URLhaus Database

You are currently viewing the URLhaus database entry for https://77.91.124.20/DSC01491/fotocr54.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2623982
URL: https://77.91.124.20/DSC01491/fotocr54.exe
URL Status:Offline
Host: 77.91.124.20
Date added:2023-05-04 04:38:05 UTC
Last online:2023-05-08 12:XX:XX UTC
Threat:Malware download Malware download
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2023-05-04 04:39:06 UTC to abuse{at}altawk[dot]net)
Takedown time:4 days, 7 hours, 28 minutes Bad (down since 2023-05-08 12:07:54 UTC)
Tags:32 Amadey exe RedLineStealer link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-08n/aexe 8e0bc88717728bdab9f9013030aa3595026ca65cf0e9913075add477a37b5c0fn/a Amadey
2023-05-08n/aexe 00402f4f457bbcc5c4f9fae199bac46455055b02719d1f011083e1510b4dd911n/a RedLineStealer
2023-05-08n/aexe daf1811cb7cc6053dcd7d204778076395f7c400a7f3342eba168dc9dfcd69ea5n/a Amadey
2023-05-08n/aexe 631f9b613d8fc56a2f3afbdfdeedf73774d7070a593d916bf89ce17c730a8dbfn/a RedLineStealer
2023-05-08n/aexe 1c802cf706ed7a856e539b8c700e6f8053e381da099a1dd664886a6f09f5b9b2n/a Amadey
2023-05-08n/aexe 5cd57390572800cd5680ace2fb69328ad796fc25047d9d74197280c623098946n/a RedLineStealer
2023-05-07n/aexe ab8d63bded5df52b21fa8da72af7c6b1e2bd467db41007f5783efa9a28a543a6n/a RedLineStealer
2023-05-07n/aexe 63efacd80c1a3d5adf17f9e1f461e52fe23f4f3fead04b69e99e58636fa06c0bn/a RedLineStealer
2023-05-07n/aexe 6b12838122a229cf420b9cae9f3ef0e0301c80120f6e37ceefbdfa2753855747n/a Amadey
2023-05-07n/aexe 6250c7f7866176236f326993709239fb24d1ab0687973f0527fcfe1c29f8b2f7n/a RedLineStealer
2023-05-07n/aexe dab38feeaf4997bcc9bae1ee44deb0cec3b20d6beba4a49211532f35ab527f4en/a Amadey
2023-05-07n/aexe f56f45ebecd26205e39b2b2e6398f932e1b5801a33a4292fd15987e261cdde2bn/a RedLineStealer
2023-05-07n/aexe c74befd765987514f4df862dadda5088d5fed6e34b81302489bcb574aa16b256Virustotal results 48.57% RedLineStealer
2023-05-07n/aexe a943e516323c3dff5d5ad9c3979d6b03651205051b9aa88a840c3d4a4e492156n/aRedLineStealer
2023-05-07n/aexe 2748a5a8326a6b19ab5f6d95a46092905ec64ea137b10434e10d825eedc1ea4fn/aRedLineStealer
2023-05-07n/aexe f686f974db928e85279098e0c0ef7f4459304da9b3ecb7381f3d5d7d6bbae4d6n/aRedLineStealer
2023-05-07n/aexe 7eb7de67ab5fb01dde85fa99ab91b71a11e1de29e83feb207d50340bfb57c9a1n/aRedLineStealer
2023-05-07n/aexe 2217c772d745894e8c2ec9fb8feadf525bc3cf0704b1b7a1b2042cf30451acc4n/aRedLineStealer
2023-05-07n/aexe 3714fa81b3666898abee2113279387a49f877759051116b68aa9c5f0315175e3n/aRedLineStealer
2023-05-07n/aexe 30841adf2755eac3ce3f6f00cb586466ee303f6ad6424cf82bd73217234fe845n/aRedLineStealer
2023-05-06n/aexe f3295547f6421e7ba1d9ef70e41615881854380f2160e4b496c65fb251d2859en/aRedLineStealer
2023-05-06n/aexe 881064ae625b36fbf1c10ae6ee0727a8e4ee420b7bc498995fd761438a39a84fn/aRedLineStealer
2023-05-06n/aexe 12c901317f01b10174d15fe5b244719ecd016bc5b841bb39470752a7b3a0b09dn/aRedLineStealer
2023-05-06n/aexe 5d20c911a61ca2afc8f3cba61d942e3d45a563626d87742e1b30c13519f61b33n/aRedLineStealer
2023-05-06n/aexe 372e1f000ad19a9cdb70570968e8bc0380c5702359d55267cae2f77e064fb8d0n/aRedLineStealer
2023-05-06n/aexe 36969505195071d1ce9e8410121c31e34061ad58426099bf3032617cf48483efn/aRedLineStealer
