URLhaus Database

You are currently viewing the URLhaus database entry for http://aurumboy.com/file3.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:337936
URL: http://aurumboy.com/file3.exe
URL Status:Offline
Host: aurumboy.com
Date added:2020-04-10 13:59:57 UTC
Last online:2020-05-23 14:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2020-04-10 14:00:03 UTC to abuse{at}mgnhost[dot]ru)
Takedown time:1 month, 13 days, 0 hours, 52 minutes Bad (down since 2020-05-23 14:52:04 UTC)
Tags:Adware.Generic AZORult link exe RedLineStealer link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-05-13n/aexe e12bf1c4b6712d15cebf8556b8d659bc928c6ac18efbb081d56811bd48ce3359n/aRedLineStealer
2020-05-07n/aexe b541a941bfcbc0ffd4c1ab9465c283b22e45691d5c5b5017e7b2818a77fe3c1dn/a 
2020-05-07n/aexe 4a9ee9ddcdbce357190237487ff960d188666cb7da79d0be2b7b432c922eccb3Virustotal results 29.58% 
2020-05-06n/aexe 5949daf8ecfad10a26d8961ee9dd1c1d827640a5d3587949e7a6cad923ed40f5n/a 
2020-05-06n/aexe 1b5057be049a2e89a67e262b86888027d9cf243b62aa61315f638ff156d0b72bn/a 
2020-05-06n/aexe d3b4a587a5e7f3576376fa4daac29682094c7aa0206d0709198a72b8ca376fd0n/a 
2020-05-06n/aexe 1980eedbb751a8b8921ddf10e2199f69298b61ff00b3fff6eb2328db90a7ab92n/a Adware.Generic
2020-04-23n/aexe f7fcd2225f765fc8a55bc0e316cfd3e6a35b8bb286b8d0386a4715d879c9c7c2n/a 
2020-04-22n/aexe 36ccfab0f122882a1106fb16e1dc63af17748c0551184312163cdb148aef09dcn/a 
2020-04-22n/aexe 2514169b20e45ca23c13f7903d087e550c33c6f7de187a26e1a58c4ebc3008b1n/a 
2020-04-10n/aexe 304e0f3a43e558100b34b2bde0342c5faba1a39333c3ccf669deecbe0281863dn/a AZORult