URLhaus Database

You are currently viewing the URLhaus database entry for https://merchentusindiajute.com/Juderk.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2728699
URL: https://merchentusindiajute.com/Juderk.exe
URL Status:Offline
Host: merchentusindiajute.com
Date added:2023-11-07 03:49:07 UTC
Last online:2023-12-18 19:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2023-11-07 03:50:07 UTC to abuse{at}cloudtechiq[dot]com)
Takedown time:1 month, 11 days, 15 hours, 29 minutes Bad (down since 2023-12-18 19:19:26 UTC)
Tags:32 exe RedLineStealer link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-11-13n/aexe 5f7a1ec42b23c893571fd3f31b493e138f9df1a3fbe6e2015b67604459a968b0n/a RedLineStealer
2023-11-13n/aexe d39b48b077c4bb9ed756ca0e022df081e07873a609e847b7bc23cc834fb1f57aVirustotal results 34.72% RedLineStealer
2023-11-11n/aexe 551e4f5193b90e3f697ed2a9933e9d001451b4a59eb7e9e65d971078df28ababVirustotal results 31.94% RedLineStealer
2023-11-11n/aexe f93ff6a27dfff4e5340c76832d55e4c15e2724fd006cbe33cbddfb0efee8da7bn/a RedLineStealer
2023-11-11n/aexe a67fbbab953445f8609e6859844e5ee98f92d8c1d58b9e4fc8fd557798e6dd22n/a
2023-11-08n/aexe 5ef4ef15a14b1ed32fc4b03fc252f92d107b93d2dc05eeb032574d796ab188e3Virustotal results 34.72% RedLineStealer
2023-11-07n/aexe 89533b94d2a875986899cc238b54bd5a1df45f0beb6e0cfd12f588b121acd7fbVirustotal results 34.72%RedLineStealer