URLhaus Database

You are currently viewing the URLhaus database entry for http://moon.spartabig.com/order/tuc4.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2752877
URL: http://moon.spartabig.com/order/tuc4.exe
URL Status:Offline
Host: moon.spartabig.com
Date added:2024-01-29 04:48:07 UTC
Last online:2024-01-29 07:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2024-01-29 04:49:08 UTC to abuse{at}cloudflare[dot]com)
Takedown time:5 days, 2 hours, 38 minutes Bad (down since 2024-02-03 07:27:07 UTC)
Tags:32 exe Socks5Systemz link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-02-03tuc4.exeexe 751989cc05d2fe1ea8f694370e904b9ee9727a4b8e9a5e560a622ab7406191fdVirustotal results 7.04% 
2024-02-02tuc4.exeexe b461fdc8db518aea86e701c1f05ba8d2e31a8ed618c7bc95c9a06c4679e8be4fVirustotal results 11.11% Socks5Systemz
2024-02-02tuc4.exeexe 879de1c49a6f62d17d4222904bafa7900ee653e88091572459ed05436779028en/a Socks5Systemz
2024-02-02tuc4.exeexe 93774a9c69568580c4282c80d42a673e61e11563b950ec7ad5c388b6441a9609n/a Socks5Systemz
2024-02-01tuc4.exeexe 2b53c25ae5c4c6dfd3ef4afa1009dc4679ac297ccd864ebacaa6318c5a612965n/a Socks5Systemz
2024-02-01tuc4.exeexe ebe2dea252e6a5216d6c9851893e85110caf13402f4fbdcd3c239356350927c3n/a Socks5Systemz
2024-01-31tuc4.exeexe 31753d097676739ec878a1a207adfb572e2e2ff92f3a0cbcc193fb2c10d0fed8Virustotal results 11.11% Socks5Systemz
2024-01-31tuc4.exeexe 37810b92275347c0e08718a4b6197177d069d05221be649c81ffbc09bf1763d2n/a 
2024-01-31tuc4.exeexe e0088d34b4cda1265a5e01b9538d2ffb603566a21ed90967cd6f847d5ff32772n/a Socks5Systemz
2024-01-30tuc4.exeexe a5b3ba190eb53b650e29a875fb6b1c0ba93b4b831cb7c477db51de2f734aebc1Virustotal results 8.45% Socks5Systemz
2024-01-30tuc4.exeexe 394e0d9539926c7a13e02139746e519868c5b1c91cf75df3fa83f0df182559a9n/aSocks5Systemz
2024-01-30tuc4.exeexe 8224c0c2a9f21dd9d90cd5ecf827f14f7e4fc91553cd1ff1cdbc270ae717db63n/a Socks5Systemz
2024-01-29tuc4.exeexe da767006471b2853bc8c26fa48dcd7b53c1e27fc78510739021fa9baf3c4883dn/a Socks5Systemz
2024-01-29tuc4.exeexe 7ba37c838d01f4b9c260e6bd7e959612060fb00415110d0860a38c694ef2a1e5n/a Socks5Systemz
2024-01-29tuc4.exeexe ae178b3acc6b4f135fcee2e91b1b8576967fdd610438690a6580696558cda05fn/a Socks5Systemz
2024-01-29tuc4.exeexe f4953dd47a1a35b12a94ce5c4fc5af2da86882070366a1684b8896a16bf636ecVirustotal results 15.71%Socks5Systemz