URLhaus Database

You are currently viewing the URLhaus database entry for http://coin-coin-coin-2.com/files/4717_1638002863_602.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1823088
URL: http://coin-coin-coin-2.com/files/4717_1638002863_602.exe
URL Status:Offline
Host: coin-coin-coin-2.com
Date added:2021-11-27 09:42:15 UTC
Last online:2021-11-30 15:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2021-11-30 14:19:03 UTC to noc{at}baxet[dot]ru)
Takedown time:3 days, 5 hours, 47 minutes Bad (down since 2021-11-30 15:31:02 UTC)
Tags:32 exe RedLineStealer link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-11-28n/aexe 643e608434161f3f30eeec09060ebe88500c6fb44f47274ba35f59e17a7e5e1an/a 
2021-11-28n/aexe 0cca05c70d706e92da0d19c0d0609794c75976eeace9c9be5b23f08c45bec92dn/a 
2021-11-27n/aexe a5efebe86429bcacceec8624356996db02864b5462542f80c56e95279f97cad9n/a 
2021-11-27n/aexe 50108d20feed7d8d9e8458461881ffb82d1a5f6c54a9385c3b16eefdba4746abn/a RedLineStealer
2021-11-27n/aexe 030398a7d509e542da454a0ad27f99cfa85b54863016e163c3b66ecd394cd8ean/a 
2021-11-27n/aexe 8f1b6b2bb8a1655268d78c0c045046045a728cfe97a6b2922a7e7461afb5098bVirustotal results 41.79%RedLineStealer