URLhaus Database

You are currently viewing the URLhaus database entry for http://host-coin-data-1.com/files/6891_1637951548_9058.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1822766
URL: http://host-coin-data-1.com/files/6891_1637951548_9058.exe
URL Status:Offline
Host: host-coin-data-1.com
Date added:2021-11-27 07:47:19 UTC
Last online:2021-11-30 15:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Status unknown
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2021-11-30 14:19:03 UTC to noc{at}baxet[dot]ru)
Takedown time:3 days, 7 hours, 48 minutes Bad (down since 2021-11-30 15:36:49 UTC)
Tags:32 exe RedLineStealer link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-11-28n/aexe 69d527369b1cf8204b6c3dc5f892f8d35823db882dddb22a424cb950cf324400n/a 
2021-11-28n/aexe 7f5db8fdbe5435c4ba78649397e75e4ee1e663c17fd0a7ac48e8b237d6e4fa7fn/a 
2021-11-28n/aexe 16f9467a1506289af24480d669a6328f156b203dec21a9f76ac2fcf210716ed9n/a 
2021-11-28n/aexe 6a1a5f5035f11f06ae4e36d80b81b48793a02eb5f6d693d32f64612dfe79c462n/a 
2021-11-27n/aexe 1fb6f11a2a732914245f69d56c714e70454b1e3e26ee4adcee731186cf6cc597n/a 
2021-11-27n/aexe 164258c805d8e6e1e0cfdce5ce1a05f295da52e469c6e72e9a5b6b3b8fb22b0bn/a 
2021-11-27n/aexe 73707bc5e090aa738ec6c5a302f444e00d30848c568635986a25353265041cdbn/a 
2021-11-27n/aexe 69c9933aa180f3207fd572183a5e2630288867af8d749d956a855288c9854551n/a 
2021-11-27n/aexe 395a97735cbb580387322886a9debfa2b03ef61d1925c3f66d3c53163c169687Virustotal results 38.24%RedLineStealer