2023-05-06n/aexe f97893e3fe80a4f0c8e3f4adb678e5adface7b1e759594904eb312d86ff274b4n/aRedLineStealer
2023-05-06n/aexe ef38eba17fb2aa5feb5fec19e8a9e9a2e719f8fa6bff1226c49ebc9cc2c84afbn/a Amadey
2023-05-06n/aexe 90bea0092644e48d591ac4d9849c2f8a8a1f5ee0bc6cdd543734f69892003fc0n/a RedLineStealer
2023-05-06n/aexe 40f13b452b3a4f33073bb3f53c723db7f6e3795d0e00bde13c5f4a7ca4686c14n/a Amadey
2023-05-06n/aexe 953628cbca86d5026f48996d307b29f03bf66ac367e8680c1e5fcf92dc1d39b8n/a RedLineStealer
2023-05-06n/aexe 1189d8822a8bddc697d119119c01e2455f21007fa37fb9b0650f9ee07b9ecd31n/a RedLineStealer
2023-05-06n/aexe e6b748fdd12f647831f09177a1418cf2f2d98a72277496053bd04e441ebad4ccn/a RedLineStealer
2023-05-06n/aexe fe7d5da5d4ccd12bd55924466dd37573ba7293746e9d566771635c6cd055066fn/a RedLineStealer
2023-05-05n/aexe 8b63701acfda5c0626ba031c5491a57b8beb02ed75c99d5518494ac11b9c5357n/a Amadey
2023-05-05n/aexe 7a154e0c956db19f48786f72daecfcdb152be6a4a03898089d050298999994afn/a Amadey
2023-05-05n/aexe 6df90a11671bf99b0557440d805fa304b37fe52b62aa505c279cffbcda309d04n/aRedLineStealer
2023-05-05n/aexe 904845996736961921350d8026a37553469add73359a8d8956e2b9c0181d9934n/aRedLineStealer
2023-05-05n/aexe 77527d3b06cb6d909cc330d3ff60bdf1ce25d975889dae86a1ac6e9c3b0a0838n/aRedLineStealer
2023-05-05n/aexe 3efa410200f86cb87e8ddd8d0e51ace698d53c1b1282932e5ac85fddd002c93bn/aAmadey
2023-05-05n/aexe 898029ac02ebbab0f3c180acbbd3e136f57a877715e8cf19a09a4d29dbff4c00n/aAmadey
2023-05-05n/aexe 807c6126428dbf37b1213e4dd0551f051e9be8f9090c6938ae9707b1717e473cn/aAmadey
2023-05-05n/aexe 6472610a7a65a7bce95111db47bbf281e94817e45539c234c14f22f69be968a5n/aRedLineStealer
2023-05-05n/aexe 51123eaeddf3e60e8e001d4db0f833bd5ac1990769bd08ebf695e0f611076b0fn/aAmadey
2023-05-05n/aexe d09c9797a5f26a218d1569f4db91bbf2bf5a8664ec4d367670d83a8e1b19b3bdn/aRedLineStealer
2023-05-05n/aexe 41e4d3e198c0c8bed4db7bb6ce5d91572a802b5bf4f449ed8a6735634f42ed7en/aRedLineStealer
2023-05-05n/aexe 60c52eff5e7bc88fe2a0cc50434fd69f5c19531f209c7f0c2b019404c6085d53n/aRedLineStealer
2023-05-04n/aexe 8d820198e604c1d8ce5a42b9c2e01249bc343562f016b7d7fdcf42df0b0f3741n/aRedLineStealer
2023-05-04n/aexe 213cdf38dae7f129f8f33005731ee0eeaeddc5a486853456659a7fc92c0cd660n/aRedLineStealer
2023-05-04n/aexe 318ffcd348285d68b7a958dd80a30587ac4a0fe204b8808864256d8ce05d6925n/aAmadey
2023-05-04n/aexe 81de0e1fbe3aa1236df011ba6be29673c3343d7fee3246e0a99dd713da8d89adn/aRedLineStealer
2023-05-04n/aexe eec9de4b2039ec5f5e3ebbdefcd7a5ac088bdcdabe4140dc1f1d5031debf4229n/aRedLineStealer
2023-05-04n/aexe 2015fd992788da74c68562fb9abcbab30827a2c4194a555fa3b7b82c917683d3n/aAmadey
2023-05-04n/aexe 15f5bf9aa1380726403d8cf31e4d06684417273e99ac6b7446251912c5dc2ca7n/aRedLineStealer
2023-05-04n/aexe bf37e108dfbfc88bb1d750c9318437c9ba16097f3a5a1047b5c70529029b7997n/aAmadey
2023-05-04n/aexe 6b574eaeec32a51c4dac2e7894427e00a19470f357215369c1545528c8659946n/aRedLineStealer
2023-05-04n/aexe 727c5c1e71fe232fce2c77049000cac12c11ce48c0c92e0fd2f2dfa00618120en/aRedLineStealer
2023-05-04n/aexe 6090eb8f5914eeeeb26c98b0fa99516111e76bd13cc22ea9b9a125c5d03f020en/aRedLineStealer
2023-05-04n/aexe 6c5012271c977aba0f33ccf9107d9ba6c2070941a11ae3a35c697b27ae771909n/aRedLineStealer