URLhaus Database

You are currently viewing the URLhaus database entry for http://45.15.156.60/qwe22zdlAq.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2375666
URL: http://45.15.156.60/qwe22zdlAq.exe
URL Status:Offline
Host: 45.15.156.60
Date added:2022-10-15 07:32:05 UTC
Last online:2022-11-15 16:XX:XX UTC
Threat:Malware download Malware download
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2022-10-15 07:33:11 UTC to support{at}zerohost[dot]io)
Takedown time:1 month, 1 days, 9 hours, 0 minutes Bad (down since 2022-11-15 16:33:39 UTC)
Tags:32 ErbiumStealer exe RaccoonStealer link RedLineStealer link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-10-28n/aexe b2e2800cba233be0507c6ef2adb8a5ab9f3d63bd8d0bdbcd95f365609cc1935an/a
2022-10-26n/aexe b97eb562028db9210d8824abbf94385bd8508b578f4089a1a64456aa5d1699dbn/a 
2022-10-26n/aexe 25613a9993c484dc8dd00937e0487299cc454e786eabd10cbf1a390a6ffdf0dcn/a
2022-10-24n/aexe b95a985fdac5372e3f843236ea7b3cbadf44b0575f98946558e3bcd994d8d694n/a 
2022-10-22n/aexe 492dee95fb8d34fe78abfd205d0601a899374b008393d820d96cdb9e1aa2b769n/aRaccoonStealer
2022-10-21n/aexe bad587717fda6fd795bd867f45c0ac3d044ac3d60018c1723b202a52f71ada6en/aRaccoonStealer
2022-10-20n/aexe 42dfa59365ddf1cf17b02bca90244bec2aaf952e7eb9e3ba72e4d45c6bcc9f04Virustotal results 27.78% 
2022-10-19n/aexe 187b5a3489b7f7467b659ee9c980080ac2badcd8ebb8d78f5b49779d6f701c25n/aRedLineStealer
2022-10-18n/aexe 6d96040df24b533f795ed04aebf6f01f323bc9152e1f02739c1051f6c605cb5en/a 
2022-10-17n/aexe 2c0bf62e669e1fc66cf37375b5f6f44794415c73ec3e5f1084148ed957fca28dn/aRedLineStealer
2022-10-16n/aexe 45abe3709ed09f49f44fee4ff26593a07ad5ddb811d775d4d17923916d807cd1n/aRedLineStealer
2022-10-15n/aexe 923b9d57473ca7eaf654a1d117e35cd5f01764d37e340fb3804c2ea5d2af8379n/a RedLineStealer
2022-10-15n/aexe 40930473384224102157a7c80362e59859f0101cd16b71d6067611e38258ebf6Virustotal results 35.21%ErbiumStealer