URLhaus Database

You are currently viewing the URLhaus database entry for http://ge-ck365.com/10/data64_4.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2286282
URL: http://ge-ck365.com/10/data64_4.exe
URL Status:Offline
Host: ge-ck365.com
Date added:2022-08-31 07:01:08 UTC
Last online:2022-09-27 15:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2022-08-31 07:02:07 UTC to hm-changed{at}vnnic[dot]vn)
Takedown time:27 days, 8 hours, 47 minutes Bad (down since 2022-09-27 15:50:01 UTC)
Tags:exe RedLineStealer link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-09-09n/aexe a7d6d3407eeaee112dce3e300e18ffa32c3e7e0286a1b493be441f1398c23646n/a RedLineStealer
2022-09-05n/aexe 252cc4eaa30480e5b8f23873d36e58b00461db40b8724a6ad0d21fb7d59d87f7n/aRedLineStealer
2022-09-05n/aexe dab84d12cb29fe62653bff6feba4897ad089ff5c4e34424b5681ec1805675963n/a 
2022-09-04n/aexe 1296087bfeed4ab647a6eddac17c29f2f2526e262854fc876d7cd536715388e3n/a 
2022-09-04n/aexe 30c326f71e997020daa35c672f67dccb69495855f9ed0797bfb53218eb4d8051n/a RedLineStealer
2022-09-03n/aexe 0a46613d4ca1c621c5838c41e9cfe559b112b9e1d3b69e2051066e18ff24acb6n/a RedLineStealer
2022-09-02n/aexe 8a5cd9512305bb139a15cf0a2405a870cf028026279f17adcf6c6bda89a1b285n/a RedLineStealer
2022-09-01n/aexe 2a89ff08661759325a7c802911b51ff7ca1ddc7c5194345497182a751d514ed1n/a RedLineStealer
2022-08-31n/aexe 6d824f2299a14b97b0ca56ca7602b8f5b431b9f59b0b5b892483d9c300b6bd46n/a