URLhaus Database

You are currently viewing the URLhaus database entry for http://aaload05.top/downfiles/5.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:356821
URL: http://aaload05.top/downfiles/5.exe
URL Status:Offline
Host: aaload05.top
Date added:2020-05-04 08:08:18 UTC
Last online:2020-05-05 18:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: vxvault
Abuse complaint sent (?): Yes (2020-05-04 08:10:03 UTC to anti-spam{at}list[dot]alibaba-inc[dot]com)
Takedown time:1 day, 10 hours, 16 minutes Poor (down since 2020-05-05 18:26:45 UTC)
Tags:Buerloader link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-05-05n/aexe 57b2f8e918c09784027ae72c7fa82b1974c6e96fd0a66aa5b6df419c34662812n/a 
2020-05-05n/aexe 94e9519fb654ac0f8ec9ba32322431a44068c45a42bcd4102b57c4feac1c0318n/a BuerLoader
2020-05-04n/aexe 6160f3966660b788ea437d5d202547e54d7532582be55d0d93c37860e912111cn/a BuerLoader
2020-05-04n/aexe f6ac59159b7fd64a3654b6ee369bd99baaf151db5e1d3456648eb4c1cd205307Virustotal results 22.22% BuerLoader
2020-05-04n/aexe 53a845a18c7a01845d74f56468c43ca286d8299c085bfa5377194c3700a590d2n/a BuerLoader