URLhaus Database

You are currently viewing the URLhaus database entry for http://alsyedonline.com/9/data64_4.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2215846
URL: http://alsyedonline.com/9/data64_4.exe
URL Status:Offline
Host: alsyedonline.com
Date added:2022-05-28 19:57:06 UTC
Last online:2022-05-31 10:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2022-05-28 19:58:06 UTC to abuse{at}namecheaphosting[dot]com)
Takedown time:2 days, 14 hours, 44 minutes Poor (down since 2022-05-31 10:42:44 UTC)
Tags:32 exe RecordBreaker link RedLineStealer link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-05-31n/aexe bd8c1068561d366831e5712c2d58aecb21e2dbc2ae7c76102da6b00ea15e259eVirustotal results 50.72% RecordBreaker
2022-05-31n/aexe 68047553766f4d9d511ea3702811d2dfd5092c4b31961bb54572dd741a0087b8n/a 
2022-05-31n/aexe 99b76c1025bfebd9927a4b3598bda95bce7ba809af81f7114a62ae584b05628fn/a 
2022-05-31n/aexe 56897292592501f5d0681b719bdf14c91d3674bb3c10c8e725503a5f09aa25can/a 
2022-05-31n/aexe 62d42bf256a68494faf48755cd5aa8808646a81b3e5b67d29bebb4c05618dd5fn/a 
2022-05-31n/aexe 492bcd3cbe70e648abf749d1fc8610c0cd4e368755c4c8ee331382541a8a5a72n/a 
2022-05-30n/aexe a86abee1b4ef56b311607d1aea73942caabb004b94741d86e0aff559d1292385n/a 
2022-05-28n/aexe 324e86b2a54e3fbb741ef30a35d7b50bff1ef4c0324be046670a2df33cbac3ffVirustotal results 48.39%RedLineStealer