URLhaus Database

You are currently viewing the URLhaus database entry for http://prozipper.s3.eu-central-1.amazonaws.com/prozipperRed.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:411802
URL: http://prozipper.s3.eu-central-1.amazonaws.com/prozipperRed.exe
URL Status:Offline
Host: prozipper.s3.eu-central-1.amazonaws.com
Date added:2020-07-11 07:32:16 UTC
Last online:2020-08-18 13:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: theDark3d
Abuse complaint sent (?): Yes (2020-07-11 07:34:02 UTC to abuse{at}amazonaws[dot]com)
Takedown time:1 month, 8 days, 5 hours, 54 minutes Bad (down since 2020-08-18 13:28:06 UTC)
Tags:AgentTesla link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-07-29n/aexe 87c40bd42e902cc49721d710c560a84d1830cfde9889b1796734aba77fb00e89Virustotal results 30.43% 
2020-07-27n/aexe 4be7460ae6f4c0190f6308f84db6dc42c57bd881b12f713e9dc6fff627a9cdb1n/a 
2020-07-24n/aexe da1a96ce99e8f78a305c1e4e9ec9b609e6992a7036e5993928b5a76983613ae3Virustotal results 37.50% 
2020-07-21n/aexe 9a04eca047f03f20ee730bbbcc66cfcaf7a9e48d918dd38fad4e08140bcca6e8n/a 
2020-07-20n/aexe 2eb053ea083dbbd14b46ffea297e9edfb28af23a983ee353b1ad85afa1650808n/a 
2020-07-17n/aexe 61164f336a6f17c1076f946e4831371516c5d97ffb29c105e0284c5bfff22ae7n/a 
2020-07-16n/aexe 280d60da8cb5f0ff1b64f0d421a79ae6e6af7ce1e5cdfd7d767a54b292ef0f3dVirustotal results 25.00% 
2020-07-15n/aexe d2bd7dbc2965a6c727250a77b131c23126376d50e8d0fd4690ebb0a5119fe462n/a 
2020-07-14n/aexe 617d9fe40d7b1574a742ddad8ddddef33f8074b97a402c31cf5eb79f82233dd4n/a 
2020-07-13n/aexe 8ccff8432319ac88d8ed63dc7c504845ade786278d27086f83e8d0166f105f68n/a 
2020-07-11n/aexe 59b230d608d121a6969fa2eab41b020c57f99328319ebd92ef00cb4081562589Virustotal results 37.14%AgentTesla