URLhaus Database

You are currently viewing the URLhaus database entry for http://aurumboy.com/file2.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:337937
URL: http://aurumboy.com/file2.exe
URL Status:Offline
Host: aurumboy.com
Date added:2020-04-10 14:00:04 UTC
Last online:2020-05-23 14:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2020-04-10 14:02:04 UTC to abuse{at}mgnhost[dot]ru)
Takedown time:1 month, 13 days, 0 hours, 49 minutes Bad (down since 2020-05-23 14:52:01 UTC)
Tags:Adware.Generic AZORult link exe

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-05-13n/aexe 440dac8a5f30692acef15cbc3f12e16ad05e7c73959b010235ef785d90b3ff64Virustotal results 71.83% 
2020-05-06n/aexe 1980eedbb751a8b8921ddf10e2199f69298b61ff00b3fff6eb2328db90a7ab92n/a Adware.Generic
2020-04-23n/aexe f7fcda3a09154b77fe19c1acad207b52af0c2cf4a0355faefa393c8e7eca3b53n/a 
2020-04-22n/aexe f0f447bb411b912dfc0f799d684d2e3a2fa5e07d0586472203aae1bd09b5885bn/a AZORult
2020-04-22n/aexe e6e37ff68650e06c2d6c5629df034ea4b12b1211385df1af57d408643ad2ecdcVirustotal results 30.14% AZORult
2020-04-10n/aexe 712a3763760fac6d7196482a42ac563736f62b1bec99954dbdee0d684068d5e9n/a