URLhaus Database

You are currently viewing the URLhaus database entry for http://ring2.ug/files/cost/5.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:256376
URL: http://ring2.ug/files/cost/5.exe
URL Status:Offline
Host: ring2.ug
Date added:2019-11-21 11:35:04 UTC
Last online:2020-01-31 09:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2019-11-21 11:36:03 UTC to abuse{at}selectel[dot]ru)
Takedown time:2 months, 10 days, 21 hours, 24 minutes Bad (down since 2020-01-31 09:00:23 UTC)
Tags:ArkeiStealer link exe

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-01-28n/aexe d6aa20ade21e868d805129996d5a17c162f8cbe3e665d5d73bf93074dcf53a46Virustotal results 27.40% ArkeiStealer
2020-01-26n/aexe caac46bbaa0af95fa8b39ef8d208f3348ae69a613c3f2d0bfa4bdfac5abb2edeVirustotal results 30.43% ArkeiStealer
2020-01-24n/aexe bfdb7462d51b623eb91758581a6fb407f7ce030067e66d70118c9c8577d9fc70n/a ArkeiStealer
2020-01-19n/aexe 64f10e6c27e3dadc19a0013268711a31d5b140cca723121c1d80dbdb72c2a62en/a ArkeiStealer
2020-01-18n/aexe c19e76e44d406ef05df822cfec73f69a37ccb5915221c822bc11d15da2cba8a4Virustotal results 29.17% ArkeiStealer
2019-12-22n/aexe c133d5801f5adc55193fa2a6461d9890328c666c4388659a22662849035d0505Virustotal results 30.14% ArkeiStealer
2019-12-19n/aexe 95284cb30d012d74a568fc2822da4e2bfac17b5102e4eb0ec5f85d0c9245ccafn/a ArkeiStealer
2019-12-18n/aexe e15cf84a6a07293bb9c55a9c6366576b32f68c84a23b49f0504ba473f83940b7Virustotal results 25.00% ArkeiStealer
2019-12-13n/aexe 855f53e65918a7f0dab3d4972990c08dce585dda18bd6356448e8b6c85b05ee2n/a ArkeiStealer
2019-12-11n/aexe 4b8d2954a3ff4511565777d7830b92e7d9052165e057b5091559ef5e64f883a7n/a ArkeiStealer
2019-12-09n/aexe 083e2ea08ad92be34a99ba549ab58b982ea4b2218d2b150b2f95ce2296a8921fVirustotal results 22.86% ArkeiStealer
2019-12-06n/aexe a5af8db42725070872d1c71bc34f132e1dd6b2d4fbb9d8f49e324035ae8fece2Virustotal results 27.78% ArkeiStealer
2019-12-04n/aexe 7d40261994634278976fbf37eb1614169265ab754c086a85412f5224ab950722n/a 
2019-12-03n/aexe 595e61403029ee256e66bfb156e094694b4cabf029a264a918acc47283cc5a8dn/a 
2019-12-02n/aexe 7966bc8f42b15bb738a4236110a151754d9dea7f188837294666052e7ee9e584Virustotal results 25.71% ArkeiStealer
2019-11-28n/aexe 703bf6e8c4f52d364eee5871e8047278e06d8fb9e0468688213adaf656be60c1n/a ArkeiStealer
2019-11-28n/aexe 03fac9ad10d0e480296cb68351cb601359021b090e1bd694d831962bbb6d84c2n/a 
2019-11-28n/aexe 0d21487ebc9eb19934b2e58d842abb5b09e37792e0665b1f7a5cef94625bb11bn/a 
2019-11-28n/aexe 4e311a48e9957146c65254b7304f09e746474593a4da74c6792d4a26062d356en/a 
2019-11-25n/aexe 8e0583c73e92efde9f026bd911879c83f61c3dfab853d283a3073defe33503bcVirustotal results 26.47% ArkeiStealer
2019-11-25n/aexe b0d9c61d8c4a3fe91bbdc7a01c348ab5f9c2a991713b1402946fe2e6de08d32an/a 
2019-11-23n/aexe 44293c56afac3874b8a3eb911e81e4c7de943ec50d447d09e9847e90327920f7n/a 
2019-11-23n/aexe a3397077c5044a165e50644c8ab820712c86515f627cc1254899e24cd2e1a3a8Virustotal results 27.94% ArkeiStealer
2019-11-21n/aexe 5d170b193e01dd93981d73028ac970cb8f12f35b2ba5193e53be4340b9c05c7cVirustotal results 57.97% ArkeiStealer