URLhaus Database

You are currently viewing the URLhaus database entry for http://212.114.52.159/forum/docs/sefile.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1521535
URL: http://212.114.52.159/forum/docs/sefile.exe
URL Status:Offline
Host: 212.114.52.159
Date added:2021-08-10 09:16:04 UTC
Last online:2021-08-10 22:XX:XX UTC
Threat:Malware download Malware download
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2021-08-10 09:17:03 UTC to abuse{at}combahton[dot]net)
Takedown time:13 hours, 0 minutes Good (down since 2021-08-10 22:17:24 UTC)
Tags:32 exe RedLineStealer link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-08-10n/aexe ec4a272e4a2d1549afd0c0bd78fa56565fc4aebe1a97c6dcc38b1467d9c70c9an/a RedLineStealer
2021-08-10n/aexe 55e286bb13420afeecea700c625defad81894b82588cf1b772e03153ad318f9fn/a RedLineStealer
2021-08-10n/aexe f5c2f5e4d763c1d7bfae62d2681b0412bcd4a6cfb5bddd7fffd0e71d55d03728n/aRedLineStealer
2021-08-10n/aexe f44ff7cb9601c2c29fd466c679c9dd4bc608476ddae6946149089b22536742b9n/a RedLineStealer
2021-08-10n/aexe 9dfa978e19dc95f66a5005997850d0bb18865332c3bdd76b095e9044d1473d9eVirustotal results 32.84% RedLineStealer
2021-08-10n/aexe 6dbb86d26bff7146b5d37be035fbda81667bde0b43b6a5a53ef204b9289d85d5n/a RedLineStealer
2021-08-10n/aexe 371827d3309f0b2bff933583e4b4ab2150c6e40c6396e66b3e029a1ec97c99deVirustotal results 28.36%RedLineStealer
2021-08-10n/aexe 4e9c37fd29a9a3b71db554a088bbd52d91a43650463dacb2bac1174c89509e28Virustotal results 28.33% RedLineStealer
2021-08-10n/aexe d81fa7107a59c18f2cee98c1eba8dee5752f05700efb152f49eacca745eae3e9n/aRedLineStealer
2021-08-10n/aexe bf96ed8aa602b7611ef90657e75b9612d2a49e57acdfaf4c3f8b40ef562651ccVirustotal results 32.35%RedLineStealer