URLhaus Database

You are currently viewing the URLhaus database entry for http://intecilab.com/10/data64_2.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2258536
URL: http://intecilab.com/10/data64_2.exe
URL Status:Offline
Host: intecilab.com
Date added:2022-07-18 08:57:05 UTC
Last online:2022-08-11 14:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2022-07-18 08:58:05 UTC to abuse{at}publicdomainregistry[dot]com)
Takedown time:24 days, 5 hours, 39 minutes Bad (down since 2022-08-11 14:37:55 UTC)
Tags:32 exe RedLineStealer link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-08-10n/aexe b39c1a0059d5729e112e76eb6e89d60c817f59fd113891190355cbe03a8f3c3aVirustotal results 54.29% RedLineStealer
2022-08-07n/aexe 4125b6512302d6a7c665dfeca20164f309e9c4005fc7c6155afd5bba6737f027n/a 
2022-08-04n/aexe acb9b3ed700a5ac279374068d7df6691f2dc6fc74ba0e7641a16e67f40b94dfcn/a 
2022-08-04n/aexe 03c4cb1b244b74087cbb284f2170477279c40a57da67cf83a4da9f7b6a86642cn/a 
2022-08-04n/aexe 9b85859784a65ea13251cf62fa8136538fd0737eafdbb249c73db36be4ee9de4n/a 
2022-08-03n/aexe a9a5a76061f78d1a1ad6a96780d6df18b15bfbd470d9e109aa3e36ab895ea070n/a 
2022-08-03n/aexe 6c353254fbda17001e3ba0c081ff6c7f1fefff021e87862648c03a0d7a373b11n/a 
2022-07-31n/aexe e4bbec449608ab66f47967e204afd71be9bb87ae1a386c56c23d2305105537ebn/a 
2022-07-31n/aexe 48c2b90a3513413c6bf825c0532397b837c79f96e75ef8fddc77049f66e03456n/a 
2022-07-30n/aexe ef66ccd973bb67c8fbc8ac1fd9169bb2ede75348a6f68f44b143ef9ee299eb52n/a 
2022-07-30n/aexe 32adc7349a3fe7fbfeec90d885307ce8e87db4043f10e547a31f040f43b2bd81n/a 
2022-07-29n/aexe 613ad445344ca32f72c4300b9be6e44d24a027959d64a8d24a48d80f4c79938dn/a 
2022-07-28n/aexe bbd889fcc652269297308d0f544d8417a99aaff5a1164e10389af7d0b83d03cdn/a 
2022-07-28n/aexe 9b579b869806df95630827e582d4f342c1932077feb3b11f6cd18566a9587335n/a 
2022-07-27n/aexe 14f80e1fd5208d326b1cde734405a3d1de29fbaf9da5e20206055377ba51637cn/aRedLineStealer
2022-07-26n/aexe fb266c18d171b8506a6aa788e446246afb3292c390b49dd8213bd682eb98d47fn/a 
2022-07-26n/aexe d400f72babb8d1860cb0f5e3a48322ac0dcb5cc5917f6099f48f7ce5be5f9086n/aRedLineStealer
2022-07-25n/aexe 225b1a73b22299aacea0c0ca49601c9c23c0ff2431b9adce0f5416d5e2c988a8Virustotal results 24.29%RedLineStealer
2022-07-25n/aexe 66a9bb5aca16baff27fb08246384857f61b6e649f5a86e4dfe3e57ceba244148n/aRedLineStealer
2022-07-25n/aexe 0ebefc2d6015115f179c2d4a0c9d28d43c3fab4233eec52a2dd893d6834cd220n/a RedLineStealer
2022-07-23n/aexe 05857ac041f7ed9e0b55ec929a03e48321a4ed97ad8b3adc5e607845ce3d7badVirustotal results 24.29% RedLineStealer
2022-07-22n/aexe 19c64b42979e40a6c30e320a7126555ec456b7452bb60fd78a0f6206b634216bn/a 
2022-07-20n/aexe 158e969da4640ec11665b2c34d180c94c1dd92bea1f7144e21c5f2f9823f0e7aVirustotal results 26.09% RedLineStealer
2022-07-18n/aexe b0187f7834ad6a332fea9b47b758f70f02a592cffa824c13b41772f3912487deVirustotal results 37.14%RedLineStealer