URLhaus Database

You are currently viewing the URLhaus database entry for https://preconcert.pw/setup294.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2716337
URL: https://preconcert.pw/setup294.exe
URL Status:Offline
Host: preconcert.pw
Date added:2023-10-04 10:07:05 UTC
Last online:2023-10-04 14:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: andretavare5
Abuse complaint sent (?): Yes (2023-10-04 10:08:07 UTC to abuse{at}cloudflare[dot]com)
Takedown time:5 hours, 41 minutes Good (down since 2023-10-04 15:49:40 UTC)
Tags:dropped-by-PrivateLoader

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-10-04n/aexe a59528011b961a3fd1c9f363425178acf169ca84ecf5b4c4803459de55322d19Virustotal results 26.39% 
2023-10-04n/aexe 523e0b67eafd7308a03240b1eba839f2f9dcc2b026fb63fed9c14b39961d0d7an/a
2023-10-04n/aexe 0c8dd9fe4da682d661b748e2fa1cc69abe604b30652bc6a9f3aa757864736269n/a 
2023-10-04n/aexe eba06c3f9929f4c7faf7781e2eb438ceffa9836f7241606900eb6815ee46ff06Virustotal results 31.94%
2023-10-04n/aexe dab14b76fee0692f60331ed4cdc8600c1f5b0c0f9acc4d041ef0cd67b2487124Virustotal results 34.72%