URLhaus Database

You are currently viewing the URLhaus database entry for http://closehub.ru/update.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2207462
URL: http://closehub.ru/update.exe
URL Status:Offline
Host: closehub.ru
Date added:2022-05-23 06:06:04 UTC
Last online:2022-06-09 22:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2022-06-02 01:16:08 UTC to abuse{at}cloudflare[dot]com)
Takedown time:4 months, 19 days, 13 hours, 21 minutes Bad (down since 2022-10-09 19:28:40 UTC)
Tags:exe RedLineStealer link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-07-05n/aexe 0605d280d1fc970793dedb4c5d6bf22d7c152a8fa8a29e9889b06227447b7334n/a RedLineStealer
2022-06-28n/aexe 5663ec75d697f8628c0edf823ca7d9808c4ff9191a348205fb6974f9fbced23bn/a 
2022-06-24n/aexe a0d93a131d0820952c150516d431c494dde963955c038f66559bf3050f0edd10n/a 
2022-06-16n/aexe e79fb2b522223a1f76168f3c08f76a44de29e3988f9332c30d4390fe89dcb89an/a RedLineStealer
2022-06-13n/aexe 2131fe09c971261db3ef03937de3ebbe7bfadb00cfafcf90b10eddab7619cd91n/a RedLineStealer
2022-06-10n/aexe d473acef2746624cf8b8baf4e4ab3cec73b48e692071a00d9bbe2dbcdca6c8b3n/a 
2022-06-08n/aexe a6cb2b40af946eaaf5796b948208795f6ab930332d852bbe5b7218e421d7b177n/a RedLineStealer
2022-06-08n/aexe 5a736ed05548882220ccf32e4341ccd96bd9c72386e394edd679e1c65847aeb2n/a 
2022-06-08n/aexe fddfc95f833718deaf0f8bad0bd92b3ccd855c08e2fa90b3471bbbc7350c21c7n/a 
2022-06-05n/aexe 3ba93df10349c02a1b863715b69879a6e3e9a527aebb0af8fcc0c57c1e8f6f70n/a 
2022-06-02n/aexe 82c321267622470580a27c5f6aafe5b7749a0118da05c668ad725d0b8a425ff1n/a RedLineStealer
2022-05-23n/aexe 248b9f78cabc04c5eff4f7cc9075eb6abb6cfce86585f5149fa55840fbe36342Virustotal results 33.82%RedLineStealer