URLhaus Database

You are currently viewing the URLhaus database entry for http://ji.alie3ksgdd.com/ef/rty27.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2748949
URL: http://ji.alie3ksgdd.com/ef/rty27.exe
URL Status:Offline
Host: ji.alie3ksgdd.com
Date added:2024-01-16 03:44:06 UTC
Last online:2024-01-18 19:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2024-01-18 19:03:05 UTC to abusepoc{at}afrinic[dot]net)
Takedown time:1 month, 9 days, 3 hours, 53 minutes Bad (down since 2024-02-24 07:38:41 UTC)
Tags:64 exe fabookie

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-02-03n/aexe 8aeb0d61b1211fb7817a3d9f1ce69cd385f21f0c10b7df1eefe6c6e7fc6b9206n/a Fabookie
2024-01-30n/aexe 28f74f8d6c20bab3d7b75c8210c553e67bc49fccf147f0fa27e4b5b7a2002560n/a Fabookie
2024-01-30n/aexe ae35de10d57cb53d1f69194187c34c3a3ba8b36a6736048660ace27820572b1fn/a Fabookie
2024-01-27n/aexe 655ec713446b922fe8e9233e614d813906c4ce43c4db273180cd8c2c6a79d52cn/a Fabookie
2024-01-25n/aexe 105b388b438913a6442abbbf40abcb6ee3dfa02344293e5285648075198064dcn/a Fabookie
2024-01-23n/aexe 8b5089aa6f3f07193130b1702b63a0cfaf29c6fcec7337ab229185d81fb0d67cn/aFabookie
2024-01-22n/aexe 8444807d63be70a6b66d0b14421bd88fd8f909f567e1aade8d91615c15713d3dn/a Fabookie
2024-01-19n/aexe 909e4623b8a2fcc82c150fd92a7d85bfdd7d506ec8b8dbf7655ada67885e0417n/a Fabookie
2024-01-18n/aexe 7b8053faf2b5a8cb0633ddf94f14c15199f09576b3407134d6a16ffeab14a0f7n/a Fabookie
2024-01-16n/aexe 0c9093975346591d7fe991ed8bd448d21aaeb1d65b7c48122a19624e0775d583Virustotal results 15.94%Fabookie