URLhaus Database

You are currently viewing the URLhaus database entry for http://medicelcoolers.cn/file2.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:948953
URL: http://medicelcoolers.cn/file2.exe
URL Status:Offline
Host: medicelcoolers.cn
Date added:2021-01-04 18:08:03 UTC
Last online:2021-02-08 16:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2021-01-04 18:24:02 UTC to abuse{at}netim[dot]net)
Takedown time:1 month, 4 days, 22 hours, 20 minutes Bad (down since 2021-02-08 16:44:09 UTC)
Tags:AgentTesla link exe Formbook link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-02-08n/aexe 2cbb3d1614bddc53880c51b30139364e5d4bc094768f160bfd4928251798af43n/a
2021-02-08n/aexe 5754d62745da6857f873cbc579693a6a0d782ac6bb8d6b30b2336e0ecfc3f688n/aFormbook
2021-02-07n/aexe 444975c8ad5b7502007aea3b52d6acd7ec21e9d8b93a2549f78fd1c416ebecd4n/aFormbook
2021-02-06n/aexe 844d050eaec68d3fd332e4291faee119e3b26b509bbfb5e0324e431d4940eef2n/a
2021-02-05n/aexe 1a90c85df972b45ce610304517be47a742b7cdba4f19f54c9a6b7244649c9290n/aAgentTesla
2021-02-04n/aexe aae16a8e4b46f0c8305c710052e4556ff3e8a7862b5a9b4c1502eb9fc573cea5n/aFormbook
2021-02-03n/aexe 8134d5d3ae2e9d2396e847e61dcaf0727485119dda49142f59ebda57525bd01fn/a 
2021-02-03n/aexe 4698bc9f2d175db34261a75b9af17e3a6da6e1bf2df9c287c37fcc133d421cd6n/aFormbook
2021-02-02n/aexe d1a94322d53165f8a59fb1ba9309872100d115f0119dbf6892f75267c45dca92n/aFormbook
2021-02-02n/aexe e04958e6f3f2ff431fa5ea88f00d74f7344e722488d98610d2ee25f60c3270ban/aFormbook
2021-02-02n/aexe 74069d20e8b8299590420c9af2fdc8856c14d94929c285948585fc89ab2f938fn/aFormbook
2021-02-01n/aexe 23d45e8af999c98cf3f241fe633ea391f057fe2223ca01a1d403906309defddcn/aFormbook
2021-01-31n/aexe a8f9071742a099d966978a172a1f5d797d25abc1ea622bf5c4aa64a121718d9bn/a Formbook
2021-01-31n/aexe 6cb285a092d8f81a18abd0179fb7885a6f8a08a817ac947561be4eb3775af6d1n/a Formbook
2021-01-27n/aexe 3682691140da912f7a282b23de9aaccffa2ad8178665e6a8ace9d745a8fb8cden/aFormbook
2021-01-27n/aexe 4996310387ecc6608c106ed08eaa2151f1fbe8f855f4b41c923c05f89e6eafcfn/aFormbook
2021-01-25n/aexe 45edd72b7b04c327b5c5278a3074d6e0bccbdf2ece95c524f1e5342bd6910dcfn/aFormbook
2021-01-22n/aexe d965d27137adfad2177b23fcfa9a7b7e09a0037388ff48a01fb3f4bc84dcbfd3n/a 
2021-01-22n/aexe 369cc1abc138e894778cdf35a8ec3875f326b718963f96b6d496d273be8e129dn/a 
2021-01-21n/aexe 486035f5d7f5cffc2c03aee2ecb06252449dc9330cae4b8fb35662010f59eab8n/aFormbook
2021-01-20n/aexe 1a1316858bdc617d23e0330ddcde1958d2e95a083fa04020675ad4fb01780c46n/aFormbook
2021-01-20n/aexe 285b8a6638f87b87204ba68570315a41570229ce3f7ecb2014437aee9e0d5875n/aFormbook
2021-01-20n/aexe 4037c6e5805cf9dc7e8e14295671b1e14cf04279df5120ccab304d348946cbf6n/a 
2021-01-19n/aexe 2d876129c69f0f4be0c87aeb20cdc38ae8f5db29bea6f87807946b89e0b61a50n/aFormbook
2021-01-15n/aexe 57fcc02e839d4ae0b8965ed55738960a952006f5e70ee1317f2bfacb97a43a5fn/aFormbook
2021-01-14n/aexe 59fed56d0910ec03a5dcd085d18cbd01b84dfc223df508136f6f937cf948c7a8n/a
2021-01-14n/aexe 70c743e95191e4e94663db91223298ebc12e871c3d77f51dc3443d592a879468n/aFormbook
2021-01-13n/aexe 767b1b32d4ac4cec73967590ca5b28c3e0f4d709c0773e3f4021774f15a2483an/aFormbook
2021-01-13n/aexe 2abb16d594f4b36fc8b8aab8cab7736350421c619cec8e12e8975e87f7a99faan/aFormbook
2021-01-13n/aexe 75883e51d64d24812b56da68bc0d2747060a7d50005b92c0a76b808ba76c511an/a
2021-01-12n/aexe 9548c6a9da2d6cee9d27565c0055be4429cabfae9287ab3e525aaba66fd67032n/aFormbook
2021-01-12n/aexe 720e61fb0432f8b6beb2c3c16f78d96de2868e2549b8fb73f4fe43afe9f2960bn/aFormbook
2021-01-12n/aexe 4abfdb9315d534afdc9907bcf369d15a121e02d40dc772dece65de6ee2ade651Virustotal results 20.63%Formbook
2021-01-12n/aexe d2fc030aa693bc5eb67fa48f9be53295af2c95b9b39365332f779225f89f7317n/aFormbook
2021-01-11n/aexe d28c56accd73a0c2d4c5a62a288ae12af64ee719ac6060ef2c7ea9be3c5d400fn/aFormbook
2021-01-04n/aexe 5ddd5f7273a57057d3b0ca1f45afd5acb29adb29c304383e34bed3c0ca6e187aVirustotal results 16.90%