URLhaus Database

You are currently viewing the URLhaus database entry for http://manojvashanava234.sytes.net/OSE.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:978561
URL: http://manojvashanava234.sytes.net/OSE.exe
URL Status:Offline
Host: manojvashanava234.sytes.net
Date added:2021-01-26 06:51:06 UTC
Last online:2021-01-30 00:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Blocked
AdGuard :Blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Blocked
DNS4EU :Not blocked
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2021-01-26 06:52:04 UTC to abuse{at}dataclub[dot]eu)
Takedown time:3 days, 17 hours, 11 minutes Bad (down since 2021-01-30 00:03:07 UTC)
Tags:exe rat RemcosRAT link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-01-29n/aexe d7538027cc00546c49be1c39e2258f2702ad567cc7c56603068b6490e8dda6b0n/aRemcosRAT
2021-01-29n/aexe b1eba9d62821249bd0de469a9443c21425cadddad2a3f8a37ff1e6d0754f5bf4n/aRemcosRAT
2021-01-28n/aexe 8575bb9b1552ac208a78510f068a989806f5a92186373c5f189048c391f67c97Virustotal results 32.39%RemcosRAT
2021-01-27n/aexe 3ce5ea40e72e6cade5615c3f01a6ca8a513e4e07842992ea67bef7cb8cd2376dn/aRemcosRAT
2021-01-27n/aexe 937360cf8b5e100b9d056cae8763471e4316bb653a0cc8108b92d4e2d402bfdfVirustotal results 21.21%RemcosRAT
2021-01-26n/aexe df3209a1414fa6c6d6459b106a4323e6e3b98f68173cad859e17b062d79e024aVirustotal results 30.99%RemcosRAT