URLhaus Database

You are currently viewing the URLhaus database entry for http://malw.esalesin.com/yuop/66d9ddcb9dbfe_Build.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3222925
URL: http://malw.esalesin.com/yuop/66d9ddcb9dbfe_Build.exe
URL Status:Offline
Host: malw.esalesin.com
Date added:2024-10-07 19:02:30 UTC
Last online:2024-10-22 16:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Status unknown
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: abus3reports
Abuse complaint sent (?): Yes (2024-10-07 19:03:13 UTC to karina-rashkovska{at}ukr[dot]net)
Takedown time:14 days, 21 hours, 43 minutes Bad (down since 2024-10-22 16:46:32 UTC)

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-10-21n/aexe 80ca177294d5cd203565ff18612443c379e2c372da1ad19894ce11142f190621n/a 
2024-10-19n/aexe 666a1fd116b0158798919544bf226cdc297968a900f639a72ce085f6c1bc672dn/a 
2024-10-19n/aexe 7d6a4c2149f5b18a1451157e765c30dda2fc79f192892151af36e65ecc06e0e0n/a 
2024-10-17n/aexe 7eaef7ae03f8afb1681e170ce194003fe78b7a316cae3bca81a4be35a46bd1edn/a 
2024-10-15n/aexe c18e777b639f22a658decef2ae3b99b42a19de6de190f4798a319d4f26468cf2n/a 
2024-10-11n/aexe aa2245e1669f994dedc4a72a48148e442d8aa64804d77be9f7cd9c7f07cf8313n/a 
2024-10-07n/aexe aee46fb12d8bd25b4033b3ef7fb04703961e68e6cbc40d6aa410b01b05e4b411Virustotal results 69.01%