URLhaus Database

You are currently viewing the URLhaus database entry for http://31.41.244.100/fusa/bibar.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2453738
URL: http://31.41.244.100/fusa/bibar.exe
URL Status:Offline
Host: 31.41.244.100
Date added:2022-12-10 16:56:10 UTC
Last online:2022-12-17 12:XX:XX UTC
Threat:Malware download Malware download
Reporter: viql
Abuse complaint sent (?): Yes (2022-12-10 16:57:04 UTC to dl{at}redbytes[dot]ru)
Takedown time:6 days, 19 hours, 52 minutes Bad (down since 2022-12-17 12:49:07 UTC)
Tags:Amadey dropped-by-amadey RedLineStealer link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-12-17n/aexe 9fad79466fc46cab5d1e9be9102b681f1ce3fa01d3bee953a5bbe746405d1220n/aAmadey
2022-12-17n/aexe de615fd7c48cdd7fa8ede274c56609fae7dda9073de1060c20e5492022e6355fn/aRedLineStealer
2022-12-17n/aexe bee3fc4429805572f23814880e79ef898701e425eb3961d6c7f579ef7644203dVirustotal results 32.86%RedLineStealer
2022-12-17n/aexe 3a5c194e21ce7ebe7324f788670445369a7b16a72ede83e3309c14465da9fd0fn/aRedLineStealer
2022-12-17n/aexe 8451facb92dc87767cdbd2e4147220df7b52b4227cd029d46859884027428b1dn/aRedLineStealer
2022-12-17n/aexe 2b1e02bc1044114394a841891bc12e0ead18778bface5a881447fccff474e8can/aRedLineStealer
2022-12-17n/aexe 2b2c127b6b014d6708957001214c53a8fecab3439f1f1c10ef0cc01e64407061n/aRedLineStealer
2022-12-17n/aexe af57c338c06e815d3a1f968c01cd97819a78baa425f639018a36068dfb77385fn/aRedLineStealer
2022-12-17n/aexe c3f645b7080285e3ecc3af56997291f5fb0a71226228ed6383d93d1d2c88b998Virustotal results 34.72%RedLineStealer
2022-12-17n/aexe ecdbfd180350ff6bb51400dafc6cef118adffe573b4ac62c6f1cca508846ea88n/aRedLineStealer
2022-12-17n/aexe d4c6994139ee7f5f5d350961e790a3ef6ac12ff616e3b7250d5e20645b7d3bd0n/aRedLineStealer
2022-12-17n/aexe 83c9b03b8c8eaaceeaa9e533f3739dc4fbf6fc6765a16a5f148b9fd300fa4f5dn/aRedLineStealer
2022-12-17n/aexe 5b6939d654df48fbd42bcf7f6895ff9fc500937d66101a5ee26c60936a628c36n/aRedLineStealer
2022-12-17n/aexe de391649878b1eb9c9e25c07774553e6dd8f63200d5bb536e12b61ee2f9ecffan/aRedLineStealer
2022-12-16n/aexe 80945e53dbad9370ce555fe15b41531f0283bc5524161184911aa7dad175a95cn/aRedLineStealer
2022-12-16n/aexe fd61726ec48ddfbe4a0c7fd1b36a84ef3e1e9d2c723cc77010eed2f287d50d0dn/aRedLineStealer
2022-12-16n/aexe 8d5a455600426642f42fc17b99441f256d1be5adadff703a9239724c4c0359c2n/aRedLineStealer
2022-12-16n/aexe 227893c1a7e7190c87570a0f06d4b9eb19521aa9e905f65cb16652d559ce74ddn/aRedLineStealer
