URLhaus Database

You are currently viewing the URLhaus database entry for http://45.159.188.204/file.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1634218
URL: http://45.159.188.204/file.exe
URL Status:Offline
Host: 45.159.188.204
Date added:2021-09-20 00:54:03 UTC
Last online:2021-09-23 08:XX:XX UTC
Threat:Malware download Malware download
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2021-09-20 00:55:03 UTC to abuse{at}king-servers[dot]com)
Takedown time:3 days, 7 hours, 54 minutes Bad (down since 2021-09-23 08:49:54 UTC)
Tags:32 exe RaccoonStealer link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-09-23n/aexe 1d454b2f15c595b81224162a67b8d4a93adf5c0821ee59afa25b6d6f4069da62n/a RaccoonStealer
2021-09-23n/aexe 9fa8e44a908800a386005e75966db69f9d595e7abe301b8ea9c1dae0a9d27ab9n/a RaccoonStealer
2021-09-23n/aexe 6f41c038b40fd9a418d8cd8f41b072778917037b1af0c6e351716d59127555c6n/a RaccoonStealer
2021-09-22n/aexe 539ae706e5d4571ae319f202e8e70023b07ce2a7f8da909cf427a1214fd38f05n/aRaccoonStealer
2021-09-21n/aexe 70bf8bc8a753be3d29bb34133716be783f39224a57a54ac40b4941b9116eab51Virustotal results 32.84% RaccoonStealer
2021-09-21n/aexe e365aa3dff18f941f4115d457a1909358e793cfb5877681756fda6adfc3da552n/aRaccoonStealer
2021-09-21n/aexe 97c45c628bfc648cbde5dec7a4386c3222434516caedad7e34272188156dd879n/aRaccoonStealer
2021-09-21n/aexe d388570a875154350d40e4eaf4e656cdf44a3c17653e9f6c8be4f9d92bb335cen/a RaccoonStealer
2021-09-21n/aexe 3155e0baf18b8369f71e1cf4407774a78d13ae881a70c4083c02920354b4137cn/aRaccoonStealer
2021-09-21n/aexe 44bc3362221be1888156d1a7d5c29490a2c449d6cabe6766ecb6878500562057Virustotal results 32.35%RaccoonStealer
2021-09-21n/aexe e1ca919efc38953fe8529dadc710aaa5a75000279041e1350c699e36525abe7bn/aRaccoonStealer
2021-09-20n/aexe 3c95dfb117835ab0edf303278462ff7a513a8b65c8e91d85b918e2eeaf3b9fb2n/aRaccoonStealer
2021-09-20n/aexe 2ab4e506f5e4dea1747e35089fdd6097573760f649e5842994b8bfc598616028n/a RaccoonStealer
2021-09-20n/aexe 2b02adf3804e5619fd773ca23b73b96b30441ae42fbecab2d08fa0e3e3794cd8n/aRaccoonStealer
2021-09-20n/aexe 2fb51e6703b097776bf6612dcb9c07caa122762bb77703b4372fa426790894b2n/aRaccoonStealer
2021-09-20n/aexe 0eb895702062cc36d3e1558a08af9e6d5b3a12f838a2ec4566d2ac3671068151n/aRaccoonStealer
2021-09-20n/aexe 8305a87ead1a68264f4d0f691a4314f86c3b2bdd909d01028219e0d480238cfaVirustotal results 70.59%RaccoonStealer