URLhaus Database

You are currently viewing the URLhaus database entry for http://hans.uniformeslaamistad.com/yuop/66f5b6d51c304_ease_clonesign.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3211316
URL: http://hans.uniformeslaamistad.com/yuop/66f5b6d51c304_ease_clonesign.exe
URL Status:Offline
Host: hans.uniformeslaamistad.com
Date added:2024-10-04 18:48:56 UTC
Last online:2024-10-22 16:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: abus3reports
Abuse complaint sent (?): Yes (2024-10-04 18:49:09 UTC to karina-rashkovska{at}ukr[dot]net)
Takedown time:17 days, 21 hours, 37 minutes Bad (down since 2024-10-22 16:27:05 UTC)
Tags:DanaBot link exe

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-10-19n/aexe eab96382b9ea6a70ff73d9c7f5979965ca1e76fb662a18f30d54f2816e9a0e05n/a 
2024-10-17n/aexe 2203c74789cebbfdb46c6d1fcd9303779843543bc19ba1932d5578161c9b363bn/a 
2024-10-16n/aexe 6ce49af7b828421eb275863077e329ea8f595d59245acbf3b638e4ddab0c6ff0n/a 
2024-10-15n/aexe 2421475bdf1e4ba06de5b922fe98cf2e5d90ac2ec0dca5c355baaad7000026d6n/a 
2024-10-12n/aexe 0fbd3c5327083ff423dedd80ecb3ba26b4e9189ae8ff27b399203a06088648ben/a 
2024-10-08n/aexe 2152ae070728a0a85a0249cff8d71b196d7f85c09dfd34a1cdd491642db6fec7n/a 
2024-10-05n/aexe e9550785fb57920bd2c102e58e232d5cdd76b20c1401e80b141e8d9e7a30b626n/a 
2024-10-05n/aexe 4197959b31930cdff2df01c0dd801308358ea8716ed7cd58739bfd7edcbd6594n/a 
2024-10-04n/aexe 8724823c104bbb4ec3f7192eac1c97b482fd129e7550201cb77cae0c066ab09dVirustotal results 56.94%DanaBot