URLhaus Database

You are currently viewing the URLhaus database entry for https://kondio-safari.com/1.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2485089
URL: https://kondio-safari.com/1.exe
URL Status:Offline
Host: kondio-safari.com
Date added:2022-12-24 12:41:16 UTC
Last online:2022-12-28 12:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: andretavare5
Abuse complaint sent (?): Yes (2022-12-24 12:42:07 UTC to abuse{at}lws[dot]fr)
Takedown time:3 days, 23 hours, 26 minutes Bad (down since 2022-12-28 12:08:51 UTC)
Tags:drop-by-malware PrivateLoader RedLineStealer link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-12-27n/aexe 73ae1e45b782339a43b61fa2f3b4498416d3a4c9f34bf9d0836d948308152c5cn/aRedLineStealer
2022-12-27n/aexe 4c014874561dad1b488c849ea3e353c35778be28f549a0878046b6872bf82479n/a RedLineStealer
2022-12-27n/aexe 2269581fad3ab492094c373afcba2bf31a51ba8bf64b2e16ce737f38b6896b22n/aRedLineStealer
2022-12-27n/aexe a9e668c53017cf3123c7b9481e44acbf6dadbcf8e601bbef01edd5c121e729edn/a RedLineStealer
2022-12-27n/aexe f6573e51b81f01a24ed8c1f55841c2ba00226ab019c15cf72963ed3b1a818888n/a RedLineStealer
2022-12-27n/aexe 72bb26f76b0c10f3b96a7ed2f25aeb249f674b25278838e1cc4a550f92afdd29n/a RedLineStealer
2022-12-27n/aexe 45c178f0bcaa94bc679068f7d541cf76cefc11be54da5967146db90a13479c6dn/a RedLineStealer
2022-12-26n/aexe ce884913a74e4bb1ed544ff05f3a9a079e1b93ec6dd7bb6388efe159a5aae526n/a RedLineStealer
2022-12-26n/aexe 44e7c2793ea4b2426b4732961136a7ed6a7d23cf62693eca744748d35ab558b2n/aRedLineStealer
2022-12-26n/aexe fae864eaf3c49afd324d63c4a5304747e4f6d26cd052e65b4dbcc4e41de878b3n/a RedLineStealer
2022-12-26n/aexe 640faed2af60ea712a240ced70f2914f4ac76237843dbf184aa44c0035729c78n/a RedLineStealer
2022-12-26n/aexe 3e3f01ebdd5fd734ffe4bf406259c4a55804378a29cf5b1627c62d4e3c5b5056n/a RedLineStealer
2022-12-26n/aexe 46719bbc824abd74366125084686d152428f56d3dd7713e27bd9d4e964b648een/a RedLineStealer
2022-12-26n/aexe e51ce93c0884f1ea4b573db51ed4219c92cc1a54e24dd6f0d56abdc72f93db7bn/a RedLineStealer
2022-12-26n/aexe 5c333081127ce3b6d1d72e5c803519047042768114f5ecdb65d1d3b7440dbe62n/a RedLineStealer
2022-12-25n/aexe 05afaf92b30f6625aa115c9e9aa70fb283860d7676205582867f671ecf326353n/a RedLineStealer
2022-12-25n/aexe 863dd498fe14fa0257b4a2c370d69f957e04c1fe4c4677dbaa5b44d56508c15en/a RedLineStealer
2022-12-25n/aexe 313a2a4bb23437009eb1fdf89d207adf055f1ed5ee170c5b8261b5ca06d9817fn/a RedLineStealer
2022-12-25n/aexe 46666096ece6d7c0d0cd3e11eb60291607362dfc6a8ed65a843c9ee0a3091177n/a RedLineStealer
2022-12-25n/aexe 0c5c3d6dc72a81c0a4e7e26b126761fbaecbcf609f92f9c98936e04a29b5a5a2n/a RedLineStealer
2022-12-25n/aexe 321b7072a0ea33c36933b98b6523eaf4dead69a8e90dc032f8a4b10cfb835b1en/aRedLineStealer
2022-12-25n/aexe 728d0c12a4883b351dab40bfa2881a0dc967f9ff598384050da6c43d0d9bb476n/aRedLineStealer
2022-12-25n/aexe 9a48ec1ff7995f724b479d97b0fd21fc0ee9c6c1598a39192ec677b648087602n/aRedLineStealer
2022-12-24n/aexe 7f11a927ac9742f5b53973e5a198044f52c11af540c028ba81bf1b93ecdff4f0n/aRedLineStealer
2022-12-24n/aexe 3121319197d74f5566275fed514d2fcc301bba22c7c687946401c9feaed2667fn/aRedLineStealer
2022-12-24n/aexe c06c0fdae71a40e7b8a804d29cab262bc0802db87a9d2d6db4b193d405a0d020n/aRedLineStealer