URLhaus Database

You are currently viewing the URLhaus database entry for http://62.204.41.165/true/trud.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2486085
URL: http://62.204.41.165/true/trud.exe
URL Status:Offline
Host: 62.204.41.165
Date added:2022-12-25 11:24:04 UTC
Last online:2022-12-26 22:XX:XX UTC
Threat:Malware download Malware download
Reporter: viql
Abuse complaint sent (?): Yes (2022-12-25 11:25:09 UTC to abuse{at}gorizontllc[dot]ru)
Takedown time:1 day, 11 hours, 31 minutes Poor (down since 2022-12-26 22:56:39 UTC)
Tags:dropped-by-amadey RedLineStealer link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-12-26n/aexe 8de81620e65c739beb83b899788846c138ed361b9659b98f4e4d5607698be1dfn/a RedLineStealer
2022-12-26n/aexe 6647ae81c5fe6d882a517a0edd4eb7fb6df4dbe183c818fb05eb95d567fae858n/a RedLineStealer
2022-12-26n/aexe 70a2e68a8ecd61d82a923414491b4f9c7c92fc3d2de7a598e9c0df886a2a107cn/a RedLineStealer
2022-12-26n/aexe 4aeca2b9016f3e5f01b5e7dc50bb6ec6153757eea75d8161a1d769532509fa6fn/a RedLineStealer
2022-12-26n/aexe 764f123c098af1fe565354f7ba7dbe954b78deee536582e9e2d264fcd5801923n/a RedLineStealer
2022-12-26n/aexe 718f2e85bc0f7526c98f12b62eaf9ad6dd49e6221c2c53e35259f90b280ec267n/a RedLineStealer
2022-12-26n/aexe bcc582f9cb2ab762da54d061964851f055241a53001e54805ef6b2389cbf828bn/a RedLineStealer
2022-12-26n/aexe f0e86a2c2b69d806ecf753e88bc075033046a5da39b2e19f5649bc0d753ee9ddn/a RedLineStealer
2022-12-26n/aexe a01222135057632b847881c997dcccfb54273a3e5e19277bad8a2e2babbdfbc6n/a RedLineStealer
2022-12-26n/aexe f3d45c81ff45cef0988e4486e25c920e308a1ff1689085738345d7ff699ef758n/a RedLineStealer
2022-12-26n/aexe 554055339971b5aa37a3ccd6eae94ba85ec0546e2206555de3984216e10c9dben/a RedLineStealer
2022-12-26n/aexe 8f31bc938db704c03233a8341443eb2232997eff5aacecd85d18735eff373a3dn/a RedLineStealer
2022-12-26n/aexe bc7e0fc7acf85491ec2240b355dd98804a50880646bf240ec65256681f1cf9e2n/a RedLineStealer
2022-12-26n/aexe 806df7cf044e301616df42b219c50689f8cb5270bd28aaf896ba8ab85124c26bn/a RedLineStealer
2022-12-26n/aexe 8b68554b18ae079f3b680aec9ec0bc18442c9eae6ad5d9440c6238b648cd3aa6Virustotal results 40.28% RedLineStealer
2022-12-26n/aexe 5cc12cc05a87685d90883e2ee90b1308e0858b6147c589d3537f349732561b3fn/a RedLineStealer
2022-12-25n/aexe 596a3c571942d58968cd373306fea5469670517e83cab68b356e1e42c8ca945an/a RedLineStealer
2022-12-25n/aexe 288eea777ee102bfeb3a00313e20960cade05138aabd9b581bd451ba8b98e675n/a RedLineStealer
2022-12-25n/aexe 4d8ea56a1b0dc2c6ac32dc19c37225ed18009e74bcf53c7e8b842786e1aec53dn/a RedLineStealer
2022-12-25n/aexe f3f6a7f56271d089b1b4da12b5549888eadadd36824c7d91f244042fbb3fe66en/a RedLineStealer
2022-12-25n/aexe 777e65e00628ae01a5be7027d471bae921525620493656033d2823eb9c275ff5n/aRedLineStealer
2022-12-25n/aexe 6efb2e32950265ab4042fc55e79f9791940bd1e228ab626193a6aef2f8ac937dn/aRedLineStealer
2022-12-25n/aexe 99ebbec85541372979503475f0082880dfa8a292d1bbee151b178db8db0a2d65n/aRedLineStealer
2022-12-25n/aexe 1fc1cd4294d1ada2d5b9749125ac1c8fff4fd65d25b59ea9590e9f8545a02f77Virustotal results 37.50%RedLineStealer
2022-12-25n/aexe a7562e2a3518e3607ee58118cdfc3278496adb666c167ec80440ffd899965969Virustotal results 37.14% RedLineStealer