URLhaus Database

You are currently viewing the URLhaus database entry for http://cusara.xyz/f/all.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2281631
URL: http://cusara.xyz/f/all.exe
URL Status:Offline
Host: cusara.xyz
Date added:2022-08-28 05:04:05 UTC
Last online:2022-08-29 19:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2022-08-28 05:05:06 UTC to abuse{at}mtw[dot]ru)
Takedown time:1 day, 14 hours, 36 minutes Poor (down since 2022-08-29 19:41:58 UTC)
Tags:32 dcrat exe Formbook link RecordBreaker link RedLineStealer link Smoke Loader link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-08-29n/aexe b41275fea84503eb1e56b720327fb2d5eece7287568cc54f84845edc245b5c20n/a RedLineStealer
2022-08-29n/aexe a135de0bc925ca68c6cbd9e69ee8daa49fbb0506b1d0b800fbd23758c79aa42fn/a Smoke Loader
2022-08-29n/aexe da193ad371593619011f60b3d40a7feaf7162a3a948838e054309cafab0c3283n/a Smoke Loader
2022-08-29n/aexe 89c57de1f13b4a2b6139bd722c6c8bfa477885abb1d3e7a5401630573ed52825n/a RecordBreaker
2022-08-29n/aexe bab61d943d02a6f18ba905499487421cee214e3aad2babb3eed0cdedcdbb9103n/a RecordBreaker
2022-08-29n/aexe be6a5a7a03c9d543b771e9564d7093825193479e7b12a6f2d1a1fa5678a5ee98Virustotal results 27.14% Smoke Loader
2022-08-29n/aexe 1950bce8cc25f261b560d4d8f31e3ff70b2164a75b159a46672bf76cbee3388bn/a Smoke Loader
2022-08-29n/aexe f0689272170b7aba434b412632308a2a50a270be432b222ba61cc94c3c9fd78an/a RecordBreaker
2022-08-29n/aexe 2df55c7b27b60884509e881651d932807df8bd3264ed4b32a8485a5499b4f710n/a RecordBreaker
2022-08-29n/aexe aba33c7d68b6f2390b433648069f9a9ed20a402c6964e1e6d0f2b5d881dc134cn/a Smoke Loader
2022-08-29n/aexe 12d9f8130dc4b1fd2ce25a9900ea8d7f519599a64c272ea3e6d6f2337f367dd1n/a Smoke Loader
2022-08-29n/aexe 29c64df5c9f4d80fb262c63ac46b04f4b4dfdcde19fa0b1e2e9f955e25c29416n/a Smoke Loader
2022-08-29n/aexe 4f7ad0e22d4587766d583ec889c0062801ca9edd6ed50b9ad7154fe9e305b858n/aRedLineStealer
2022-08-29n/aexe 9b80c2bd0c5ec2dfe2582f49a7b58332d8a2081032bdf29ff8929c1ba0701c00n/aRecordBreaker
2022-08-29n/aexe cd26588073ff73f8aba7766303e0963c15b2a848e8971fa086f87a6ed355fca1n/a Smoke Loader
2022-08-29n/aexe 5c9b485eebb9a1fb8301d5bc8ea80a1bf18af72ef3b885fdb7ae24c5d3fa9277n/aRecordBreaker
2022-08-29n/aexe 1d4a3cf7719a5214e5dbb705e32ffb0f20af374d74e96b22256f96ce9eede77dn/aRecordBreaker
2022-08-29n/aexe cf63e96adc79ab401b894087eb6117e69735e4d36cc5f2bc5c6abf156a463121n/a RecordBreaker
2022-08-29n/aexe c9be74e0f09e7121dda6dbeef885d161c31c547ace3b662716674d2f3b3be668n/aRecordBreaker
2022-08-29n/aexe 720a3fc2c7b9723b5636253580667a58f3c0bb9650f6bda724f7868f63daa057n/a RecordBreaker
2022-08-29n/aexe f350aca2f9d006666d3db133138e81016910ca7a9fa759e94d99b66a49ec959an/aRecordBreaker
2022-08-29n/aexe 829211e85341e401813b02bb507b55fe9c2cddd752d33bc0cf369501b257756en/aRecordBreaker
2022-08-29n/aexe 6f1155982f74d5b0d8727602e52d1f7eb30626ee21d9a1f3e8c0ce7881ae40a9n/a Smoke Loader
2022-08-29n/aexe b981f3c18ff9b8fd79ff43cddd3490d453d373581e0e261ab71398a59e69b1e2n/a RecordBreaker
