URLhaus Database

You are currently viewing the URLhaus database entry for https://kos4.monster/index.php which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:943588
URL: https://kos4.monster/index.php
URL Status:Offline
Host: kos4.monster
Date added:2020-12-28 12:53:06 UTC
Last online:2020-12-29 09:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2020-12-28 12:54:02 UTC to abuse{at}ddos-guard[dot]net)
Takedown time:20 hours, 47 minutes Good (down since 2020-12-29 09:41:11 UTC)
Tags:exe Smoke Loader link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-12-29update_bff746.exeexe daef669c4c07ccb27d2bfb3e38f44a3ba88d0e26d8b0cbb94da8f9b4dfd9db1fn/aSmoke Loader
2020-12-29update_39dda6.exeexe 1787e55bf83badaebc0f11ba919c1ae28afd3e14dc597d1336167320af4f231dn/aSmoke Loader
2020-12-29update_fa23bb.exeexe 597c1dff871d2d2391f1b73583d4f14fb384198b7d16d107925523ca44cdd8d2n/aSmoke Loader
2020-12-29update_0ce2f9.exeexe 8287906a9a9338d4bc89276bf8086347d32120cf3a5075e16d105d610c3e4da5n/aSmoke Loader
2020-12-29update_9d8fe7.exeexe 52aeb2a84c9652b097aef1a053a4e8b4a7c48745a7e939419747a275e3ea6294n/aSmoke Loader
2020-12-29update_a00dc4.exeexe 430ff3dba43b7a63c4a04a52bf6794044a86c0084843c9f115118e789982bed6n/aSmoke Loader
2020-12-29update_baf355.exeexe c2fb724acbf58e1196bc979ddc11e835baa40797c62ac88ac0e5b3f51f829176n/aSmoke Loader
2020-12-29update_8d6386.exeexe fcd35fbd0922e8e4f5cc5ffb481c6f367ec0b13f0f77c406131a8576558ca22an/aSmoke Loader
2020-12-29update_077618.exeexe eb578a996987c1bc8ef77f0c5f204a115faea3a5d88190fc076dbbc9cb3d98b0n/aSmoke Loader
2020-12-29update_67d9f1.exeexe c17029c38a9daf87e7e19c2e241e9a0eaba1979787f26de55dcd66980b015f00n/aSmoke Loader
2020-12-29update_f27dd5.exeexe bc93d2afb3050904e62f765768f681132d63f88f196c3c2d0668ba6530348064n/aSmoke Loader
2020-12-29update_467831.exeexe 5dd71da9e576dc4b91f9b9ded0c0b7648604938fb83343063e44b99bc3eb23c6n/aSmoke Loader
2020-12-28update_c27733.exeexe e5e79c6dc16f0979868b0c5d78128d03c98b233db16d9a994a45daf01088183dn/aSmoke Loader
2020-12-28update_9b4361.exeexe 5f0ed96dd82e54969f74392ab82759116ee18a2232f44b3cf9754b216d83e2a2n/aSmoke Loader
2020-12-28update_395819.exeexe 534bbc160d7b57080707e7ac87dc9c0a9fcf8b13f86887401bf53fb2dbe6ccbdn/aSmoke Loader
2020-12-28update_8a2d33.exeexe 4216f800f1974308bb475952263e2dfb440551f271ae657eb2633062b98264fan/aSmoke Loader
2020-12-28update_6e3582.exeexe 19675bca8b5bd178071602a07aabf48c756f0405afb9611c504d068c9c2fead0n/aSmoke Loader
2020-12-28update_338f3b.exeexe 6fd5feb7f1874327b704fded856cb485b1c9335f4ae1963711007e446fd1a647n/aSmoke Loader
2020-12-28update_076ec1.exeexe 448c9cc1d7ec2eeae433ea0f955802adfbb6d97546c99855812c11942021776en/aSmoke Loader
2020-12-28update_0b9fde.exeexe 6745aeb1cc8de5e42a94850247ea3d54c65865c95c2492006cf8a7b44da2a961n/aSmoke Loader
2020-12-28update_a46a6c.exeexe f0e943a3190bd714808505bef47752c11cf58ae444bfed34d44675ef4a043d8dVirustotal results 26.76%Smoke Loader
2020-12-28update_42c428.exeexe 0969327fda05101320538ec7c3df4ca3a024fdffc9ff58bcf5570a0960bd9df7n/aSmoke Loader
2020-12-28update_149941.exeexe def3ea13d6bea242eceb7a032076e4127b463f83acab8e78bb60ba4ca4ae2709n/aSmoke Loader
2020-12-28update_2ccaf2.exeexe 1fb4559d186a1c07bc4de4617e3a7373b6e76e11135b212e7771bc8518c902aen/aSmoke Loader
2020-12-28update_c9b746.exeexe 310966da92c632e2cb4b22c9efc1bcbffe71c54be89cdb4b2b2119611be25fd0Virustotal results 25.71%Smoke Loader