URLhaus Database

You are currently viewing the URLhaus database entry for http://file-coin-data-5.com/files/7120_1638921818_1737.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1866780
URL: http://file-coin-data-5.com/files/7120_1638921818_1737.exe
URL Status:Offline
Host: file-coin-data-5.com
Date added:2021-12-08 20:42:28 UTC
Last online:2021-12-09 14:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2021-12-09 13:45:07 UTC to abuse{at}serverion[dot]com)
Takedown time:19 hours, 9 minutes Good (down since 2021-12-09 15:53:57 UTC)
Tags:32 exe RaccoonStealer link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-12-09n/aexe 2a2a6675f6c48793189e050ae04230e0abcf31cc32f3562bca411e26a4a56d5cn/a 
2021-12-09n/aexe d423c7f5e8c45d00ee2873eb014d5eb49942c1521afacb4e6ed2b815f310e7efn/a
2021-12-09n/aexe 0df4056655a194b033116f9e1cbfc1db1c6694a97ab4bdbe96be210411c7e1cfn/a RaccoonStealer
2021-12-09n/aexe 30b99e5b3414abceab479738165cf65eea6b44adcb6326c275c8c9354e54ca9an/a RaccoonStealer
2021-12-09n/aexe 53a244e5459d489ad0c93fe1f3827dd60e6fbaf965cf5158aed59256b086dbc9n/a RaccoonStealer
2021-12-09n/aexe 6d9916e90a8c6f7feb58263995db50977cf3d6df4973e6147c6f213f9db3e120n/a RaccoonStealer
2021-12-09n/aexe 52b40d85f87a318f201286546cb59941b49ab7693995f4fd85d121619dc685ban/a 
2021-12-08n/aexe 0bc1a8cdf1c963118f4d1d31c14175e6aad0bfa2fb38d431d8578602f39c323bVirustotal results 40.62%RaccoonStealer