URLhaus Database

You are currently viewing the URLhaus database entry for http://httpwindows10updatevbcustom.com/Apkwins465.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:36979
URL:http://httpwindows10updatevbcustom.com/Apkwins465.exe
URL Status:Offline
Host:httpwindows10updatevbcustom.com
Date added:2018-07-31 05:29:05 UTC
Threat:Malware download Malware download
Google Safe Browsing:Clean
Spamhaus DBL:Not listed
SURBL:Not listed
Reporter:@olihough86
Abuse complaint sent (?): Yes (2018-07-31 05:40:02 UTC to netops{at}singlehop[dot]com)
Tags:Fuery Pony rat remcos RemcosRAT Xtrat

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTSignature
2018-08-20n/aexef5addf882dd5dc70d6fec4e562e81e2878fd5a24d7a6e141e8891e2469ddc1afn/a
2018-08-17n/aexecebfdacd263d85664650d5eca882637a87b29afcc4d42d967ba592fabf8a2ed0n/a
2018-08-16n/aexe44a584247ded0e06a32dbc539cbd0a3dd84e9e4ad60d33f9ed8ac9d89e3d7737Virustotal results 9 / 67 (13.43)RemcosRAT
2018-08-15n/aexe8d029fae4b6a58ded39642d35c66da5593e4d67f29b9e2b3ddec69360c901e8bn/aRemcosRAT
2018-08-14n/aexe3bdc0b1655c7029689178cfd63b62c78e36aba6b9a995274b47d61bf50f22ac3n/aXtrat
2018-08-14n/aexe9d8906167be78227da764aaa36781728ee013f1d1bf23bf420e974084a727612n/a
2018-08-13n/aexed5250c97ebd1e2503e4e63695219c55ba56068490a5d7d7aa0dab938e1cca42cn/aRemcosRAT
2018-08-12n/aexe7145224d260ac8703f839cd266400abcbd64e174089dfab4e0b14806aa644820Virustotal results 12 / 68 (17.65)Xtrat
2018-08-11n/aexe9d50a0fb8d27fa2faf6cc0e923f92c306ee9b4b438a386a48953da1ac9d2d3c5n/aXtrat
2018-08-10n/aexe8464460151da2124d621f1b3e8857a6bc583d3397ebd76e0713018630efaca8en/aXtrat
2018-08-10n/aexeee01aef40c0fff9403d5d35aa8d29a39f11d37faca3d6c4dac4b28e9f7d1a60en/aRemcosRAT
2018-08-09n/aexecb66cf42875fecfae84e658761474b3bfaf23cf52a06fe12b3a93e257ba465d8Virustotal results 15 / 67 (22.39)Fuery
2018-08-08n/aexe044a054b102b350a69b6af82dda8afb03e66a5318a809416291492b47c28895bn/aRemcosRAT
2018-08-08n/aexe98c9ae3dada7aa8081e1c36638e6d23e3095d7b724e75735fefbaf6142e2948dn/a
2018-08-07n/aexe0800bbc76f58ea1250badf7fa6780527f9dc09eb5f816214ed0bd3d8fcecc138n/aXtrat
2018-08-07n/aexece058b9e5ff08100ff78b700b680aaedd1fbc4e0c438acc63a99e18361768297n/a
2018-08-06n/aexe78c4a63ff09d7d351eed3d68bd33a8c3cb1f068b6db382df6ee6e8b001d76029n/a
2018-08-04n/aexebbe3875cde59c1ccdd3fc8656f305b514bfd8e3bd04719fa65dc6c1943718987n/aXtrat
2018-08-03n/aexee8fcc87341dd549e761d072bfd2b29237fdd539f2874f7e733da6c9be86896b0n/aXtrat
2018-08-03n/aexe241807a99fcea9830e1161987b42a4b9e217685cc472e21f7fc10ff456d2173cn/a
2018-08-03n/aexee46754bc553666accaf8af13c436fa613a42c523e11c12c1607997d49035400eVirustotal results 26 / 68 (38.24)
2018-07-31n/aexe0218a56ed2598ba9f49f197734fc09b9d00080300355765d886b24f4715ad4d0Virustotal results 15 / 67 (22.39)
2018-07-31n/aexed235237e7e1b213862b67de8181db06e93b5e613ea26b4cb2d8fe11de9438a95Virustotal results 9 / 68 (13.24)Downloader.Pony