URLhaus Database

You are currently viewing the URLhaus database entry for http://cusara.xyz/f/777444777.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2283050
URL: http://cusara.xyz/f/777444777.exe
URL Status:Offline
Host: cusara.xyz
Date added:2022-08-29 05:51:06 UTC
Last online:2022-08-29 19:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2022-08-29 05:52:06 UTC to abuse{at}mtw[dot]ru)
Takedown time:13 hours, 54 minutes Good (down since 2022-08-29 19:46:15 UTC)
Tags:exe opendir RedLineStealer link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-08-29n/aexe fb24ac1bff79ea469afa3d7d752df8f7dcc619e952cb36049b07188202f6d9fcn/a RedLineStealer
2022-08-29n/aexe b945db496ec86102c5a39ffe5bdc6b20399e0ed1199a8fd56c602b77d74f10e6n/a RedLineStealer
2022-08-29n/aexe 3147238548a441dcd7ced1614a0160d4b14cfa79e83ae032fc9a6231c2b1710en/a RedLineStealer
2022-08-29n/aexe 6538de7c8098faf68e31ce9b5d419be254cd173f83ad2605806d1f0fbfd9bff2n/a RedLineStealer
2022-08-29n/aexe 54df69c4835328244608344734926c2e908df4ee9d3f1dcde6cc8676db4c6ffan/a RedLineStealer
2022-08-29n/aexe 1fdef3d309d4a74043fdef80046a453d5d06621dbf264b8f80fc56f4fcee9454Virustotal results 31.43% RedLineStealer
2022-08-29n/aexe 5682153698b28bd192c27fb72ce3ba3bc338890a16e8b222cee6330ef01c1b32n/a RedLineStealer
2022-08-29n/aexe 403df447df0974ad9bc5de643d43eb62eabb9577cece3a0c9296e83511d74ab9n/a RedLineStealer
2022-08-29n/aexe cee5013dd2dc97250559fe2d7e6ca98be293aba032a2eecec88b616148848aa2n/a RedLineStealer
2022-08-29n/aexe ea1bd1cd54fd7e2cf71de9de93d7b34e65912a02baa10be6b5ef18da45dcb6e6n/a RedLineStealer
2022-08-29n/aexe 9af22379319811749383f97a79201d7e5202b9998cdf20a609fe2355e0dfcecbn/a RedLineStealer
2022-08-29n/aexe af5b6711671de48c67c9bac98f18fcec484c21e14139157df54d4051cb4406a3n/a RedLineStealer
2022-08-29n/aexe f67f9c1934aa6671d02cf33224c3de3555e7a25d725b4210da1d5f6814537c87n/a RedLineStealer
2022-08-29n/aexe 215087805c45ef04ff988ef611130b4626944c99782bfcd61564a251b2b8da66n/aRedLineStealer
2022-08-29n/aexe 3c039e509cc696e071a50a4ee131472ad60944bcd4dd05c49163849b155b41ban/aRedLineStealer
2022-08-29n/aexe a4bf9eb64b4c339db4ef970441eef5ea8722dff1f78de7d148b07deb11461d53n/aRedLineStealer
2022-08-29n/aexe af7f262c56eef57ef58a63bca6b36bc37d8b3458af4a33f8266065377f9c03d9n/aRedLineStealer
2022-08-29n/aexe ebe6b780446cc44e567ce697c61820af020d6b10520b99602c335e1dafc64dd3n/aRedLineStealer
2022-08-29n/aexe 1d18b3c7e5845a5c5cf519471a7b6ee354f848764b7c64b6f3ec59d0e3492e9bn/aRedLineStealer
2022-08-29n/aexe 34267c8e037f9431fcfb1b3c7e0d9389cc7b224966da66c1b83bc951dad7f4e8n/aRedLineStealer