URLhaus Database

You are currently viewing the URLhaus database entry for http://31.41.244.173/true/trud.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2485560
URL: http://31.41.244.173/true/trud.exe
URL Status:Offline
Host: 31.41.244.173
Date added:2022-12-25 00:26:04 UTC
Last online:2022-12-26 22:XX:XX UTC
Threat:Malware download Malware download
Reporter: viql
Abuse complaint sent (?): Yes (2022-12-25 00:27:05 UTC to dl{at}redbytes[dot]ru)
Takedown time:1 day, 22 hours, 27 minutes Poor (down since 2022-12-26 22:55:01 UTC)
Tags:dropped-by-amadey RedLineStealer link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-12-26n/aexe ae2b1fc1616ef5f45b445f766f8bef9cfa464b41f3319b05b2d48c0e8b73f7e7n/aRedLineStealer
2022-12-26n/aexe 6647ae81c5fe6d882a517a0edd4eb7fb6df4dbe183c818fb05eb95d567fae858n/a RedLineStealer
2022-12-26n/aexe 70a2e68a8ecd61d82a923414491b4f9c7c92fc3d2de7a598e9c0df886a2a107cn/a RedLineStealer
2022-12-26n/aexe 4aeca2b9016f3e5f01b5e7dc50bb6ec6153757eea75d8161a1d769532509fa6fn/a RedLineStealer
2022-12-26n/aexe 764f123c098af1fe565354f7ba7dbe954b78deee536582e9e2d264fcd5801923n/a RedLineStealer
2022-12-26n/aexe 718f2e85bc0f7526c98f12b62eaf9ad6dd49e6221c2c53e35259f90b280ec267n/a RedLineStealer
2022-12-26n/aexe bcc582f9cb2ab762da54d061964851f055241a53001e54805ef6b2389cbf828bn/a RedLineStealer
2022-12-26n/aexe f0e86a2c2b69d806ecf753e88bc075033046a5da39b2e19f5649bc0d753ee9ddn/a RedLineStealer
2022-12-26n/aexe a01222135057632b847881c997dcccfb54273a3e5e19277bad8a2e2babbdfbc6n/a RedLineStealer
2022-12-26n/aexe f3d45c81ff45cef0988e4486e25c920e308a1ff1689085738345d7ff699ef758Virustotal results 34.29% RedLineStealer
2022-12-26n/aexe 8653ee2daf3de1b8b8801a02f0de8cfe4d961dab69c360abfd0bfbbfaaed5d52n/a RedLineStealer
2022-12-26n/aexe c18378eb73756763fce72558d702439ceb4d034b0d3fe5e10cb3d4b5cfed2716n/a RedLineStealer
2022-12-26n/aexe bc7e0fc7acf85491ec2240b355dd98804a50880646bf240ec65256681f1cf9e2n/a RedLineStealer
2022-12-26n/aexe 806df7cf044e301616df42b219c50689f8cb5270bd28aaf896ba8ab85124c26bn/a RedLineStealer
2022-12-26n/aexe 8b68554b18ae079f3b680aec9ec0bc18442c9eae6ad5d9440c6238b648cd3aa6n/a RedLineStealer
2022-12-26n/aexe 5cc12cc05a87685d90883e2ee90b1308e0858b6147c589d3537f349732561b3fVirustotal results 33.33% RedLineStealer
2022-12-25n/aexe 596a3c571942d58968cd373306fea5469670517e83cab68b356e1e42c8ca945an/a RedLineStealer
2022-12-25n/aexe 288eea777ee102bfeb3a00313e20960cade05138aabd9b581bd451ba8b98e675n/a RedLineStealer
2022-12-25n/aexe 4d8ea56a1b0dc2c6ac32dc19c37225ed18009e74bcf53c7e8b842786e1aec53dn/a RedLineStealer
2022-12-25n/aexe f3f6a7f56271d089b1b4da12b5549888eadadd36824c7d91f244042fbb3fe66en/a RedLineStealer
2022-12-25n/aexe 777e65e00628ae01a5be7027d471bae921525620493656033d2823eb9c275ff5n/aRedLineStealer
2022-12-25n/aexe 99ebbec85541372979503475f0082880dfa8a292d1bbee151b178db8db0a2d65n/aRedLineStealer
2022-12-25n/aexe 1fc1cd4294d1ada2d5b9749125ac1c8fff4fd65d25b59ea9590e9f8545a02f77n/aRedLineStealer
2022-12-25n/aexe 0969698e9298154bd93a23d103a942a2937ed1ad1fef8c1ecc6282a57d3c4711Virustotal results 37.68%RedLineStealer
2022-12-25n/aexe a7562e2a3518e3607ee58118cdfc3278496adb666c167ec80440ffd899965969n/a RedLineStealer
2022-12-25n/aexe b3def7cb04f97604e5f719b7f1f87f08af961a2dd522aa5f42fa8f39eee74895n/a RedLineStealer
2022-12-25n/aexe f8657042e57aa86c95c9871ac1617286bb53570d61ec2759a4214716cebc1a3cn/a RedLineStealer
2022-12-25n/aexe 811e4b6a64731b357bf769bf08b926c98f4560a1192ffd4d65f2f036f413f277n/a RedLineStealer
2022-12-25n/aexe d551c1c2037f565fe429a8fe14f2f07431bce358f3021573f6a4ea1dc46ad34en/a RedLineStealer
2022-12-25n/aexe f03f253e87c36202f2d106679e503f25add063c8f9ddab8d4b0313cc19a65f01n/aRedLineStealer
2022-12-25n/aexe e448a7badd2b06dbd62d095c5c299ed5c9eda3bccb7f49cd5bb197b08199317cn/aRedLineStealer
2022-12-25n/aexe 4df9a237fc5204f2c6b7274fd2514bf888d8f7d959f171668354b8d6087d0a90n/aRedLineStealer