URLhaus Database

You are currently viewing the URLhaus database entry for http://www.lapurisima.cl/dllhost.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:341765
URL: http://www.lapurisima.cl/dllhost.exe
URL Status:Offline
Host: www.lapurisima.cl
Date added:2020-04-16 23:52:38 UTC
Last online:2020-05-06 15:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2020-04-16 23:54:02 UTC to admin{at}hostname[dot]cl,abuse{at}hostname[dot]cl)
Takedown time:19 days, 15 hours, 45 minutes Bad (down since 2020-05-06 15:39:31 UTC)
Tags:exe njRAT link QuasarRAT link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-05-05n/aexe fdd745c46403d45555c0f3c04e152e7cb4c44579b24aefaecd76bd8e865c5f53n/a 
2020-05-05n/aexe 7b6fab9adc1a2aa7ed0e8698c8bc472e21f9f7b3b9ce463d947a72fb2c2d259cn/a 
2020-05-05n/aexe 6c0f07f5c82209d3c7c68ef13ffc028d11b5033288e4dca496cc54081ba94a46n/a 
2020-05-04n/aexe 0801690dafa4fa9e5330e3dec52d9f936bd6af9532274040bf09313765e0b9ccn/a 
2020-05-03n/aexe 8ea43ab35ff05d2ecf35f0497b1203efc4fe5b721aebad25b65323eb0fbbd4d6n/a 
2020-05-03n/aexe 8aedab2cfee8735c92fcdf6d2155de003e77f73657890c01443d0f9d3aaa93c0n/a 
2020-05-02n/aexe ba27536db363cf3a604908ecd21ca5b81b0b20e3f6f0447628b82e34240ae67an/anjrat
2020-04-18n/aexe a7580e8f26176efd434591c6cc6756b17cf55f217085511632edcf3876ffab9dn/a 
2020-04-17n/aexe e9264a551a527bef2930d69ee404304bc6f8053e546a542fcead5a8f44635c89n/a 
2020-04-16n/aexe 77985fca7ae6b60c8025ba326e3bd1d9949c3fb32b9ca0f99f040be633823a7cVirustotal results 31.51%QuasarRAT