URLhaus Database

You are currently viewing the URLhaus database entry for http://212.192.241.136/files/file16.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1314774
URL: http://212.192.241.136/files/file16.exe
URL Status:Offline
Host: 212.192.241.136
Date added:2021-06-02 06:23:04 UTC
Last online:2021-06-04 07:XX:XX UTC
Threat:Malware download Malware download
Reporter: vxvault
Abuse complaint sent (?): Yes (2021-06-02 06:24:03 UTC to abuse{at}des[dot]capital)
Takedown time:2 days, 0 hours, 37 minutes Poor (down since 2021-06-04 07:01:26 UTC)
Tags:exe RedLineStealer link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-06-03n/aexe 6401561835ebe8f6e5823ad41a720dbef5c08bb59a3df7fb57031478fdec0d6bn/a RedLineStealer
2021-06-02n/aexe b328686e06dfd64ca851edd6db5e9d6ca58813c71771e78f83e8080f1431287an/a RedLineStealer
2021-06-02n/aexe 0ad4be883521bdd929a07a6dd7a3d475b6a59d5a94c9688cc7582075e517e834Virustotal results 23.19%RedLineStealer