URLhaus Database

You are currently viewing the URLhaus database entry for https://amssh.co/file.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3519067
URL: https://amssh.co/file.exe
URL Status:Offline
Host: amssh.co
Date added:2025-04-20 07:59:10 UTC
Last online:2025-05-10 06:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Malware domain
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: abus3reports
Abuse complaint sent (?): Yes (2025-05-09 09:15:09 UTC to vladyslav[dot]naumets[dot]ab{at}gmail[dot]com)
Takedown time:20 days, 8 hours, 35 minutes Bad (down since 2025-05-10 16:36:46 UTC)
Tags:Stealc Vidar link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-05-09file.exeexe 9b28518ef923e7c7b010f2255b30bec3ff23095d9cf3ed55376f429ad5904489n/aStealc
2025-05-06file.exeexe 998751c996069cea751c941d8e691275ce01dc66959dfc436e4266d7218565e5Virustotal results 44.44% 
2025-05-05file.exeexe 6cc52ef5b6612ef69527088147009ed8c171850205c958a361701246a76746f2n/aStealc
2025-05-04file.exeexe f1d717b661575febfa27037e1f14b45d2513d93a8706fbfc268dca4b57390312n/a
2025-05-04file.exeexe afc72f0d8f24657d0090566ebda910a3be89d4bdd68b029a99a19d146d63adc5n/a
2025-05-04file.exeexe 39aff20c236f7a536781e3e137ee4e7a41f49c9a10c1e869797a9f210deceaa6n/a
2025-05-03file.exeexe 629d83659df3e1aaa04b6c296a3cf8e2248033e9d1ff422e350453d77cb2a5f0n/aStealc
2025-05-03file.exeexe 1fdb17242e1cc496b7fb830a953eacf74580322ab81fe6f9def02fdd32a28858n/a Stealc
2025-05-01file.exeexe 591e26f49edf70e4a20e0044b40e56b0b446c61840c6696e2e831bd983964eaen/a 
2025-04-30file.exeexe 68a5b05041f2078b3c2df3b87a79c1da6bc0e7075f7deb60f9426c11630853d0n/a 
2025-04-29file.exeexe e69fc4c93aed589421ff16c2e3f77bd47aedfcc5c64434c5743f1a7a5bc4f90cn/aVidar
2025-04-28file.exeexe 2696af2163d986842f833c530d133027f3b7b83ab044179695f2c2a976a91a59n/aVidar
2025-04-28file.exeexe fe933db152695b2405c6dbc0248b78229bd9c0083c660f9e472a4a47e8f73e40n/aVidar
2025-04-27file.exeexe 6ed676c974e6959136b26c279d9a78413ae41b44c34de2bd94a08d6c0b93fbddn/a 
2025-04-26file.exeexe f78892355e6019ae60c1e830826cda523496ce2cd70d0e4ce4bec9a085f47b21n/a 
2025-04-26file.exeexe 8a51d26be760d2515fdbe742bc84bd08d05d4e7f665bdd3c37b8c425f839675eVirustotal results 56.94% 
2025-04-25file.exeexe 95ab68001831160ee128a083a4f27e5e2e07449110439c74ac01fb2de9ca431fn/aVidar
2025-04-23file.exeexe 0c0bcfdc98ed7f5fab260de24a5b29e336c88080dabd0a1238b2bc392542c18cn/a 
2025-04-21file.exeexe c5bfaddfb2cb99e2935940e5783fc49c6baa8db5bdf4f2e32c7df8d044ef9711n/aVidar
2025-04-20file.exeexe fd39a100de7ae6efc732edeab31a89313d0be7e0540acffc04f6ed707c48c48dVirustotal results 48.61%Vidar
2025-04-20file.exeexe d28bc1b8975df8985c266826dc2111d6c50989fce391f72327171df965231166Virustotal results 38.89%Vidar