URLhaus Database

You are currently viewing the URLhaus database entry for http://ring1.ug/exe/starticon.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:248953
URL: http://ring1.ug/exe/starticon.exe
URL Status:Offline
Host: ring1.ug
Date added:2019-10-27 20:11:06 UTC
Last online:2019-11-06 07:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2019-10-27 20:12:06 UTC to intl-abuse{at}list[dot]alibaba-inc[dot]com,abuse{at}alibaba-inc[dot]com)
Takedown time:9 days, 11 hours, 22 minutes Bad (down since 2019-11-06 07:34:52 UTC)
Tags:ArkeiStealer link exe

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-11-04n/aexe 7b3eb4e7cad673ac4e9d3894466a15dedd45621d116e0222209b3ab98b6677c3Virustotal results 29.41% ArkeiStealer
2019-11-03n/aexe 7be5dde8b2e9644299e8b9db298c65449d0e6b351377533691c0f1ccc6bab1c4Virustotal results 17.39% ArkeiStealer
2019-11-02n/aexe 4598a0c09cb160c295b10c02d3ccfb261cd728b11f4fd1d47db21702100670bdn/a ArkeiStealer
2019-11-02n/aexe c84f1d6b8acb9807baf2a16dd480f64b307ade9b57b7a2d387a033e85cf5d83eVirustotal results 73.91% ArkeiStealer
2019-11-02n/aexe b3fe4b11600f9d627b6e45a12eaa13759b38ba6be32be53a53660069bb842da3n/a ArkeiStealer
2019-11-01n/aexe 08b6c38e79c9ac0ce7a7fafaaae1334c41d70b860ff2c8eb6b2742c58cdb06b3Virustotal results 27.14% ArkeiStealer
2019-10-31n/aexe 1b359f5e2446a66b1e44143fabdfe23de8c237e93eeae0e973646dd205a645a7n/a ArkeiStealer
2019-10-30n/aexe e3144bdf5832d4bb313acac8d9f7869995a68ef0bc6818d73d66150eca671655n/a ArkeiStealer
2019-10-29n/aexe 3d3df3e7eb70a5b2ec5d8484b65aa13b0bfa15161ad29b1435f17fc7c80cdef9n/a ArkeiStealer
2019-10-28n/aexe f39c954c592021cf567b3bec1793399e80df0cfbf89816772f851c761c2387fbVirustotal results 27.14% 
2019-10-27n/aexe 02a13ebd9224c7cc323da1cd280ad86b22f2afb8ec46c5de746ce07cd872e65bVirustotal results 30.88% ArkeiStealer