URLhaus Database

You are currently viewing the URLhaus database entry for http://barcla.ug/ac.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:401808
URL: http://barcla.ug/ac.exe
URL Status:Offline
Host: barcla.ug
Date added:2020-06-25 00:50:23 UTC
Last online:2020-07-01 18:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: p5yb34m
Abuse complaint sent (?): Yes (2020-06-25 00:52:02 UTC to abuse{at}grandcosmetic2[dot]ru)
Takedown time:6 days, 18 hours, 3 minutes Bad (down since 2020-07-01 18:55:55 UTC)
Tags:AsyncRAT link exe

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-06-30n/aexe c33d8976bdb827d5bc0b6fe2752c586ff1fe7bee2a8f1dd785ec341655a6c93cn/a AsyncRAT
2020-06-29n/aexe 599cd6f1436c0191685f2137ee646106b978ae05c7ba5b67c0786a7ca8661b94n/a AsyncRAT
2020-06-28n/aexe eae16da5fc100629cd521676985ff89e2db4ab02d915c2ff837dc320c7678b28Virustotal results 13.70%AsyncRAT
2020-06-27n/aexe f98d1d8e2516bacea4fb8cac084d562db3d881a0d8e65c684a237ead8d787b5fn/a AsyncRAT
2020-06-25n/aexe 7df1cf23e6129f8567a70233fd5c24a7673193891c6bb63773b9e2821bc9918fn/a AsyncRAT
2020-06-25n/aexe 12859bb50366c248e9488a8852c0923bcb4135f8fcedcbac19228fe329ff39a7Virustotal results 24.32%AsyncRAT