URLhaus Database

You are currently viewing the URLhaus database entry for http://b.dowgmeb.com/gamexyz/2203/a9fde250aa8c61bc1cc212afb2f58adc.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2496111
URL: http://b.dowgmeb.com/gamexyz/2203/a9fde250aa8c61bc1cc212afb2f58adc.exe
URL Status:Offline
Host: b.dowgmeb.com
Date added:2023-01-04 02:12:10 UTC
Last online:2023-03-30 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2023-03-30 20:35:09 UTC to abuse{at}cloudflare[dot]com)
Takedown time:2 months, 26 days, 11 hours, 9 minutes Bad (down since 2023-03-31 13:22:47 UTC)
Tags:32 exe

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-03-22jfwang.exeexe 61ffe2165754be630e9c9e83f61213bb3cd37d1cf18710cc379ce52387228946Virustotal results 28.99% ManusCrypt
2023-03-10bzhang.exeexe 0062734a275ffb573ba0289ee6d876d288890b69d731400f47fd3ae9cb8144d6n/a ManusCrypt
2023-03-06wq.exeexe c33ecac87bf07fc75b6768b76622daac389e05ef718c457e0393238d646bb130Virustotal results 31.43% ManusCrypt
2023-02-22zhangp.exeexe 5b0708551a5c3cf9932c8aea5e890e3f2abe7b7b5911cefebc6155d20692e365n/aManusCrypt
2023-02-13wp.exeexe 60b5c9855622f7bf71b6ed99afa605e65be1f664c014b67769c5eb1f7229e53cVirustotal results 11.43% 
2023-01-31qwang.exeexe b77632a10ce6e9f894ebc439e1d2627a6f91c8b8a28c02773bec45e494707036n/a ManusCrypt
2023-01-06liyuhua.exeexe 9a3a87d0f2eeeca3e36bbaef7833c44f20e6162075c7cea9a89bce15d3d2269dVirustotal results 7.14% ManusCrypt
2023-01-04wangy.exeexe 0c0bdbcea941b4cef850609416ec4f3d3ead6f08f687d96b76dcd5e809bb22b9Virustotal results 68.12% ManusCrypt