URLhaus Database

You are currently viewing the URLhaus database entry for http://212.192.241.136/files/file2.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1288365
URL: http://212.192.241.136/files/file2.exe
URL Status:Offline
Host: 212.192.241.136
Date added:2021-05-26 21:25:04 UTC
Last online:2021-06-08 11:XX:XX UTC
Threat:Malware download Malware download
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2021-05-26 21:26:06 UTC to abuse{at}des[dot]capital)
Takedown time:12 days, 14 hours, 1 minutes Bad (down since 2021-06-08 11:27:49 UTC)
Tags:exe FickerStealer link RaccoonStealer link RedLineStealer link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-06-07n/aexe 684c418e39d173630d23b16023322988f6e59efaadea29b36331f6dc4817df1cn/aRedLineStealer
2021-06-07n/aexe 6004f67960dd84b3be6b2dc04265b2b87ee3e99fd00d302e9ee818913546c9a8n/a RedLineStealer
2021-06-06n/aexe da2eecc936dd818785dfec051c9f03af6a7e3ea15195076e0f67a73be789477cn/a RedLineStealer
2021-06-05n/aexe 2d73071b9f5918e09a5d9b5e06ed1a0732b640f474cd92e28361e889c68d7ec1n/aRedLineStealer
2021-06-03n/aexe 5a8d2aedc0aca614906d11d55637854bc0aca7921dfee6ee0578f559e46f6687n/a RedLineStealer
2021-06-02n/aexe 22fd43ba8685c7b60d1a5e459abf72aa5a60a51295f79967cd00a8db3f81bbdfn/a RedLineStealer
2021-06-01n/aexe fd12cf9eb333dd0faf1a07f1d8333e08fd2b08fff014cef2739b878a71a53ad6Virustotal results 47.76% RedLineStealer
2021-06-01n/aexe c2148996c74f2e0e4334ad036889a9fcf737aec7de30c1ffe7613b46498ea9d4n/aRedLineStealer
2021-05-31n/aexe 2683381f109514484635c401f53e3ae0cd5fb949e06a9127e12f986ac44f0335n/a RedLineStealer
2021-05-31n/aexe ab960c72ea326f3f979e1abd0e589a1d20ee65b5fb5552842ffc842a406d6a69n/aFickerStealer
2021-05-31n/aexe 36efcecbeb3a5c3de9a03ba9b68657f9da7b16e97e812e8e73f5faa7006fa01en/aRedLineStealer
2021-05-29n/aexe 4a2708b03dc190d7a2bb26c5ebcbd380ddc2d21f5bd8991be7f581d8b8e79737n/a
2021-05-28n/aexe 0482c72183ffa15391bf4ef466095fa6276b0831adbabb7315bf1e7752035ee9n/aRaccoonStealer
2021-05-27n/aexe fd054c25b838d950f01514a48c50e1bd3d6b9fe0a01b811a29fc603f0ebc677aVirustotal results 37.68%RaccoonStealer
2021-05-26n/aexe 5fd1dd59bf5bab111013850c2a213a72e70e0d8db132a8ae8cad3779b5ee7261Virustotal results 39.71%RaccoonStealer