2022-12-16n/aexe 9690e6debc1e6c45d178292fa0dcf2d606b0f29f0152a525dd3bd55a1eb63390n/aRedLineStealer
2022-12-16n/aexe 5543b79d3d3b2f2c11a940c6b50631ff95c0d9482f1c0c60587b44f15a868369n/aAmadey
2022-12-16n/aexe cb2c92744e9408b81df6d78e92864d280635946b7d6de82e032124ac031ac100n/aAmadey
2022-12-16n/aexe e39a8069df68c25abbadb9ffbe07bfa767cd9e7ad7c66f06f49dd9222953053fn/aAmadey
2022-12-16n/aexe af7b4e3e2063ff59ca2a269c53e540ba073c68fa717c729c2cd16e500b4ad3efn/aAmadey
2022-12-16n/aexe f9bcba9f3dc1e9e42cb9bbf2a28882d930912fbb9abfb6d49e9fde19a710c138n/aAmadey
2022-12-16n/aexe 5eb90b93f807ef1c6274c6a41fc4813f824a9870f782234258064bc67b67dcabVirustotal results 34.72%Amadey
2022-12-16n/aexe b9876958a1a59f4089fb41782ea64478aae57d1adc00e0f9d2c34434a14ba606n/aAmadey
2022-12-16n/aexe 7d2fd14c2d3a0429e7dc1dda025e88ab606e0797aa6e6224a8f2f5dc25590d24Virustotal results 36.11%Amadey
2022-12-16n/aexe 6cc55822beeb659db5a012f49e425b5ef485f230dbe2e34b92654127151ac8dbn/aAmadey
2022-12-16n/aexe 6d8ec9353bb2e59cd687e526c71a6b9c9f2c88ff8a56c30b928e62e65046061dVirustotal results 32.86%Amadey
2022-12-16n/aexe be3d6933a41ef79dde37fc41546cabf8ecea067a2f19ba62f79586234bc23750Virustotal results 40.85%Amadey
2022-12-16n/aexe d8f86de2df70991a48c9833e906bf0d39d731335e3055ecc1a32b150a5296709n/aAmadey
2022-12-16n/aexe df659e6350471addf6200bca3571a658511e9ccbc57a27707a33d8d096d08334Virustotal results 38.57%Amadey
2022-12-16n/aexe 8c7429f299879081d88b42c483ed6859a6facbee8e257d6120d95513bc174e06Virustotal results 38.03%Amadey
2022-12-16n/aexe b28e6758b344d350ef7545f734a4304af519d6439e0162b2e6c3509bff352d50Virustotal results 38.03%Amadey
2022-12-16n/aexe 76f53358df7fb36537cbfa5dcb9c6625d299438eb9ddabe1ca4897b9952b98dan/aAmadey
2022-12-16n/aexe aa0e1d36a0c0eff28907aae4050f38e576228a67bba7c313c507d78f664d8215n/aAmadey
2022-12-16n/aexe bdfbe35dc850b536e93577067a6e79f2148691d81d41096f999584f450c24e58Virustotal results 30.99%Amadey
2022-12-16n/aexe fe34d279b90129e50db3a99f6fd5ce3ad2367b05afe3b3b2d2681ede2f96a6c1n/aAmadey
2022-12-16n/aexe 7ca01759004cb3e81a463e92f75b141f8a4255308d1c3bdc3f5d3aa99c403a1en/aAmadey
2022-12-16n/aexe 52abae1585052f3b79a40fce29ea1b6d505545e145fb48df4294dbfc3e9ced5dn/aAmadey
2022-12-15n/aexe 96b9cd304dd60389dbd4feed81e8bc7712dcfd833049854fb36e35f3db56d6f6Virustotal results 38.89%Amadey
2022-12-15n/aexe 4c7177113fb9022ac7ce2282f489e824846f0711ff71d7047cbea027e789a6dbVirustotal results 36.11%Amadey
2022-12-15n/aexe b1fe15394d3a406b37ce60bacb43aa513b13dcf07f726cf801d1ddf7b0022b30n/aAmadey
