398.exe
URL Status:Offline
Host: host-coin-data-1.com
Date added:2021-11-24 23:38:11 UTC
Last online:2021-11-30 15:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2021-11-30 14:19:03 UTC to noc{at}baxet[dot]ru)
Takedown time:5 days, 15 hours, 36 minutes Bad (down since 2021-11-30 15:15:40 UTC)
Tags:32 exe RedLineStealer link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-11-28n/aexe ef2087405c4cab1fac768f76997c0ed300141e2028dac84d2d27d0722abf278cn/a 
2021-11-27n/aexe 821550211ee089efab3e948c04ad6ff517490e54b30fe6c913464bf11d5eb559n/a 
2021-11-27n/aexe b9454036c05af38afcc3b3abbd9d53ca5303154aac4b449385f72235daf8b539n/a 
2021-11-27n/aexe c3cd72e29daa2ddf51c1ecc3edd48aae650996b5c70d8e6e5a5be6157f02ca2fn/a 
2021-11-26n/aexe 943aa130a3b2ac74ec3b2a1de295d501749b96bc1e7e1ca065102b773a395b2bn/a 
2021-11-26n/aexe 3bd0fbdd742f93879b93b4b262ee40616e198443c3cd338296fe390972a448c0n/a 
2021-11-25n/aexe 03dba6431f9a582e834aa7833a65d33203f295a306a479d41dd6f367d933a466n/a 
2021-11-25n/aexe eae0935e94eef70adb5eae40e18cca895baaa9d6f54111ede35912d22b6e0cbcn/a 
2021-11-25n/aexe 6bf57f7080b33271a6ad507602cd84e2d067bd6a836ad0c9ddc72110894830c1n/a 
2021-11-24n/aexe 1fb4024a5d9db5517e6c96921d1d32e224981aa3558b8a7bde1e9c2cd07f36dbVirustotal results 27.27%RedLineStealer