URLhaus Database

You are currently viewing the URLhaus database entry for http://andres.ac.ug/zxcvb.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:446430
URL: http://andres.ac.ug/zxcvb.exe
URL Status:Offline
Host: andres.ac.ug
Date added:2020-08-29 04:33:17 UTC
Last online:2021-07-08 08:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2020-08-29 04:34:03 UTC to abuse{at}grandcosmetic2[dot]ru)
Takedown time:10 months, 13 days, 3 hours, 37 minutes Bad (down since 2021-07-08 08:11:45 UTC)
Tags:ArkeiStealer link AZORult link exe RaccoonStealer link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-07-07n/aexe 09d408f193dd6bea7a5d5ae325a7c4dbf215c7e27203e3c371e7de91d8544365n/a
2021-06-30n/aexe f353dc700a77a88665e2d6cb4f73396ba3b4437cc3ee9a6a7e095de5f77277c5n/aRaccoonStealer
2021-06-04n/aexe eb352ae2d557edc7edd516a4dd9122a4d7c2ea0646f9844135b7360fec1805f4n/a RaccoonStealer
2021-04-30n/aexe 9528962252a217d88d24e372be0b977639c7d00f6777687adec8054eb8480784n/aRaccoonStealer
2021-03-30n/aexe 2f4dc31023ec39356b3aa220863cba0ac8b25770641423bccf79ee2b10d77278n/aRaccoonStealer
2021-02-16n/aexe 87d1ac5e576de8523091823e8f1ce44eccc2791757456833dd8c52d4379e402cVirustotal results 30.00% RaccoonStealer
2021-02-09n/aexe 16e587a78c6af7a68db2eee80ac40ccec784aeb261cfa7bab04c54608dc96324n/aRaccoonStealer
2021-01-24n/aexe 29c2bac557266c71d9ac29741361c48e0c2a9b2196dc10a8961a98d79fe3ec05Virustotal results 38.57%RaccoonStealer
2021-01-04n/aexe d86d337d19194ff8cc5868174b792080774e87455cb75c595ea51046b3351eefn/a RaccoonStealer
2021-01-02n/aexe b7b5a82b1c9b3c2ffeedcc57b2bef35f61c7e93ec2d5ae784f667e4d8d534009Virustotal results 30.00%RaccoonStealer
2020-12-23n/aexe ac8a0b325adca9cc88fc6ee32c912024adfe5228024712e1c757183c51260d16n/aRaccoonStealer
2020-12-07n/aexe 2dae80e04d518be8a6e1659d53afd6aea2eecc35086db46b4dd0a701a4b6f812n/aRaccoonStealer
2020-11-29n/aexe 03dfaeacfbc330e89f56bc08ca54f2b8071fb7b27043e342b020a1c0e78601b9n/aRaccoonStealer
2020-11-18n/aexe 2bea53a14d59fc7d772ea805af47b3b8ddddbf201a7e8d9e7ebd7ca422702a30Virustotal results 30.99%RaccoonStealer
2020-11-10n/aexe b99d5d0e6ebfd38c47b999a704cb2558797ed6b149356075036a0de57fbca261Virustotal results 25.35%AZORult
2020-10-28n/aexe 59a7beab1c7583b7995b157e9e87beb6fa0785c49784bf0b9d13bd143a696541n/aRaccoonStealer
2020-10-26n/aexe 4816da611b72e06e4b9481b729f754b462a268ce32392eb1eab1ee6776c7b7f9n/a RaccoonStealer
2020-10-14n/aexe 60152e8f49b376387ea78e05be97894b52c0dc862a9906248b12a441e840ee2dn/aRaccoonStealer
2020-10-13n/aexe 4be1e912f4b6f65dd938f0a6fa1f1d9b8d4c20fc25ac3c3189e10013c29e4dean/aRaccoonStealer
2020-10-09n/aexe ed9d96725b88ce0a3caee6d98c11369fb84a1d7eca3847db66abe63c49955f73n/aRaccoonStealer
2020-10-08n/aexe d8f37e199f10881b2045823553fd64f3f52ec616e24f2235a47dae7c435a3c72Virustotal results 24.64%RaccoonStealer
2020-10-04n/aexe 483c603c9fb09c2e908d782f7e6f3f04e6e26b7eaaf8ac637733a4e4a32c80e7n/aRaccoonStealer
2020-09-28n/aexe e9909c77bc763fd20edbfbd3b4ad1306399d365312ea50eb45079a4f54afc0e2n/a 
2020-09-23n/aexe 8f91c74180d8c1a5b3ae0cfc6f2b01304d4cf3fa29a78ccee0876f7b417cba48n/a ArkeiStealer
2020-09-19n/aexe 2082c4f394b08d4bb03367395ec711487ee88fc8eed4a7d0eff97f0ad8ea7ceeVirustotal results 29.41%RaccoonStealer
2020-09-06n/aexe 086f7495f2591e14daf2ee23e052937013a663d41b616738b48ef1f75f34a494n/a RaccoonStealer
2020-08-31n/aexe 43289193e35ad500026942fe9da85b24142625f3dba0e26b88f646bde55a0112n/a RaccoonStealer
2020-08-31n/aexe 7e9b9bbb673e25ab8ee790dbfd2a3e489c0d3a88ab73aafe671f68982f1b41dan/aArkeiStealer
2020-08-29n/aexe 9b1328490717e1e3c97216a17bf36b67103a40dae3bbac6865487e51fea82b32Virustotal results 35.82%RaccoonStealer