URLhaus Database

You are currently viewing the URLhaus database entry for http://fujhi.com/f/3.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2280745
URL: http://fujhi.com/f/3.exe
URL Status:Offline
Host: fujhi.com
Date added:2022-08-27 12:47:06 UTC
Last online:2022-08-28 02:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2022-08-27 13:30:08 UTC to abuse{at}mtw[dot]ru)
Takedown time:18 hours, 37 minutes Good (down since 2022-08-28 07:25:29 UTC)
Tags:exe opendir RedLineStealer link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-08-28n/aexe 8c0d75515b029d3fa6acc1bbfbb7a510dc3d132c2fdedb3b35bb8993925b8f8an/a RedLineStealer
2022-08-28n/aexe d03482ba23c4dd6670c3fe385b069515a9e3e348f344ed554b8dad300e931039n/a RedLineStealer
2022-08-28n/aexe b5b4af0721c8cf2dee5516151edaa952180f478073479aa280c002981693429an/a RedLineStealer
2022-08-28n/aexe 92be9de09181b2355691de8d289ee9e7a9fc968ac0bf4f53ab603815e4a29c76n/a RedLineStealer
2022-08-28n/aexe 0d928c4c430a7df9936019cb8c06c935671d1c6bf4c2ee93921f8290c3a7f295n/a RedLineStealer
2022-08-28n/aexe 92c88fe8f5c027e92dfec78c78b703a2c6c2690de6feb0f74e14f16a68d2e128n/aRedLineStealer
2022-08-28n/aexe bc978ff13c26553bbf16bf41422824f07ec7149fe39481ebcf82bb70e17bc5bdn/a RedLineStealer
2022-08-28n/aexe e4cde7aa924bb655a320ed7972e1d7c152c14a57f9c4d0f22558f5369e884c8en/a RedLineStealer
2022-08-28n/aexe e4f3ad36b7d5374143eade1ce265cb289b2f0534602498c6ce54d9cf3a89bc47n/aRedLineStealer
2022-08-27n/aexe 323d35ef7f760d53b760439858eaecd0298c4d7dd7d676ffa26adca679258e82n/a RedLineStealer
2022-08-27n/aexe 48a2f1a28892e2d7067ffa707d004263656a8f72c9ebe99af94962bd39359574n/a RedLineStealer
2022-08-27n/aexe 66ee0319a5ff4f7e993f9227a241da58712a70ed57becd3ce6d49e67709ef0abn/a RedLineStealer
2022-08-27n/aexe a47e604cbea23bc41a0f0f91637c6387dc231716f466a52283d38a414400f308n/a RedLineStealer
2022-08-27n/aexe 28b78da81b0142153c4b27a391e770c88f73de204380610a57b225d27a7fa16an/a RedLineStealer
2022-08-27n/aexe 7533b17f21a5702dfa06d1827a587aa0248fa514285344e5388c86ea3f3e74c2Virustotal results 16.90% RedLineStealer
2022-08-27n/aexe 5a65fc70e98e341b7a4a894cc97e966030b277de1ff28ad32e83f3371257ce2dn/a RedLineStealer
2022-08-27n/aexe aa012c0b185382ef931ddeda528e68f44be6e7eea3885e5c7e2b3d6ef772b984n/a RedLineStealer
2022-08-27n/aexe 5406e094902d20aa04206737ceb65a0b2298664cbbd0dc064ac8f108f4c1ee25n/a RedLineStealer
2022-08-27n/aexe f5fabd2c1c591e1e0ecac170e9ed52e9293159392f81f34be8cb684f9195175en/a RedLineStealer
2022-08-27n/aexe 37e096e8e64ea09b55a243a1dca7555c55ab70b97f076a6d0fda3126cd32d891n/a RedLineStealer
2022-08-27n/aexe 9fc405027f50ccc5038ae43beb59e2babebb2de08f3e50cd80d7153aa57b4653n/a RedLineStealer
2022-08-27n/aexe 87fb3d4ad7b05388e4b9b3c7e0e8492e299ea3c9564eb7bd70ce3eb827665c34n/a RedLineStealer
2022-08-27n/aexe 402fe4dccedeeb7b9108ada3892c4cfad7877de5ed9fe83c4de55c55d7070d0an/aRedLineStealer
2022-08-27n/aexe cc8b8ec25a30bb1e1a25418e1418cde2e1e67091bf033b1fcfae816f428b5cf4n/aRedLineStealer
2022-08-27n/aexe f8567e86ebf684acca0acef35f18776818f69a0e7264f16c483ee8e19708e9f6Virustotal results 22.54%RedLineStealer
2022-08-27n/aexe 77baf0e340015039428e0871923e581257949403a2e53225d740acfbf2ef5bc2n/aRedLineStealer
2022-08-27n/aexe 2dabc4f6614c2f1d1f7604259c7650e69e1ccf711c03f56b796f8c997bd3e8cen/aRedLineStealer
2022-08-27n/aexe 4ca9b81b073bc1059f874af00324bec8219cf589d7bbfda3113d890f0976a04an/a RedLineStealer