URLhaus Database

You are currently viewing the URLhaus database entry for http://62.204.41.145/blade/gold.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2489601
URL: http://62.204.41.145/blade/gold.exe
URL Status:Offline
Host: 62.204.41.145
Date added:2022-12-28 20:00:06 UTC
Last online:2023-01-03 20:XX:XX UTC
Threat:Malware download Malware download
Reporter: andretavare5
Abuse complaint sent (?): Yes (2022-12-28 20:01:06 UTC to abuse{at}gorizontllc[dot]ru)
Takedown time:6 days, 0 hours, 47 minutes Bad (down since 2023-01-03 20:48:17 UTC)
Tags:Amadey drop-by-malware PrivateLoader

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-12-29n/aexe b6d6e1da313365ec6cafe5269fc4d6af95042410f442483f658ec8c8ef0729bfn/aAmadey
2022-12-29n/aexe 2d9bc35f3c156e7fc0b028cbd70be110a581c7b2913981cc006d565ad2fce8efn/aAmadey
2022-12-29n/aexe 97a7b5572ad974c2cbc4fdbda70e0a8f39e875c2a8f0bcc78a7b03a7cc10ff3dn/aAmadey
2022-12-29n/aexe 6e281bec8eee8ab47f528e2957b8636faad8a462efc3d122c045c9fdbaa94142n/aAmadey
2022-12-29n/aexe 26884198ab42034a2515a138d610a912875f1fc361c7a19bf5d861ab8a5841aeVirustotal results 38.03%Amadey
2022-12-29n/aexe 59bb9cb2e2303067e37fbe85becdf96f81ceef791356da211e877a62295cb890n/aAmadey
2022-12-29n/aexe a661ba6fa25ee624136e2d6231efcd4aa3e501267ce6343fcc5c58668df10eacVirustotal results 38.03%Amadey
2022-12-29n/aexe bf1e6bbfa8c3819c2f04adc4289490758cf970f095dd93404405e0cd4e47f809n/aAmadey
2022-12-29n/aexe e3e1cbd1c005c4da3daefa10b395827d3f0eca9d474387fa97ca9947be7f41f5n/aAmadey
2022-12-29n/aexe f2c625cd6266b7c4d52572db0b42da821c7411d152fb88cc54b0bb4216b78aden/aAmadey
2022-12-28n/aexe 33bcc15e4ecc3736ec7ee300097e8a90db00fe94b07b5fd00324470e0d86f017n/aAmadey
2022-12-28n/aexe 78d40957041ee5383928d871257bb8f288384f033e9dedc602cf942aa6b10b94Virustotal results 63.38%Amadey