2022-08-29n/aexe 93e8d2f461d816df6f97ae2ec41ebfa063d571a54fc69c0ce00aec7b39969722n/a Smoke Loader
2022-08-29n/aexe eb2d7dd26e33a5cc56c9a94252bc9f04eae93e41bbbcd1b23e37fdc07a62fad5n/a Smoke Loader
2022-08-29n/aexe 3bd622b55a64a74a2452fc882cd26f3adef86400b4d4000aed0791682dd43a25n/aRedLineStealer
2022-08-28n/aexe 113b4a475304071ca2045537f2af8ba4c5db14a4ab20b2f97fa0037bbb212fdan/aSmoke Loader
2022-08-28n/aexe 1f83450c7f819cbc0bc0da8a49df801a21a84fb14de988b7891573f3fd2d1903n/a Smoke Loader
2022-08-28n/aexe 1e38e469af2d0d9f33a489f9114180bca53a8e0ca74ab47dfb765591bd95c549n/a RecordBreaker
2022-08-28n/aexe a6620b369dee6c28694126b0082095615115654e5bc3b71f333f4a3fe21f6738n/aRecordBreaker
2022-08-28n/aexe 8a3fbe98382adc07249d50db1aab8377b9587018be3598ef35cfc5d35495519an/aRecordBreaker
2022-08-28n/aexe e591b90146b4483163c89abfb8186c2cb3612419210b995d44da912a0edbb3f5n/aRecordBreaker
2022-08-28n/aexe c6f08559551f3db557a40537c7686831bffc968df3aa6221082fa2479be4a5fan/aRecordBreaker
2022-08-28n/aexe 15b548aafc5ac7f52f93dcb7196e2849b85d1e8c7719dcfa9c7e96f662504997n/a Smoke Loader
2022-08-28n/aexe e6173a0a906d3259d4a9006b61901262705e309a6e5bc1cdfc035e3a78e2f225n/aRedLineStealer
2022-08-28n/aexe eab2a4f88825eae139972e135ec60f49f0953dcedefb4a576b5c1d340d107560n/a Smoke Loader
2022-08-28n/aexe 2693f493149e484c923c585e1d7898da38ee5825f3f042dddf22e59a50e14f3en/a Smoke Loader
2022-08-28n/aexe f8fbc50db8de41fbcf7dcf31883c086b50d0cc74fbbd94979893fc26c9898f76n/aRecordBreaker
2022-08-28n/aexe 0eb97fb695ebe78dde211a7d2e35ab953d56237ec6b962b235b9a5f454d8f102n/a Smoke Loader
2022-08-28n/aexe 2f780fbe426ec668667aaa54a902cfab80f47cc1e3ef39017ef15845279384dbn/aRedLineStealer
2022-08-28n/aexe 1ad8658b455b05bf79c32fd8208f58146257532c4fd13db8f43a190f33d3f0fdn/a Smoke Loader
2022-08-28n/aexe 23927d5c66a669ee4de6bc093d60493340abadd32a289fb251d59c9291c2ebaen/a Smoke Loader
2022-08-28n/aexe b9d28d8a8f354997beb084fd8816c92f7fe9c310ba8d250836d0f8770285e42en/a Smoke Loader
2022-08-28n/aexe d8db36a3dd6410eac0216b0dbc0b045e27058567baafa3f47309516beb5e8641n/aRecordBreaker
2022-08-28n/aexe d0c600e71fa864e6d1f64e66790dcc94539d31795eaa8c46c0c65bce8e7bad59n/a Smoke Loader
2022-08-28n/aexe b5a9eca90210cba99cc89787df2d893b7c0ef29236003bf5f63dc586014c4030n/a Smoke Loader
2022-08-28n/aexe 906f43bc29e5ab1a50d52d4ba6669fecde6a2fbcc782409ca0878f805fb1f817n/a Smoke Loader
2022-08-28n/aexe a2f421679070ff711eb6470fba8001e9fe886a050419f529d7f1956c6647989bn/a Smoke Loader
2022-08-28n/aexe 5d449947c7add30c405dc1210c15026bbd1be1e6888bcaef8cf40318192cae19n/a RedLineStealer
2022-08-28n/aexe bd70d4eb636884a814558adce76844188ac186a283fb8e6aaf9f154ae74f8513n/aDCRat
2022-08-28n/aexe 2368195d636eeaa64af2606c602dab0ae07f06db61ca0e792337063c277f314dVirustotal results 18.31%Smoke Loader
2022-08-28n/aexe 79f68e5ca30b0b726b17f15598f6a1e72b03f9b0b0267b7d7a1171b0881ab418n/aFormbook
2022-08-28n/aexe 46f41c1b023ccaf12655173362f16bd8fe501686191162f4dac75a02fe31f89dVirustotal results 15.49% RedLineStealer
2022-08-28n/aexe df63ebccda1abc8744bbecfa8c8932bfe0d05539a90d0be599a5ed59c9c8ed4cn/aSmoke Loader