URLhaus Database

You are currently viewing the URLhaus database entry for https://gencayemlak.com/chaska.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2400271
URL: https://gencayemlak.com/chaska.exe
URL Status:Offline
Host: gencayemlak.com
Date added:2022-11-04 06:25:14 UTC
Last online:2022-11-17 14:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: jstrosch
Abuse complaint sent (?): Yes (2022-11-04 06:26:26 UTC to abuse{at}hostlab[dot]com)
Takedown time:13 days, 7 hours, 39 minutes Bad (down since 2022-11-17 14:05:49 UTC)
Tags:exe RedLineStealer link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-11-08n/aexe 014ca070305b8cde3b9c1c9e692115e2297d68c00d285b9186b7fc925ce49ea1n/a RedLineStealer
2022-11-08n/aexe 8090417f74236c896a35c9e40e331c72729c2318b1db9dfcc4a74471c6e398e6n/a RedLineStealer
2022-11-08n/aexe bd5cef5905b66788db3baadee61a69bd239c39ff8677059340f80407430328a8n/a RedLineStealer
2022-11-08n/aexe fd1348c1a422d212a1a2e6f1dfaab5e6537917afb00f2691ecc54059ff2ba87fn/a RedLineStealer
2022-11-07n/aexe 05785d994c5acf135a0444971a8deb366c4faa0ed63f2e59918204ee0ed4582fn/a RedLineStealer
2022-11-07n/aexe 2ef3bca46f417484e65e28bd3fe486bb462a2bd38222490dc84e3e6dad67801bn/a RedLineStealer
2022-11-07n/aexe 48feac614f9d98a23fd83c4bfef8dc1ec5b0888e09a88e0f700bfdf34e9fd119n/a RedLineStealer
2022-11-07n/aexe a65d4fad30c8db19b08a30dad3bdb8f48907cde3a0516dc9264a41b43ae6c883n/a RedLineStealer
2022-11-07n/aexe f281670cb6d2811664c47dc39cec252b9f8b5de63d7844db308df1a12dcf846bn/a RedLineStealer
2022-11-07n/aexe fd040cca7202e2b019290b65cf75bef32b55df3b6e979d384a6c20dc33ca41b6n/a RedLineStealer
2022-11-06n/aexe b24c24841c43d8eb77f71d9902973f5047f11b4e73781f866d103441717d4222n/a RedLineStealer
2022-11-06n/aexe 7772483da80c14d62008b1f08517d7a61dbf477b895e7cb7c54edaf98b77a862Virustotal results 38.89% RedLineStealer
2022-11-06n/aexe fc2e33ac4fdd9a1eb4ede20cfe3b67c39af8d65a6031cd90786d1081345c2005n/a RedLineStealer
2022-11-06n/aexe 67380732347b7296e8e79d81f7652149b3e2dec92934d37e3f71b287e9400430n/a RedLineStealer
2022-11-06n/aexe b0b6f2313eea3498febe1880c08a237d83899371fe11a3ff5252d2b9ecfc5a62n/a RedLineStealer
2022-11-06n/aexe 26204ca6dd796db6798008b9fb76c2f952cb377bd16cce8ed3f213f3e8c8ed83n/a RedLineStealer
2022-11-05n/aexe 8fa4a6c523ea164810039b279197b46e473f997f25f4e9cc936b39ee79df99adn/a RedLineStealer
2022-11-05n/aexe 88d607dfee4e3ebaef320c5fa75f640fd366c78b51d84a40a9aad6c9466b7459Virustotal results 27.78% RedLineStealer
2022-11-05n/aexe 2361d14c9fea534888a2d00a7e9196592e110d073bb410a0ad743ed9959322b5n/a RedLineStealer
2022-11-05n/aexe 38fc27d8e17a126255373b17184a9e7c324c53c391ec15f3e6ced1249537141en/a RedLineStealer
2022-11-05n/aexe d18a0ad355e104d7a2fce48feaff85d593df91ac4ba064dede0b0d2f253482f7n/a RedLineStealer
2022-11-05n/aexe b833657478f8774bcf1b2eb9ff58962f598a34996394da61199f0ca89458906en/a RedLineStealer
2022-11-04n/aexe a491c96adb40bd1bdeddb5ded907ff1ddd22bc255107e4166386109a8264f760n/a RedLineStealer
2022-11-04n/aexe af16198302a36beded55beb0b9b5f78711cd86e9934ecce64265073c396e400en/aRedLineStealer
2022-11-04n/aexe 46d20faa23b06de3f06185f97a54726e76b6fca5f06d3d905a7c6ba3a5c9efe2n/a RedLineStealer
2022-11-04n/aexe 6301c4034ecf409ba67de343dea1e6d95014561d8285393daa7b730cfbce5651n/aRedLineStealer
2022-11-04n/aexe ff28f2cb4c45ad87829c0bdc731d524e90af663ea569fc9e71254d2873dbaaefn/aRedLineStealer