2022-12-15n/aexe 40f77ba1740d6233b73bb02ad3c73df77b2612926b509648e4cb543f8f333db2Virustotal results 35.21%Amadey
2022-12-15n/aexe ddb450789f57dffcaf891ede463553bc699b736054e801ba874272bf583bb630n/aRedLineStealer
2022-12-15n/aexe f4fc1d6c9f92420c81a8f649f9dd8da348b911bd3845be6ab00ffd08829c37e0Virustotal results 37.50%Amadey
2022-12-15n/aexe c003850f3be7df00050a683e6e4369be3038dc57c509584e4eefb819ff0190a6n/aAmadey
2022-12-15n/aexe 72c59b064cba88f8abb3995ff1c623fe5314d6957b4272d32b2b6f1b85e74525Virustotal results 35.71%Amadey
2022-12-15n/aexe d31e20009004dd2dad8cb39b0d253a172c88edadcae4d4235c4cc5386ce90a2fn/aAmadey
2022-12-15n/aexe 345053d24bcc3f51b681394d014e9eb9155991d67bebb5c1d0d7d6d4d1779b1dVirustotal results 35.71%Amadey
2022-12-15n/aexe 4cd3b53e0b35621bcd847793bfc7e8d41cd94499298f30590b9caf6ad85fce29n/aAmadey
2022-12-15n/aexe 05847bf9a320e87d373b870a41aba44a977e0e8bbb170cb928d1b906fdc22b01n/aAmadey
2022-12-15n/aexe 02862c35cb5c0d1a4c43deb26bd92c9ee7db83158fdce51b72551a32daf287een/aAmadey
2022-12-15n/aexe 28d8604c5446b8e8139563cb5b99544eb0ba3279f63695e3c238676c2570a82cn/aAmadey
2022-12-15n/aexe d6a1b0ab62f384d759804e69e7d7b79e0ed8d27796821e493203f6bba12753d3n/aAmadey
2022-12-15n/aexe aef5f37c4670d8a9be061f2f268cce170a024a6a15218849ee3fa2595ebff64eVirustotal results 30.56%Amadey
2022-12-15n/aexe 4fdbea91aaeae55fb9f7d78b2a2e730531fa0739ae2b1bc2b9f8708ce4a6bf25n/aAmadey
2022-12-15n/aexe 1c55306da129ddbd2cfac4c5c1ae879ec9d8d018ffadba3b9dab2bdb7b07cf9bn/aAmadey
2022-12-15n/aexe 473770533032cf17f5dca6dfd878117177cb7c6dcb1dab9e318542dd548ca9afn/aAmadey
2022-12-15n/aexe 7fa432168553f813e274fde1bb8f8c351c3eec40cd80cc84f1ea57276bf8189an/aAmadey
2022-12-15n/aexe e483a97e4f6e6da793da69f1d826055ba1f2c4f8870697f66d4788426417634an/aAmadey
2022-12-15n/aexe 76c2aa864df2d8c0ab462601cc6315bb6a8d9a6750867be19ea3cfb1d0210522n/aAmadey
2022-12-15n/aexe a4333932060d224aeb455b78615c43c7a2b3a86750a59323e46aad77e08c978fn/aAmadey
2022-12-15n/aexe 4fed64c9fc6ddb0379ff5db8b5767f670c96d41d8c59863467712699590c2ba3Virustotal results 40.85%Amadey
2022-12-15n/aexe c8973f42dfa494167cb9783fe8138eec199e924b18e27196312ad57fde15c150n/aAmadey
2022-12-15n/aexe 47b82ca5e31f67829a98ca65171f1e09a54b70312138f0f7ab9b2bf2fa447cdan/aAmadey
2022-12-15n/aexe 457286b0bd62182d690ccb5722cce4f9334242541bd8e021d2ff633ec75d2f41n/aAmadey
2022-12-15n/aexe 3ae11a050a6e5c6a88778b3afc885c0969adb7ca883fe99da2e4aac5d572baa3Virustotal results 40.85%Amadey
