URLhaus Database

You are currently viewing the URLhaus database entry for http://ji.alie3ksgdd.com/ef/rty29.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2748836
URL: http://ji.alie3ksgdd.com/ef/rty29.exe
URL Status:Offline
Host: ji.alie3ksgdd.com
Date added:2024-01-15 09:30:10 UTC
Last online:2024-01-18 20:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2024-01-18 19:03:05 UTC to abusepoc{at}afrinic[dot]net)
Takedown time:1 month, 9 days, 21 hours, 34 minutes Bad (down since 2024-02-24 07:05:16 UTC)
Tags:64 exe fabookie

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-02-23n/aexe 71c9f514e0ad3433df82553aa7e83973f5bf0d5286f310c01fc51af677a3ed85n/a 
2024-02-03n/aexe 48513a320dace9218b3612cb8496518620a07c9dc62f0e6d19f0e2639c6bc9f9n/a Fabookie
2024-01-30n/aexe 283a30753b76dee8277ce7670838bf609a40e20e57843bd605756998040eacd6n/a Fabookie
2024-01-30n/aexe 4be0a0dd671a7faac5a2a1cd65fe4bd5f6e6415c55a3624d18ba09f664b287b5n/a Fabookie
2024-01-27n/aexe 8e2922ed57f7eabdbd62f0ecf22aebc9b39e97c6ee26ccb7e4205c6a9b9c4e61n/a Fabookie
2024-01-25n/aexe 93cb45abd5f576491912b64decb35cec06ea843c1a50858eed1e0f6d70c5b095n/a Fabookie
2024-01-23n/aexe 6f67fcdce107f46c957c71ce3db1b7f284ca2888725aafb21f00ba7121cc9620n/a Fabookie
2024-01-22n/aexe 2905d0f684e302d0e54553b5c2f8fd73ec4cceafee8c278f276ba4d41a382d60n/a Fabookie
2024-01-19n/aexe 5e6e334f51fcceeb86affb44bf6cc8f9f12e95a4aa0427d35f4f954397dc8d05n/aFabookie
2024-01-18n/aexe 23fd6b86e6819fb4261d57222dd17e2e4ed8fce53f6edecc1a0eced8316d8b40n/a Fabookie
2024-01-15n/aexe fb3826c5caf9c4ae35f4819410905fa6a19617272edee37d9341a69e64b8a73cVirustotal results 11.76%Fabookie