URLhaus Database

You are currently viewing the URLhaus database entry for http://host-coin-data-1.com/files/7250_1637871386_4739.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1817708
URL: http://host-coin-data-1.com/files/7250_1637871386_4739.exe
URL Status:Offline
Host: host-coin-data-1.com
Date added:2021-11-25 21:07:09 UTC
Last online:2021-11-30 14:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Status unknown
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2021-11-30 14:06:05 UTC to noc{at}baxet[dot]ru)
Takedown time:4 days, 18 hours, 11 minutes Bad (down since 2021-11-30 15:19:22 UTC)
Tags:RedLineStealer link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-11-28n/aexe 2c84f8a8fe18babc9b5e5c29a2dd1cd61306d802968ddc7a4987f7765bdd4bc5n/a 
2021-11-28n/aexe da8d9cabf134baa741712ae5e5313d79c018174a6cd6f18a0437e8d5784c5c08n/a 
2021-11-27n/aexe 14ee3ecc04d075dcd4a8b96c4cf80407d7f9504ff246cfefb3c1ee79ceb23ea8n/a 
2021-11-27n/aexe 3d765a67dcb75d35189f631a30f296557fbacef700f10bd31230906d754aa3c4n/a 
2021-11-27n/aexe 2ac67e7a0a42dbe6343660c7d52b643eb3058785c88672f41a978cf0bfa2cde1n/a 
2021-11-26n/aexe 7d292429b6ca0eae3cf542f78a297c264c547abbc9d52cc1215ddbec2ce95ab6n/a 
2021-11-25n/aexe b664a200128fa4e02e3bd4c33d4776c59697a4f9ea2af545a055afd9db764cb2Virustotal results 28.36%RedLineStealer