URLhaus Database

You are currently viewing the URLhaus database entry for http://smtp.qwertzx.ru/asdf.EXE which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2758249
URL: http://smtp.qwertzx.ru/asdf.EXE
URL Status:Offline
Host: smtp.qwertzx.ru
Date added:2024-02-08 08:06:05 UTC
Last online:2024-04-12 01:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2024-02-08 08:32:09 UTC to abuse{at}pro-spero[dot]ru)
Takedown time:2 months, 3 days, 16 hours, 38 minutes Bad (down since 2024-04-12 01:11:08 UTC)
Tags:32 CoinMiner exe Rhadamanthys

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-03-27n/aexe 432747c04ab478a654328867d7ca806b52fedf1572c74712fa8b7c0edb71df67Virustotal results 29.17%CoinMiner
2024-03-20n/aexe dcbf84dfaa590c23b90d201574c9dc4ca96f73a6bf01f0db3f784bd3618848aeVirustotal results 36.99% 
2024-03-20n/aexe 4586685a23da8211949d21b632a73267d7cb082f8fec37ccc49c50604c3b374cn/a 
2024-03-20n/aexe 8a5d02379fe562c2d254c8ed504fb46434601446b2ef4b925b9e78efb7a0c8ecn/a 
2024-03-19n/aexe 384f158c6986e43d7014de8840f9e006894a257d44dd5111278f758f0e3a3ea4Virustotal results 57.53% 
2024-03-18n/aexe 4dc4a5731364b47800189b82f0fe51fa1bda5ea828af59b57f22c88b7b13894eVirustotal results 42.47% 
2024-03-18n/aexe b453521f6646b621bf11c56988ef9b5f1a787333b05beb8aa3a330c2a8dec603Virustotal results 46.58% 
2024-03-18n/aexe aae346a5c9c9ffb7aae74d5bd26f8da4d08ea4d0a95ee5705db9d7d83aaffc8dn/a 
2024-03-18n/aexe 9320d7bb6dc2ebd7f0c9b73d56e6f533020685144346bdde3151082f4d583f35n/a 
2024-03-17n/aexe adfbb1a99f6c27d24943540fac36fecd417ead479ba434c2cdab8d5bbd9ecf0dn/a 
2024-03-16n/aexe abfff4c2953d4621f9724d1d73e3cf1909cf625ab00013d5e155143fcc7969edn/a 
2024-03-15n/aexe b5d4272b432044d058ad4eccff0e838e8d63986077640003bef3f84af71afc3dn/a 
2024-03-11n/aexe 8dcb834fb265f9973a39b8438f84202d0ea013071d53991010fd3bd54e7494fdn/a 
2024-02-08n/aexe 217fbf967c95d1359314fcd53ae8d04489eb3c7bdc1f22110d5a8a476d1fc92eVirustotal results 79.17% Rhadamanthys