URLhaus Database

You are currently viewing the URLhaus database entry for http://ceoseguros.com/css/c.jpg which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:73183
URL: http://ceoseguros.com/css/c.jpg
URL Status:Offline
Host: ceoseguros.com
Date added:2018-11-01 19:30:06 UTC
Threat:Malware download Malware download
Google Safe Browsing:Clean
Spamhaus DBL :Botnet C&C domain link
SURBL :Not listed
Quad9 :Blocked
AdGuard :Blocked link
Reporter:@de_aviation
Abuse complaint sent (?): Yes (2018-11-01 19:32:01 UTC to abuse{at}namecheaphosting[dot]com)
Takedown time:1 month, 2 days, 19 hours, 34 minutes Bad (down since 2018-12-04 15:06:11 UTC)
Tags:exe Imminent link ImminentRAT link rat

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTSignature
2018-11-29n/aexe 16b789447b7c0157bdc3c4e1c0982ad71d6403420244448c89d16f9230b0a756n/aImminentRAT
2018-11-28n/aexe c2516ab88d5bf4aec69b337c9f0bcb9ca2b1b6a7d5abc2f6c1341ed8539c9676n/aImminentRAT
2018-11-27n/aexe c430529936d9ff03e632a56933e83da71892dcf5679183c36e67713113968cd1n/aImminentRAT
2018-11-19n/aexe cc6333bb0760020cb5813445dc9d837d2ba6f6dac4daa9822b570f84cc6efa09n/aImminentRAT
2018-11-17n/aexe 0e730fbd55791807de0c882f8165a05dc4e03231aae5bffdca014569dc045ff0Virustotal results 29.85%ImminentRAT
2018-11-09n/aexe d07f8aa03c96baaacb17564a7bd9d8be6b7effb347a1a98e1ea201a528e4ff8fVirustotal results 31.34%ImminentRAT
2018-11-06n/aexe 35ca4a96e28439a4e7fbacf48599f7008213b9bcea4e30c22546be8c6b53ef27n/aImminentRAT
2018-11-01n/aexe 6ba50ee9e295a66d1970bfcff362b260f3cc17421d8e43ead4d24b2cf9011e89n/aImminentRAT