URLhaus Database

You are currently viewing the URLhaus database entry for http://malanche.com/10/data64_5.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2263253
URL: http://malanche.com/10/data64_5.exe
URL Status:Offline
Host: malanche.com
Date added:2022-07-31 14:50:07 UTC
Last online:2022-08-02 22:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: zbetcheckin
Abuse complaint sent (?):mail Yes (Ticket DCU004037906 created on 2022-07-31 14:51:09 UTC)
Takedown time:2 days, 7 hours, 44 minutes Poor (down since 2022-08-02 22:35:55 UTC)
Tags:32 exe

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-08-02n/aexe 16e0399d622d278200d8e51562e5964a8dd83b75038ff61a7e3b5c82d673025cn/a 
2022-08-01n/aexe 63903853198bf3c13cfd84cec253e2a745ada0d3cf10a00b777f465afabe4ed8n/a 
2022-07-31n/aexe 720b95cb817a2585609607ce6823e37f42ec5233863ed5c4072bc38d8357d7b7Virustotal results 67.61%