URLhaus Database

You are currently viewing the URLhaus database entry for http://guseyn.info/MediaPlayer.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2033769
URL: http://guseyn.info/MediaPlayer.exe
URL Status:Offline
Host: guseyn.info
Date added:2022-02-07 08:59:06 UTC
Last online:2022-02-08 11:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: benkow_
Abuse complaint sent (?): Yes (2022-02-07 09:02:06 UTC to support{at}majordomo[dot]ru)
Takedown time:1 day, 2 hours, 53 minutes Poor (down since 2022-02-08 11:55:19 UTC)
Tags:ArkeiStealer link exe

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-02-08n/aexe ec4524dcf5814a8446d9967b207761234760d189272dae66a9a0c184a6bcbc79n/aArkeiStealer
2022-02-08n/aexe ec6260d7eca9b879dd1ad761ddbfaa5c22fd6448994bfe732d829d96fab20488n/a ArkeiStealer
2022-02-08n/aexe dc84dca64be61060a612fff8dc04ea858c686f5bf25c0096799a960a5b1d594dn/a ArkeiStealer
2022-02-08n/aexe 6ffc4081d75db7022d63c946cbf90ef01a4d3e5b729353f829f74b7df2674a80n/a ArkeiStealer
2022-02-08n/aexe bf5fdf5b58431c35377632f3a12b5d16a39ecc21148c217aab95f6843db3e87fn/a ArkeiStealer
2022-02-08n/aexe f0be00a5b6f642538e1ef0427ea0e4e976cfd5fe9df2039bde20b0e36cc0e510n/a ArkeiStealer
2022-02-08n/aexe d5812321d4d8af850b5621a084eb8f58c31c8d10f68a12a0ebd00d36b8cdd1cdn/a ArkeiStealer
2022-02-08n/aexe 69388d7c9c4757ad5cdc6ba6f37d589c342002b00f1a57dc4f6b9f3a5ac76c84n/a ArkeiStealer
2022-02-07n/aexe e761c2b4afd3dda504846d80e0f6e77f1ed8f8f745a5811b8ebe971ad638dcdbn/a ArkeiStealer
2022-02-07n/aexe 8b9715f6294676d27dfcd5f1a97c0c5e18bb5ed268b71dfefcb7936c62f517e9n/a ArkeiStealer
2022-02-07n/aexe 3dc5473347d3a05ebf2d0dd48cd1dcfd20fd5cd0b7aa44afbb8af34867408ce4n/a ArkeiStealer
2022-02-07n/aexe 492600dc41267d57007b9fdc127d722ec20fdd7ce9abbf4aa7a65a65c848a137n/a ArkeiStealer
2022-02-07n/aexe 650019380700d0b23b55df2ebbadbde8916ed07c10bd9427f5942c6c563d37den/aArkeiStealer
2022-02-07n/aexe 9198efc8bc2fb5067121503b64974bf0962d37526e19ed6dab2f5ed138a4b51an/a ArkeiStealer
2022-02-07n/aexe b86da55b00429d3a757c64bc0489af5d2641bfa7aab9910eddec173af09c55b4n/aArkeiStealer
2022-02-07n/aexe c6a6de57fac09a592066094a97466b1d6eae4fc0309b4c7e0d0ccea9136a9141n/a ArkeiStealer
2022-02-07n/aexe d65619273ba600d4f02256db823415e358dbef3ee05d66e23da00fad8361f1c1Virustotal results 41.18% ArkeiStealer
2022-02-07n/aexe 4fb9f08b1053d49ff58f30aa0016beefcd85041435ba9bb4b0402d99feb6df5en/aArkeiStealer