URLhaus Database

You are currently viewing the URLhaus database entry for http://privacytools-trade.com/downloads/toolspub1.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2789664
URL: http://privacytools-trade.com/downloads/toolspub1.exe
URL Status:Offline
Host: privacytools-trade.com
Date added:2024-03-22 06:26:07 UTC
Last online:2024-03-25 16:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Bitsight
Abuse complaint sent (?): Yes (2024-03-22 06:27:06 UTC to abuse{at}westcall[dot]ru)
Takedown time:3 days, 9 hours, 35 minutes Bad (down since 2024-03-25 16:02:55 UTC)
Tags:glupteba link LummaStealer Smoke Loader link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-03-24n/aexe 583d73f0111e0aeed0a34fa4fc4ba85875a11f88ac93f9bacb59359aaf5b94e2Virustotal results 40.28% Smoke Loader
2024-03-24n/aexe b8fd930c7165a1a03b79bbc5c8bac3596a74271ea38b9bc5293d549852340cd2Virustotal results 38.89% Smoke Loader
2024-03-24n/aexe b1637a25a2959c9a6da241d94d8ddac92f3e542d86dbebdc47c1a06a4f6190a0Virustotal results 38.89%Smoke Loader
2024-03-24n/aexe a77a44380cd3ac2b6bf2f8a38e29d76a1eb1bef5563e6e4da5c3a87dfa0bac77n/a Smoke Loader
2024-03-24n/aexe a760a216f01a3e0af9a73410450770d29e76b6f2adb78b930ec78f04e0e7356eVirustotal results 37.68% Smoke Loader
2024-03-24n/aexe bfc3eb10481a1c32006a4bc7ce7071e3b11a02a1035ac31da73fb01690e556efVirustotal results 40.00% Smoke Loader
2024-03-23n/aexe 35bca6c779e1f64b6df883fe983ac5af770d6a6b7dac8ab7c982a5f9fa24e16en/a 
2024-03-23n/aexe ac1aa03f8763c40289c4fd18ba99cee9e6858263105213ea9f946b81ed8bf154Virustotal results 41.67% LummaStealer
2024-03-23n/aexe 93206d9dbae894c96fe165f6403b1d00e02080de15369a39a25d7533b784fbb7Virustotal results 36.36% Smoke Loader
2024-03-23n/aexe 1300026a497d8562396e99bf474ae6070d49e5a8fef9e6fd59991589d116dca6n/a Smoke Loader
2024-03-23n/aexe cd8972e56ba95b3f33c2f164ea880b6c5d8d95f942a817c5fdc31f8122380813n/a Smoke Loader
2024-03-22n/aexe b0f1d6defb63ca51dce41219e35f97ab8d89ec19c863f5b659fb8b05c1c92248Virustotal results 40.28%Smoke Loader
2024-03-22n/aexe d299c4b9c082d625fd580f49799ffdd2d6561544ebfc3e66420eb1215b0f47dcVirustotal results 38.89% Smoke Loader
2024-03-22n/aexe b119f003f9fca28111b386401a9da65eb1b6b36f6824b2145188aed2bacada1cn/aGlupteba
2024-03-22n/aexe 20bade08687a1356c343a70a124e7441aa3f2c1824f50b77e552421ee61c3ba3Virustotal results 40.28%Smoke Loader
2024-03-22n/aexe abc5152266564f883ab915f2a1eec762cd98920e5e315974c926632942e31976Virustotal results 38.89%Smoke Loader