URLhaus Database

You are currently viewing the URLhaus database entry for http://77.73.131.123/files/cn.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2275073
URL: http://77.73.131.123/files/cn.exe
URL Status:Offline
Host: 77.73.131.123
Date added:2022-08-20 14:23:04 UTC
Last online:2022-08-22 02:XX:XX UTC
Threat:Malware download Malware download
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2022-08-20 14:24:04 UTC to abuse{at}aeza[dot]net)
Takedown time:1 day, 12 hours, 27 minutes Poor (down since 2022-08-22 02:51:15 UTC)
Tags:exe opendir RedLineStealer link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-08-22n/aexe 743203b9a05a9059bb300e83a2a7e436b3b5e4f49eec5310e8989d91dfd4a973n/a RedLineStealer
2022-08-22n/aexe 4ba686ba852dd8dd3d1a6c092461e6874b26a752d3626b05f6c27574a798e1fdn/a RedLineStealer
2022-08-21n/aexe 6396db43fb33281320f4c4f1e96c4c0dc8c7590b2bfeb27c84aa648ec14d420dn/a RedLineStealer
2022-08-21n/aexe 36e8cc404623f09ac50c88abfe615d88a95891602d29e8ffe382ff020361b166n/a RedLineStealer
2022-08-21n/aexe 0db558499dc30b1ec6c64cac5cf09bfd271028ee1f19f12c920b3f7808ab04c1n/a RedLineStealer
2022-08-21n/aexe 3e252a5b32b1d3c30e0d6264445163d918283e13b271c991899b3b3876e8b622n/a RedLineStealer
2022-08-21n/aexe 35ff29fd10a3d412b4a3f0548f9479da029d0ef3084530a68325728430912b11n/a RedLineStealer
2022-08-21n/aexe cd06469d33e8957692c5a33497d79ceafbf3861dff69b26db4c30424c989f4c0Virustotal results 25.71% RedLineStealer
2022-08-21n/aexe 019c4b2f09d6c23d31f6b9495621ab6b17a17c896a90b4a4928d1b3db29f9d8fn/a RedLineStealer
2022-08-21n/aexe 291ce423ff2fed5f513e94704b997253a6d2d7ebf8e8e0631a9f2f7f4d8ecd55n/a RedLineStealer
2022-08-21n/aexe 5dfb8df929ca2b6a27fa0610638f750d9c33fc9f774a8538912709a6cfeb8cc4n/aRedLineStealer
2022-08-21n/aexe a907ec23bf555700a409c349c4439ed8a83df3b3600eaad64fcacfd51a57c9a0n/aRedLineStealer
2022-08-21n/aexe ec056445f61e56cecd01b99c6484411fe4b5f7c4c53aa83a0b153bf4f05dfa4fn/a RedLineStealer
2022-08-21n/aexe 29f1e08f51826e38921de47e23c294227dbfbeacc7481d6f063cc3a02d674692n/a 
2022-08-21n/aexe 4fb406a516035a1b2c793bb586883370e0eb3c05b58c8f98108e5dd544d07ae2n/a 
2022-08-21n/aexe eb79059d123d2563a909003f9c7a8906e2d7208cf15a55f29a0da63318362700n/a RedLineStealer
2022-08-21n/aexe 33d233e2f394982bdd625186bff4b2d5782c9283cc69615dc455d5b76255ae26n/aRedLineStealer
2022-08-20n/aexe d7f6f779496675c3a0f8a42e7b7fa0478511e0c6e249a8e78ac399fff2bd9bd7n/aRedLineStealer
2022-08-20n/aexe a6b5bf8d28882d1cf49d13e230582d22604ae7ae1bc1e7a28bec6aee091fa07cn/a 
2022-08-20n/aexe 375830e01caf5bf216778d95dddc061d99c9f95e81cf5314f6c46fd3e0966114n/a 
2022-08-20n/aexe 470fc3a5e7bf682f38bdad01c226c389b204c1d0b5142a6ec45a8a156166050en/aRedLineStealer
2022-08-20n/aexe 776784521224e8693a4bbd66fd1862b62600c08a8e4c9840d22be65bed31d6a2n/aRedLineStealer
2022-08-20n/aexe bb66e9931be31801413392c76ec5a47aff95589575254638030a88845b52b897Virustotal results 41.43%RedLineStealer
2022-08-20n/aexe 32e1b29b2b0c747c133d06a8d594d03aa9d2dd309f766685353b03ea7be949cbn/aRedLineStealer