URLhaus Database

You are currently viewing the URLhaus database entry for http://62.204.41.118/EU.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2261571
URL: http://62.204.41.118/EU.exe
URL Status:Offline
Host: 62.204.41.118
Date added:2022-07-26 15:21:04 UTC
Last online:2022-09-20 01:XX:XX UTC
Threat:Malware download Malware download
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2022-07-26 15:22:05 UTC to abuse{at}gorizontllc[dot]msk[dot]ru)
Takedown time:1 month, 25 days, 10 hours, 24 minutes Bad (down since 2022-09-20 01:46:21 UTC)
Tags:ArkeiStealer link exe RecordBreaker link RedLineStealer link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-08-23n/aexe 18e1de18c5e3e78a5749c174fb6b8999f930a818e40bb4c3ffd7800d635d23a9n/aArkeiStealer
2022-08-22n/aexe 81e0959262728a0870a5fd08f80207d1157bdf2e00dde7d8481450fa17f5d718n/aRecordBreaker
2022-08-21n/aexe 8d1605e7fc3ae53fe55eedf30f612d03b594697be075f093a3675bbe5529e954n/a RecordBreaker
2022-08-20n/aexe 1800a59347a0968cadae0d92bb90c8b0ea3ece7d29b519ef950c5e3c483b85b8n/aRedLineStealer
2022-08-19n/aexe 13f8728b95a9ca527c725c440726814ffbc88eeaf9323e50958fa3a8df969372n/aArkeiStealer
2022-08-16n/aexe c1b694fc1a8292381f26293bd47a8093c49d48874937be131fa2e8f35e847b58n/aArkeiStealer
2022-08-15n/aexe 252b3ba4160da0cf2275f04387d99315af1b336c66b012f450f97ec5ff1b74bdn/aRecordBreaker
2022-08-15n/aexe 832beb61827b37c73e6b150ee7115ed6c23f77678534534ce10af7d833d5de54n/a RecordBreaker
2022-08-14n/aexe f0f8fb599991890cfa572fa802710ca60a61f8d2f64edc7a0e7b24b7811c20d1n/a ArkeiStealer
2022-08-13n/aexe d70e9f082865c471e3fc2a6f4c94484f6efa8f6b8b8498f7290fc64d45b5d522n/aRecordBreaker
2022-08-12n/aexe 3bcf69e225f3a55bdc75f5622ad66736f6bab02ee8771ebd10b094bf99497a18Virustotal results 52.86%RecordBreaker
2022-08-12n/aexe 8e5ea2bc3b2e0b05700912fb4a0d2c7bfb74ca0f31d273948ffe4fc3f584461dn/aRecordBreaker
2022-08-12n/aexe 30bd7de6bb1a1ba574999d7a6f4e3c8f20b9e4e6f477d4dfb3bc47269bf6b441n/aRecordBreaker
2022-08-11n/aexe 8c1375cd0045fde3e193160b0586c75592c574ff743a08a3a28fc0daced02502n/a 
2022-08-11n/aexe 7ad2ecc56160b66356e7b1c0a237bbea3a687e100b3bd9a14c4b4a23bb095d05n/aRecordBreaker
2022-08-11n/aexe 9a62e6ee0e71139a8e68a6092c27deb32077a27980c767a44cd5138ffcdca837n/aRecordBreaker
2022-08-11n/aexe f3d62ca6b2dfd77bd362dc1f4ec6e99bb43302e82583e6e8dce38df9ea1f6fe5n/aRecordBreaker
2022-08-10n/aexe 79ff85f42095cb721a36127f3e837a5e45a53645398215da960e15308879a58fn/aRecordBreaker
2022-08-10n/aexe 0aae4f734962cba43eda599dbff153929a18ce45e814176b5e37998858c70515n/aRecordBreaker
2022-08-10n/aexe 9f9723c36218451566fb3915db88bd363c367c288bf364256543a5fa77ba4c47n/a RedLineStealer
2022-08-08n/aexe 598149dc5b3ce4f2d74fba63f24dfefe4d89c9ac773c5ecc202561d6c7329bc6n/aArkeiStealer
2022-08-07n/aexe a22742c7a6e494902e20dc3f800c4277f7d4089a2fcad9c014214bec7cebe803n/aRecordBreaker
2022-08-05n/aexe 7fd0c18e417e77f1b4019024738211632265864ea3acf9f985eea6c0c75ba3ban/aRecordBreaker
2022-08-03n/aexe aef619f1c892e20591b6f57ae94919de0f64321bb3199992a6be157396451828n/a RecordBreaker
2022-08-02n/aexe 4ef70b979f1256128e03458bca91eb840c141ca488d40249a79a7f5b41bb9115n/aRecordBreaker
2022-08-02n/aexe 2a6e74b408ac4ee8c066c3cc206a7992d50b9d3507d63c2dd0d2d396adcb6daen/a 
2022-08-02n/aexe b91e7fd40c84298ad53bae03f61d45d9e8ea323c6fecded7a4b98f53ebf36110n/aRecordBreaker
2022-08-02n/aexe c745f52646d04d51894ca6ca906021647619e87586d1c2f63a01810163371680n/aRecordBreaker
2022-08-01n/aexe 01e1bbb9bb2c3e5ed68df65a2846faa611ec9bfcbf664e0abd5b72005502cac4n/aRedLineStealer
2022-08-01n/aexe e7924441cf355557372d5d058eeb30341f9bb4be80f54449ea66b288d183b928n/aRecordBreaker
2022-07-31n/aexe e5ba0907253b3701b2120953ecbba4e37690d70ca63f80dea28c5d488c2b7a7bn/a RecordBreaker
2022-07-29n/aexe dccacac449f4759fce8fbf53c21e48072e8c3e43fe036e77dfc8e5170657d227n/aRecordBreaker
2022-07-29n/aexe 972b7053006775f8a9144e8be644443c2750ac2737978c7d975d675c9e23d8den/aArkeiStealer
2022-07-29n/aexe f93a439e9327b860ae43c243a377f9289b84111c64912492ea9af05dce93c5bcn/a RedLineStealer
2022-07-26n/aexe d294a8bc0b704479728f1db750e69503c7d9623690b5b3fbfd7802c4e0be10b1n/aRecordBreaker