URLhaus Database

You are currently viewing the URLhaus database entry for http://zsdstat14tp.world/crot777amx.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:237835
URL: http://zsdstat14tp.world/crot777amx.exe
URL Status:Offline
Host: zsdstat14tp.world
Date added:2019-10-05 05:59:20 UTC
Last online:2019-10-05 17:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: JayTHL
Abuse complaint sent (?): Yes (2019-10-05 06:00:03 UTC to report{at}abuse[dot]bz)
Takedown time:11 hours, 37 minutes Good (down since 2019-10-05 17:37:16 UTC)
Tags:QuasarRAT link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-10-05n/aexe 40377351580346622b9d5cab4e3b78fb523c6e6c31c5407fff62bdb66bfaee17n/a QuasarRAT
2019-10-05n/aexe cf77392dca0c71ce4d28f55dad3da2a4c72a6af20cb8a5b01d3de7c0f3947637n/a QuasarRAT
2019-10-05n/aexe 09d1b142f78a4c29688a8d51113e9083aa4f93472caea6ee2f6f523a12c4ce5bn/a QuasarRAT
2019-10-05n/aexe 494a88cd4ac4a973e7814b1fc77f132d97d305f228d9049ffbdd25f293af83efn/a QuasarRAT
2019-10-05n/aexe a95d850eebb01693dd276791170f97e13cf75fd4eefc07315ad35f2151defdcdn/a QuasarRAT
2019-10-05n/aexe c490e3fd77dc3a435e2c3321a21f9602042881f7f131c86e694fa9a21f3fadd0n/a 
2019-10-05n/aexe 1f93eca321004bcf2aa33833b1cc4713a5d1ef64c4c027d5d25446b220b9ee26n/a QuasarRAT
2019-10-05n/aexe 7b1719888b203916897d72d5180eda1b2d1611f9fa2b0713cda89517f691ce1dn/a QuasarRAT