URLhaus Database

You are currently viewing the URLhaus database entry for http://mkas.rizwanmano.com/revada/66af9bdbf0f60_Team.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3225827
URL: http://mkas.rizwanmano.com/revada/66af9bdbf0f60_Team.exe
URL Status:Offline
Host: mkas.rizwanmano.com
Date added:2024-10-08 23:08:56 UTC
Last online:2024-10-20 08:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Status unknown
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: DaveLikesMalwre
Abuse complaint sent (?): Yes (2024-10-08 23:09:09 UTC to karina-rashkovska{at}ukr[dot]net)
Takedown time:11 days, 8 hours, 58 minutes Bad (down since 2024-10-20 08:07:35 UTC)
Tags:exe

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-10-19n/aexe f27fb756183ba8558aa4d4252f9118090da9283ea5f7d69a0f258d903c9de378n/a 
2024-10-19n/aexe 54e1a57e67dd327dc2e290ffc731983716ecb8bf7bb197fd3f10465ab7d941ban/a 
2024-10-15n/aexe 1b12469f2054ad24fbd6a031bdcd9e283cd63916dfb00f6ecd2ea2fa8134d6acn/a 
2024-10-13n/aexe b0cb7a736f633916f341757d5873cbbd9c4ad6a2dcd852a16f2441af7019ddb3n/a 
2024-10-11n/aexe 28a42d7d5ba103b17f2ae070444df0910d9fb6021b542b17936588bd4dccf4b6n/a 
2024-10-08n/aexe 1fc3e92f7f30f4f68861d3ceb8284853ae30c11cbd0ed3e46ea9eb698b3ec348Virustotal results 76.06%