URLhaus Database

You are currently viewing the URLhaus database entry for http://212.192.241.136/files/file20.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1288377
URL: http://212.192.241.136/files/file20.exe
URL Status:Offline
Host: 212.192.241.136
Date added:2021-05-26 21:28:04 UTC
Last online:2021-06-26 23:XX:XX UTC
Threat:Malware download Malware download
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2021-05-26 21:29:02 UTC to abuse{at}des[dot]capital)
Takedown time:1 month, 1 days, 1 hours, 43 minutes Bad (down since 2021-06-26 23:12:42 UTC)
Tags:exe RedLineStealer link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-06-09n/aexe eeafeaa06f77c3fcedafcf46dcb18a8c0b931dcb4696319bb94b191eb0c9417an/aRedLineStealer
2021-06-07n/aexe 2d251c910c029085593f93336c2d8cec08339a84c535751c1a5151169cce6057n/a RedLineStealer
2021-06-06n/aexe 4e1fbb5eb302c06c8f5bbeaef4acbc1dfa3149a8194a8e53b57eb49efdc610a2n/a RedLineStealer
2021-06-04n/aexe 2453e8bd99f55b14f3034b2df97689a928074ed695cc498e3e0a50a3708ee3f9n/aRedLineStealer
2021-06-03n/aexe 722cd3f44cb650e943e7355e4b052025f6d5c1d1c2f3f3d0822d19a0f0b35d78n/a RedLineStealer
2021-06-02n/aexe 06032804f9509d69c1569c99f0e4eed0aa035d26eee55da4deaacde75aba29acn/a RedLineStealer
2021-06-02n/aexe 4aeff0a9aeaaf5b99bf1cf428c7e5dee1effb8da421bb4111c8bc76d0c455a9an/a RedLineStealer
2021-06-01n/aexe 08112c8962e6589cf68c09ff6b286858347650dd3dafdcd60e9d8790f64649bbn/a RedLineStealer
2021-05-31n/aexe c1da35f460fce531011b8b79fe97060ceab3a90842f9a59baad5356d6619bf54n/a RedLineStealer
2021-05-31n/aexe e3d4726d00a8dcc7f1361abda84e67faf4c45ae7a486a4888afdef64609805d1n/a RedLineStealer
2021-05-30n/aexe 3545b735ff6639ce47e84351654095345b15e953ca133debf551a5643136934bn/aRedLineStealer
2021-05-29n/aexe 520a1566611e989b387d54f1097fc678df4e42393c44ba51b12ba4fe3972678fn/a RedLineStealer
2021-05-28n/aexe dd2a442b93dde561d141600f6f592dd04758e8e4dfc8d45aa22fb0a9abf88dd7n/a RedLineStealer
2021-05-26n/aexe 4f297cb7c7f3ee019f7f2e99592fa5c9a5238b4bd9ebcf67545873216fd80eeaVirustotal results 17.65%RedLineStealer