URLhaus Database

You are currently viewing the URLhaus database entry for https://foodbook.live/tmp/1.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2948462
URL: https://foodbook.live/tmp/1.exe
URL Status:Offline
Host: foodbook.live
Date added:2024-07-10 18:16:14 UTC
Last online:2024-07-12 14:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Bitsight
Abuse complaint sent (?): Yes (2024-07-10 18:17:06 UTC to abuse{at}ovh[dot]net)
Takedown time:1 day, 20 hours, 42 minutes Poor (down since 2024-07-12 14:59:11 UTC)
Tags:exe Smoke Loader link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-07-12n/aexe a1391b6a9b0c4245bb2dbf44a0cc440d3f1ee016e13be3af692fd2185aa8fa90Virustotal results 43.24% Smoke Loader
2024-07-12n/aexe 8bd31e3b13bd63d7bfe35d7d1c6875026a46d363eed79daa3682316676ab489cVirustotal results 41.89% Smoke Loader
2024-07-12n/aexe 3fc734fd5a3eb797b212689c0cb49e4958944b5c125a7526609b1049a5b8682dVirustotal results 43.24% Smoke Loader
2024-07-12n/aexe 8fd4c66e2864ac0827a57b3fdb27a2a1adb28228969134bb1dd9971b07c7144fVirustotal results 32.39%Smoke Loader
2024-07-11n/aexe b5a3d2e46acafb2d356dc3855ddf3174cb80f6e8872d5c3aac68ac46e4bb813fVirustotal results 36.49% Smoke Loader
2024-07-11n/aexe 0811449e8fe78213f52e656b7e2a926a0da64ad149a3e522aea10487c087ceb8Virustotal results 36.49%Smoke Loader
2024-07-11n/aexe 06aa02a1eb56f64fbee251d6a9ced993aab3d8d63365f96ecdf3a096d5d4f9a1n/a Smoke Loader
2024-07-11n/aexe a65e932a4938c250bce6a69769489374e9ac3801574658096f07e0f43d6678e0Virustotal results 36.11% Smoke Loader
2024-07-11n/aexe 8c134f0fdc3cf972dc7846cd39d8caa3ca20fb874ea8583221cf868eb08ffa99Virustotal results 33.78%Smoke Loader
2024-07-11n/aexe 06d581b982ab3f881e3393fbfe083ed9c40e2433041431772870a8a2d6dca0deVirustotal results 33.78% Smoke Loader
2024-07-11n/aexe 8319ac8978ed747e7b39e3fe0210a7b49df634217a38fba56c0e65743d634622Virustotal results 44.59%Smoke Loader
2024-07-10n/aexe 7723f42ffff348cccf33af03afb955f678a0abf6f67965c19db76afc09d5a8a8Virustotal results 43.24% Smoke Loader
2024-07-10n/aexe 4dd0a176ce6a71fe7680c2d0454874564c8d8fdd9edb330c473fb56aa2275507Virustotal results 41.89%Smoke Loader
2024-07-10n/aexe 4494ba81137d4fbad06b191f392cfbb90d31870a7584cd8dc2d8358d1a1bad84Virustotal results 39.19%Smoke Loader
2024-07-10n/aexe a93a0b125c19135c7a7def5d8fe1219885e61a45f0b962103e726086179b35b8Virustotal results 42.47%Smoke Loader