URLhaus Database

You are currently viewing the URLhaus database entry for http://ji.alie3ksgdd.com/ef/rty47.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2748659
URL: http://ji.alie3ksgdd.com/ef/rty47.exe
URL Status:Offline
Host: ji.alie3ksgdd.com
Date added:2024-01-14 05:02:06 UTC
Last online:2024-01-18 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2024-01-18 19:03:05 UTC to abusepoc{at}afrinic[dot]net)
Takedown time:1 month, 11 days, 3 hours, 22 minutes Bad (down since 2024-02-24 08:25:05 UTC)
Tags:64 exe fabookie

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-02-03n/aexe 9a50f84b98fe5131c2cddf7298fea513f5a16df0d325a37b81c695274b0bde55n/a Fabookie
2024-01-30n/aexe b20048c1158677bbb56d9be0a6b64114d941e6e6ec170478dbd089c9d258fa40n/a Fabookie
2024-01-30n/aexe b88cbfd676497a271ebe6f89230f9e700ec16cdfef56810899c2b9aa09950e48n/a Fabookie
2024-01-27n/aexe f319d1bff6228f13d7026bf83c995e23233f4bf01c1c67d532212deb0db608bbn/a Fabookie
2024-01-25n/aexe 1f9de6ea372ca8027c7b2eef150f077ad7234e83a441e38b0f7ef4a3821e1a7fn/a Fabookie
2024-01-23n/aexe 718643fa7796ed792faa9cc2a139a0d566dae24b00dbd5d7019386d394f79436n/aFabookie
2024-01-22n/aexe db535fd3e679640d982db0de397579f13d2562a56b543b0b7f88b290dde2b678n/a Fabookie
2024-01-22n/aexe c6c52f1f89428e479212e14c1727f7573bba19d882813e75d2ed6defc23cc497n/a 
2024-01-19n/aexe 429c7cfdb84637c868b721b2e440dce54d8ee8d63a0dbf7e5bfaf3164cb246b4n/a Fabookie
2024-01-18n/aexe ac5efbeea11048aed2f5333094f815190adbc387ea7d897ecb04e90438e1f449n/a Fabookie
2024-01-15n/aexe 86fa75701ac3d3e5d92623dcad4f2a190105e0613bcfef6b7df6b51db84a51a4n/aFabookie
2024-01-14n/aexe 39415ee7b412df72b4ee1109ba32e987904734c3cfbffa6bcb6b579415449dbaVirustotal results 33.33%Fabookie