URLhaus Database

You are currently viewing the URLhaus database entry for http://greenpalace.top/brazi/filingood.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:403239
URL: http://greenpalace.top/brazi/filingood.exe
URL Status:flame Online
Host: greenpalace.top
Date added:2020-06-29 09:16:35 UTC
Threat:Malware download Malware download
Google Safe Browsing:Clean
Spamhaus DBL :Botnet C&C domain link
SURBL :Blacklisted
Quad9 :Blocked
AdGuard :Blocked link
Reporter:@abuse_ch
Abuse complaint sent (?): Yes (2020-06-29 09:18:02 UTC to abuse{at}selectel[dot]ru)
Tags:exe opendir RaccoonStealer link RedLineStealer

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTSignature
2020-07-02n/aexe 056b749998772e11397e44d87167c284198b4840cd935e4f2c5ff765cb448c88Virustotal results 27.78%RedLineStealer
2020-06-30n/aexe 178e86f12f303d0273810858fffffb6a1f74a4a00c79be02e2646602f8d0c8e7n/aRaccoonStealer
2020-06-30n/aexe d4580d369c916d7b10d162f0569a80211f87591905a8a1514b660f10e77f3ec7n/aRaccoonStealer
2020-06-30n/aexe dadd00262330390a9103ffd2dd3bac372a885a7d3cf6161d3eae10957a5bc37en/aRaccoonStealer
2020-06-30n/aexe 75585d879f856ae13f9880e369fc409f6962bad656a220322da6c8ca4560df41n/aRaccoonStealer
2020-06-30n/aexe acab3fc36076df7b6ebddd8341fa6aba592c9be3c31946987fa1429ca8cdb452n/aRaccoonStealer
2020-06-30n/aexe 11968a2bcfb9d13d6fd7f358be923c140f11e7921a1d64e71ddc9a4128eece96n/aRaccoonStealer
2020-06-30n/aexe fb4422e0c84fd10d40849c19389d6cc7418d94888878f08c0791e784bc9d8436n/aRaccoonStealer
2020-06-30n/aexe f1202fc6dd5316b3532deee6847c5ef3ae472ad51fd764f64b03ebc8dc13c723n/aRaccoonStealer
2020-06-30n/aexe 7b19881e169116c36a30db707e9cd7748e0fdb91cb37572689e75c469dc54b52n/aRaccoonStealer
2020-06-30n/aexe 2629fbf7fe8007bd4d7f4dd95858d57c35e91d63ea72ab6afb8c84b9b08f99ean/aRaccoonStealer
2020-06-29n/aexe 500657f97a195fbaa311e49c124d98d2e1c39e248cac6f6a794a2d425bb3644fn/aRaccoonStealer
2020-06-29n/aexe 6956b64f9f4eb99fea2aa04a47100390bca12de0871b931ec7e7e01ecbd32e9fn/aRaccoonStealer
2020-06-29n/aexe 6a24e9b0bb291a57dd790134d41758e4e4862e01a05508354a7f134ae6169107n/aRaccoonStealer
2020-06-29n/aexe 47840ca276cd3c2a1765a155a75c5ed050b0de39d01c905ad44affe0014f9b80n/aRaccoonStealer
2020-06-29n/aexe 47840ca276cd3c2a1765a155a75c5ed050b0de39d01c905ad44affe0014f9b80n/aRaccoonStealer
2020-06-29n/aexe bb2c702d2922d381e3804a438e05473e42b02caa572f85491fb1205f4b3a3acfn/aRaccoonStealer
2020-06-29n/aexe 8c25abf1b7e9bfb27ed7711c99f01d7c6cd1dc4934af9354efc3c0a1cf1e57c1Virustotal results 27.78%RaccoonStealer
2020-06-29n/aexe 35cfd22246c35b09f5378a6e8dd1465899280e563e19a820e3f7ae960606fffan/aRaccoonStealer
2020-06-29n/aexe 40bb34d60baf30fa6e238dc5cfa3a15bd3a81f479f3147613c9f3ac533763b9en/aRaccoonStealer
2020-06-29n/aexe 7b92a65a87f3dd16866e092d7979717a9feb5de74d3349aba918dd0e88850269n/aRaccoonStealer
2020-06-29n/aexe f3046296b16e3942728a13864619cfa8683a1f559171a3815d59bf26b926a706Virustotal results 26.03%RaccoonStealer
2020-06-29n/aexe e86d8138efd11cbac4d0901fd1255baf535195b014ce0ff9f678685d1d1ee5d0Virustotal results 26.03%RaccoonStealer