URLhaus Database

You are currently viewing the URLhaus database entry for http://intecilab.com/10/data64_4.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2258510
URL: http://intecilab.com/10/data64_4.exe
URL Status:Offline
Host: intecilab.com
Date added:2022-07-18 06:47:06 UTC
Last online:2022-08-11 14:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2022-07-18 06:48:04 UTC to abuse{at}publicdomainregistry[dot]com)
Takedown time:24 days, 7 hours, 53 minutes Bad (down since 2022-08-11 14:41:47 UTC)
Tags:exe RedLineStealer link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-08-10n/aexe 62aad11b95837a186942af36542e2f722fc00d0e5a77b0da73d4b1732ef9b592Virustotal results 76.06% RedLineStealer
2022-08-03n/aexe 91ea49af0d4963b4144355bf5b44959c4ae33783dbe302ea5b89a7ee1cb4cefbn/a 
2022-08-02n/aexe 155a2d33f042bbda6faf834153500f9b14dc009f28b0c30438d128bbdace356en/a 
2022-08-02n/aexe fcff00495bd1235fdb2a75768a5483cfe0e558cc449d21af9903ff9d4a0b1b01n/a 
2022-08-02n/aexe 62581a6c1cc639f9be8ff59ca7c406db611c10eeaaa3a6ed0bf53291e4ab2e95n/a 
2022-08-01n/aexe 67707f28d4045383a9485955164caa7b3cec177e2a7837537c3ea159daa51856n/a 
2022-07-31n/aexe c82c7114c3a8ce0556e388545380e2345f60fd2c00dbc6d09fd7d9ccd6403571n/a 
2022-07-28n/aexe 9ba961d5ff08f29b7b9d0a9a8b7807c529ccb0522b76c7fab6248e0a6ec2c0e2n/a 
2022-07-27n/aexe ca700e280d5545dc95fd4877b1c0d6920e5a8d165a0fb5591d252ad2f73fc518n/aRedLineStealer
2022-07-26n/aexe b9245b5bbf5ca350653bad93d1409ce6f242590305b22b83746e82dfe41e0941n/a RedLineStealer
2022-07-25n/aexe 13f672297f1efe6a3eb73b8d3d7f2fa89117feef14a61054ccbde74a07ae2ef0n/a RedLineStealer
2022-07-24n/aexe 7e91ecdd27e7f9c7238d4657f06fcabab36b579c4908737f6c09f0ab998f6b74n/a RedLineStealer
2022-07-23n/aexe 60d7cdeee7a513c3ee73c7a0a58a25710895f6d8cbca3c2f87fce087c6270d05n/a RedLineStealer
2022-07-22n/aexe 5e862b563e65b06292496a91328ea02d550a4c133cb50839b3193896174db536n/a RedLineStealer
2022-07-20n/aexe 15406d92363c62eaf79ae2acfb86478fdd05dd3a32c25aeef703fe29e9d84f7an/a RedLineStealer
2022-07-19n/aexe 7a42cb1040bf40e534e3a942086109d210167d347e47b0077ab9b06b1277143bn/a RedLineStealer
2022-07-18n/aexe 2de1deb40b3b71b6340ee939d5817cdb8be6be3a1825788bf924298359d93c2bn/aRedLineStealer