URLhaus Database

You are currently viewing the URLhaus database entry for http://62.204.41.119/well/testo1.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2517265
URL: http://62.204.41.119/well/testo1.exe
URL Status:Offline
Host: 62.204.41.119
Date added:2023-01-24 15:39:04 UTC
Last online:2023-01-25 09:XX:XX UTC
Threat:Malware download Malware download
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2023-01-24 15:40:08 UTC to abuse{at}gorizontllc[dot]ru)
Takedown time:17 hours, 56 minutes Good (down since 2023-01-25 09:36:41 UTC)
Tags:exe RedLineStealer link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-01-25n/aexe 16ed0acd2cac6c0f025cc9c68be280c336cb82a79c232813e67f5be1d8b0474cn/a RedLineStealer
2023-01-25n/aexe 9d59a5e90a36da78d70c4b0d3e54992bcb80d70e62637a397534fa994c980f4cn/a RedLineStealer
2023-01-25n/aexe 80b2cc3c13893b7b831994c988b7c410d0b5a6ebd75b244ef88d0d30f4932ce6n/a RedLineStealer
2023-01-25n/aexe ed686473f73d827c3e4eb949e22cf367c89fb98dce9eff091b2dcd4e9a2b80afn/a RedLineStealer
2023-01-25n/aexe 3b5c92944b33590ce9525e8cc51fcb801a9a8047f729db0a73743b97568a32a2n/a RedLineStealer
2023-01-25n/aexe 3d6b50608d83198a1d9a4e37fbceb4c78941df6ff55753eaac7463808f1a2fe6n/a 
2023-01-25n/aexe e977cf1412fa6ee19747c8439213e2d327755c6e794a2abe7cda866ca1aacfa9n/a RedLineStealer
2023-01-25n/aexe 07111508428b4cd70a30cabd3826fcd9427a1b99ff23b1fd922e958571e99a23n/a RedLineStealer
2023-01-24n/aexe dbce2ca6121577b89cb7fe355eb92c8a7bb8690672956a2ca58c111d9561758fn/a RedLineStealer
2023-01-24n/aexe 46f334adfbad0b9ed2e259ba4da1379c626043b206ba2ce610872688e8914c84n/a RedLineStealer
2023-01-24n/aexe cfaecec7ee400abba9b1e867eb50c931a0285466749af38b7d3f4506e85785ean/a RedLineStealer
2023-01-24n/aexe 745e0ce6973744f6333f76ad3db906857af61d204865a87f2d0b1c5c280322ebn/a 
2023-01-24n/aexe a9a0b873962dd70c87d31a176d82570708f6ed158d33c9fd4f785c7820d04833n/a RedLineStealer
2023-01-24n/aexe 03c8e1b26339c842b787e49370aeed5cc9e878834979bf7b4078eeded2960a76n/a RedLineStealer
2023-01-24n/aexe 5a311827b9a1e44a4f0dadb5bed1c0c7486898fad71efd671cc01eb3d56b7c47n/aRedLineStealer
2023-01-24n/aexe 79cce7b678b421d00d82cdcb4a18f586cbc41495c4248865fcbf173e8f88a65an/aRedLineStealer