2022-12-14n/aexe 1f531968c556a940ab0b6acdeec1e394aaf7f447c50817e293b3c68e68431f2bn/aAmadey
2022-12-14n/aexe 5174033e521d0a883d4001dd6da77d25a1cc10d3fadbf5a92344bb50a813d452Virustotal results 38.03%Amadey
2022-12-14n/aexe 4ac58be826decb6e4675274ac24f21f1d046e63650385f62317c510b1166ca98Virustotal results 39.44%Amadey
2022-12-14n/aexe 35f74a854c79e66daeafedfdb0b840e5bce7741a7c4bafb3337fd37d7b145486Virustotal results 35.71%Amadey
2022-12-14n/aexe 2ee1f969f33cc1b353c9940a38fbb400affe7ebed6b2ae77afdb049f0605a461Virustotal results 38.03%Amadey
2022-12-14n/aexe d5f43a4b98ebd637c13a702b8e039263df1f26426e9d66046b73d83796efe23aVirustotal results 42.86%Amadey
2022-12-14n/aexe 6b79f46697a2daa7bc7b10b8cb0a92b3e2fab532e33cde35e7cbd7a63e26b84cVirustotal results 42.86%Amadey
2022-12-14n/aexe fe4286b3f3670d576596f2c1d7aacade7e39d1af88cf1c958cf39edc3eb27bebVirustotal results 39.44%Amadey
2022-12-14n/aexe 5f9376c01729d8e5dcdff078cec30b27b754bd7784cbeb33ed50bb642a0ded5en/aAmadey
2022-12-14n/aexe 49b8a5cb23d6fce94b3a77c10a5b952a8176463df8c056a8c84273856888c9daVirustotal results 41.43%Amadey
2022-12-14n/aexe 8620067481efc5236b040ea6a5037cb5b836542bc99280604d2ae0d216761bdaVirustotal results 39.44%Amadey
2022-12-14n/aexe 5fbb3c7eb946bb81be29c3c6649994ff4bcb0912a4f9febb6e8dfb5a4febf787n/aAmadey
2022-12-14n/aexe 1be995f2c3ddc8138b3e218d2be1b9051d7a6bdfa32343f6460a7e04dcab761bn/aAmadey
2022-12-14n/aexe a4b462b91fd2547c8075dd6242441770585c9928602747336557eb828ebb2a32Virustotal results 36.62%Amadey
2022-12-14n/aexe 0bd7c50800f22bfd12972a196f08c283320f77ad43f55c2f93eea51af56caf09Virustotal results 35.21%Amadey
2022-12-14n/aexe fccdda51c44675e5bb1a7502d5839726d965e68b929da0539382f5b2ac6453cdn/aAmadey
2022-12-14n/aexe c24af6d60f79c88a2773ad721c75e238fa23b2deef492a4e53d9e80c26b8d515Virustotal results 37.50%Amadey
2022-12-13n/aexe 139bc389f27ec23fe7db7da0e2151dd9270405006436f574d8b374877fbc56acn/aAmadey
2022-12-13n/aexe 37de71b43236c63687b44f238a17cde5f16bea2b2ec8c29b0ea42b62de947d6dn/aAmadey
2022-12-11n/aexe b5abfd22cee51a742c163d5ec42b22db2e2f0d5a7b472c12f45ed441a1f340f5Virustotal results 67.61%RedLineStealer
2022-12-11n/aexe 91a2a3b8f8fce5813243637d239bb3e74fda099a0b06f8f905a2da3ac9917dd5Virustotal results 35.21% Amadey
2022-12-11n/aexe f44713ae8da2ab6585c6d8dd8f1529f2d9c314830a179ae69d5791ef859f34e1n/a RedLineStealer
2022-12-10n/aexe 34a3e6647380474baf4bc09df04a47ae7225c9d5276788355c031b497be3b965n/a Amadey
2022-12-10n/aexe 1c5cef7fa451f7da2851675e785b7b08c805d2340c3ef1f0bc63ac7a01538670n/a Amadey