URLhaus Database

You are currently viewing the URLhaus database entry for http://217.8.117.77/net.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:790801
URL: http://217.8.117.77/net.exe
URL Status:Offline
Host: 217.8.117.77
Date added:2020-11-05 20:24:05 UTC
Last online:2020-12-08 07:XX:XX UTC
Threat:Malware download Malware download
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2020-11-05 20:54:04 UTC to sbl-removals{at}spamhaus[dot]org)
Takedown time:1 month, 2 days, 10 hours, 44 minutes Bad (down since 2020-12-08 07:38:11 UTC)
Tags:AZORult link exe RaccoonStealer link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-12-07n/aexe 2dae80e04d518be8a6e1659d53afd6aea2eecc35086db46b4dd0a701a4b6f812n/aRaccoonStealer
2020-11-29n/aexe 03dfaeacfbc330e89f56bc08ca54f2b8071fb7b27043e342b020a1c0e78601b9n/aRaccoonStealer
2020-11-18n/aexe 2bea53a14d59fc7d772ea805af47b3b8ddddbf201a7e8d9e7ebd7ca422702a30Virustotal results 30.99%RaccoonStealer
2020-11-10n/aexe b99d5d0e6ebfd38c47b999a704cb2558797ed6b149356075036a0de57fbca261Virustotal results 25.35%AZORult
2020-11-05n/aexe 59a7beab1c7583b7995b157e9e87beb6fa0785c49784bf0b9d13bd143a696541Virustotal results 78.87%RaccoonStealer