URLhaus Database

You are currently viewing the URLhaus database entry for http://212.192.241.211/putty.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2271022
URL: http://212.192.241.211/putty.exe
URL Status:Offline
Host: 212.192.241.211
Date added:2022-08-10 06:27:04 UTC
Last online:2022-08-17 23:XX:XX UTC
Threat:Malware download Malware download
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2022-08-10 06:28:05 UTC to abuse{at}des[dot]capital,ip-reg{at}voldeta[dot]com)
Takedown time:7 days, 17 hours, 21 minutes Bad (down since 2022-08-17 23:49:10 UTC)
Tags:bazaloader link exe SnakeKeylogger link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-08-15n/aexe f6e1828ca21c2a799b740920d1b8ebb8c65a2792b89832b86eb577f7e62ca54dn/aSnakeKeylogger
2022-08-15n/aexe a06d8e909a4da939d257366967c9930276d702f645f67900a1dc53136b4dccb8n/a 
2022-08-14n/aexe 341cb4515476007153b7f17212f5e4476852837a031efedd5a4adea723c0bcbeVirustotal results 2.86% BazaLoader
2022-08-10n/aexe 4d4310af285ba36f250f39445af8ce414b26e315510559c593edd7d4b0a7c00en/a 
2022-08-10n/aexe 999077089b1cf34450d1b5aebcd29040131731b327e4d5545707a842ee041162Virustotal results 24.29%SnakeKeylogger
2022-08-10n/aexe 0535c17342eaabc5ad9ef8ad282a103c78c9bf312de161e834766ba7af6eb7feVirustotal results 25.35%SnakeKeylogger