URLhaus Database

You are currently viewing the URLhaus database entry for http://37.0.11.8/WW/file6.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1478751
URL: http://37.0.11.8/WW/file6.exe
URL Status:Offline
Host: 37.0.11.8
Date added:2021-07-24 18:18:03 UTC
Last online:2021-08-10 07:XX:XX UTC
Threat:Malware download Malware download
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2021-07-24 18:19:03 UTC to abuse{at}serverion[dot]com)
Takedown time:16 days, 13 hours, 15 minutes Bad (down since 2021-08-10 07:34:54 UTC)
Tags:32 ArkeiStealer link exe RedLineStealer link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-08-09n/aexe 1d169f4e5102f1c9a69a09a5a1756b3360ab3d592196bcd62c922a99bc50d3b0Virustotal results 23.19% RedLineStealer
2021-08-06n/aexe 7ba93bb22e21061429a33268b44d2a69b441e4fddc81c6590b429c470854fa35n/a
2021-08-06n/aexe 57c362ce666df098b6f501828fad20d1b4ff36398634ca4153de9dc43ff1fb9cVirustotal results 50.00% RedLineStealer
2021-08-04n/aexe 2aad1516e50404359a1063530b0ca52c816214770c63463abe657d17d7f90982Virustotal results 61.19% RedLineStealer
2021-08-04n/aexe 4d24b00d5dbb2b3b20889df77a20e6d8a4a3c2ee0eecdd44ec4060ffb0cd96fbVirustotal results 38.24%RedLineStealer
2021-08-02n/aexe d9d4fe6efccd5c52dd72e6c252e4dc52dac4daafe2d40968d583796d09b4b2a4Virustotal results 31.88% RedLineStealer
2021-08-01n/aexe e02437cf00eea2bf3bf19fe48a9b19b3cc31360e22f101a0c24d5653b5b75467n/aRedLineStealer
2021-08-01n/aexe 186ed331825e60b2dd72fc250d4b8a12951f41045272bd7a155041fa56560a75n/a RedLineStealer
2021-08-01n/aexe 2fbd5eb9bad43230e61f58e48defe40201fb003546bbe1888c95c6ce38587a9dn/a ArkeiStealer
2021-07-31n/aexe 0fe40289008f481b84b73f77c87efd5a737df057e19d9799a7c8e5b0b3a29539n/aArkeiStealer
2021-07-30n/aexe 345ab0139a94ac9aa2c07ecb0ca7e8896bc0ebb735d81d318b7fc8364488fbefn/aRedLineStealer
2021-07-29n/aexe 4d7164f19dd9253bd7183d0079e9214228fe5807f0767177d4dcb81a9613f630Virustotal results 27.14%RedLineStealer
2021-07-27n/aexe 4665099a7d15f482c5fa1f481faaea05c68f4c3f78b813461ec6b33b399128c5n/aRedLineStealer
2021-07-24n/aexe d9886bd374d41e121835cb726da295b753c5c6307949da904b1cf3b69bc1fcb9Virustotal results 34.29%RedLineStealer