URLhaus Database

You are currently viewing the URLhaus database entry for http://193.56.146.10/mel/starka.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2556785
URL: http://193.56.146.10/mel/starka.exe
URL Status:Offline
Host: 193.56.146.10
Date added:2023-03-03 15:09:04 UTC
Last online:2023-03-29 03:XX:XX UTC
Threat:Malware download Malware download
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2023-03-03 15:10:10 UTC to info{at}janeirollc[dot]ru)
Takedown time:25 days, 12 hours, 11 minutes Bad (down since 2023-03-29 03:21:36 UTC)
Tags:Amadey exe RedLineStealer link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-03-04n/aexe a9c12150e143d9e5bd8639928e3de9d521babc28cd29c4ccbee97aa180f7fb43Virustotal results 55.56% RedLineStealer
2023-03-04n/aexe eb6d5de4610d53d8335f10c9c524de9f09d8e83ebeeeca9bd4977de1f4aca8abn/a Amadey
2023-03-04n/aexe 75c67b633b548c5d03bc41323d11be0925c1ab260e2a6aa0bbc18c72526272a3n/a Amadey
2023-03-04n/aexe 84ce5e00d13d9e5efdb69952b212697f5478565183a463dae4c12edfb9dca501n/a RedLineStealer
2023-03-04n/aexe 6c574df931091d73ac983279c183d9a649b714f6aee53b33f5cb3e3147eef298n/a RedLineStealer
2023-03-04n/aexe e728c6f6d62e21de1dfbfa1c36abfe9e48a9c136f3fe3b02f67295a1afc41029n/a RedLineStealer
2023-03-04n/aexe fa184528ebc5322830bfb941767df1640d959d6033003d5da9a4dbd56e28d0f2n/a Amadey
2023-03-04n/aexe 187b3af73c26a32f1bee21ac87f97d9e22dffee27e90f765942d641d2b76ccf3n/a RedLineStealer
2023-03-04n/aexe 4a28338c277c69788a2fc0090e7ebb3c95a778107a7000eeeead2423b47e0aa5n/a RedLineStealer
2023-03-04n/aexe 7fdfaa88956b6e9b5060c7931af32de58be9e172b95eee264df4127c1fda6394n/a RedLineStealer
2023-03-04n/aexe e0ffd1d5eb4e0e95d6e2398ec77d412f6b72f06c560876b0ad0fe2896aa66775n/a RedLineStealer
2023-03-03n/aexe b2ab1e147b2346959114d5947ec6dcc3a75e2050e3db711b3c57cc53cf58da47n/a Amadey
2023-03-03n/aexe b70e8dc7337e022094575aea7624d433e480adc35a9c4b7d6603b7d6ab1b3517n/a RedLineStealer
2023-03-03n/aexe 23ff9e91dde6b9974193260103a80577e10c53a4f6d5657d587d73daf3aedc5an/a Amadey
2023-03-03n/aexe 3e972f5caaf47f77280a21cd3f7f4f501384810375aad2fb883ad67c8c45703cVirustotal results 50.77% Amadey
2023-03-03n/aexe 4e988b03e0fe2df7fd2ebf64e4596cb93b0419f553a6255a7fdba55da2b869e2n/a RedLineStealer
2023-03-03n/aexe f2e2106400dad8b3af634632348d20f603dff9b525c49433d9ff920b0eb4344dn/aAmadey
2023-03-03n/aexe 94f72fbf8f77ae4664efcdbb22019e9dc0b0d37e5ee3a6d70d2cde10fa5f89can/aRedLineStealer