URLhaus Database

You are currently viewing the URLhaus database entry for http://45.15.143.191/files/file2.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1247592
URL: http://45.15.143.191/files/file2.exe
URL Status:Offline
Host: 45.15.143.191
Date added:2021-05-17 14:37:03 UTC
Last online:2021-05-25 02:XX:XX UTC
Threat:Malware download Malware download
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2021-05-17 14:38:03 UTC to abuse{at}dedipath[dot]com)
Takedown time:7 days, 12 hours, 6 minutes Bad (down since 2021-05-25 02:44:33 UTC)
Tags:exe FickerStealer link gcleaner link RaccoonStealer link RedLineStealer link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-05-24n/aexe 374981404ea470a8dbd8c23f24353b6865372fd9ae0ec76196076f358786e862n/aRedLineStealer
2021-05-24n/aexe 9459c29cbd2a32118375f6476421a3df233c80c289a163793d560f8b7c693848n/aGCleaner
2021-05-24n/aexe b102f1679bd809d715f0fb52bb54c33ef4a85067a29cec74da24a0ce838773e8Virustotal results 50.00% RedLineStealer
2021-05-23n/aexe abd4cf7d1a34383935fa7c757e96752ff61353f3b8633cf9a7ad7e059c3d8761Virustotal results 31.88%FickerStealer
2021-05-22n/aexe a2e4e400908d26e768edb6cfd2d3cfa7c7d53d0ad5743905943694fce55bc538Virustotal results 35.82%FickerStealer
2021-05-21n/aexe 847dcc504fe7f23641351d16f3d05672981d91127fc0452e59dca640ddbedabdVirustotal results 42.86%FickerStealer
2021-05-20n/aexe c5abf55b0591c96c64316cef1b7c5124f3b7ab3d05bc75ab80ae17c53d01dc72n/aRedLineStealer
2021-05-19n/aexe a990f23cc27493dc2ad2d71e2b6b0fea99678e75356bf55c36e4643bffeadff3Virustotal results 37.68%FickerStealer
2021-05-19n/aexe 17a54b98e0fa1559a540e2ec3c30f0c23d8a8cbe7b18c8fe1f4241945f314e5eVirustotal results 39.06%RaccoonStealer
2021-05-18n/aexe 9807369d53c50d2c4f9f1fe24bdb23dcff278b8683aee3d3b1c9bb0cabb66c59Virustotal results 39.13%RaccoonStealer
2021-05-17n/aexe 8a4fcda9c3f0f0fd4bc5f871edf239d6722797dbea1c3a91d966e972cfe74898n/a RedLineStealer
2021-05-17n/aexe a8aaa72d6ce21c36d0c97f663830fa57855cf9bbb43afc5f1c85e65658288852Virustotal results 47.83% RedLineStealer