URLhaus Database

You are currently viewing the URLhaus database entry for http://intecilab.com/12/data64_4.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2258531
URL: http://intecilab.com/12/data64_4.exe
URL Status:Offline
Host: intecilab.com
Date added:2022-07-18 08:34:06 UTC
Last online:2022-08-11 14:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2022-07-18 08:35:05 UTC to abuse{at}publicdomainregistry[dot]com)
Takedown time:24 days, 6 hours, 6 minutes Bad (down since 2022-08-11 14:41:46 UTC)
Tags:32 exe RedLineStealer link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-08-10n/aexe 9679101f02e2eb51cd0b8350c81a8b44de26c65f437c265e95004c0c10720835n/a RedLineStealer
2022-07-29n/aexe 8f697b2a7325d1b14169b6520b81dcd8a22cbfe8fd46660fd12dc2483d92ed72n/a 
2022-07-28n/aexe 36c2313924017a76b45eeb1c87afc0dccc3b432c0b1454627e787c15bc0adcd4n/a 
2022-07-27n/aexe fab99f1f8b37a2a6e9c2cee27770eb9a8aad99c76167b2cc68755e8c84ac3fa8n/a 
2022-07-27n/aexe d83bb09b159c6436ae00274d3f868c5436556e0c450a994ff7114d648857777fn/a 
2022-07-26n/aexe 71212a3d1c7fdc32a1b21728f88a64471716b3ceeb608321a3dbeffcb6bd83aan/a RedLineStealer
2022-07-25n/aexe 28c93f7217955d3ca3cd662ba46cfa2d248c15f9488d9350660634ba668c75b7n/a RedLineStealer
2022-07-23n/aexe 6edf5fc98e5cad2617531772e8535766abbd97757759091211a9c38ad654f883n/a RedLineStealer
2022-07-22n/aexe fb0348bf4f159bc6ffeb2a859b79c855bcecbd3ce34c8519d8af6dc1425d5393n/aRedLineStealer
2022-07-21n/aexe e80bbb31799d530bda739aede3316faf869467eb036f917b0bb3cba134d6ed9dn/a 
2022-07-20n/aexe 36e7dcc21ae15b1dd0766c73689a7dd6177b9852666778f24c5a2310a2ffe4dan/a 
2022-07-19n/aexe 582010c79ecc6390b1ec34bb5365c83966b09cbff6c710e385b2e1d15c25a2a8n/a RedLineStealer
2022-07-18n/aexe d6d6d953abc50e1191cec8c96ef33531c71a20c3e83109e7e4488c27f69c741eVirustotal results 40.00%RedLineStealer