URLhaus Database

You are currently viewing the URLhaus database entry for http://77.91.124.20/DSC01491/fotocr45.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2636943
URL: http://77.91.124.20/DSC01491/fotocr45.exe
URL Status:Offline
Host: 77.91.124.20
Date added:2023-05-19 08:56:06 UTC
Last online:2023-05-25 12:XX:XX UTC
Threat:Malware download Malware download
Reporter: viql
Abuse complaint sent (?): Yes (2023-05-19 08:57:06 UTC to abuse{at}altawk[dot]net)
Takedown time:6 days, 4 hours, 0 minutes Bad (down since 2023-05-25 12:57:17 UTC)
Tags:Amadey dropped-by-amadey RedLineStealer link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-25n/aexe 36d693e46695d8d8e8410e85e1c578712506bc845eca03730dab9087f134f9f8n/a Amadey
2023-05-25n/aexe 361b68a54d1c2e12dad06b3d1728e62b22329545348808c530948d98b308bfc0n/a RedLineStealer
2023-05-25n/aexe 05c480c909d50fd9a8da55d2fa4bf20f258ba1151655251a1fae9861ae9f340cVirustotal results 52.11% RedLineStealer
2023-05-25n/aexe d93125b41c616b190108a3611405ac2b570cc4c5a78b126f1a83b2f4667d62e3n/a RedLineStealer
2023-05-25n/aexe f7188a63ed3e5a25b6add5ee62dfb75069c73469a9472420e73eba1a04185886n/a RedLineStealer
2023-05-25n/aexe 60f445a68ccaad53a2d8db6a28468d61be38f771b4c51ba941a39b2a803b19a0n/a RedLineStealer
2023-05-25n/aexe ab43869cc50f7c60e39a833b3719309fcea2e932bff0df325e8c26b0666064can/a RedLineStealer
2023-05-24n/aexe d1e460a197420acaab2128f329f31e60177b96dab21b45d0b4d3b6d4b5c7c34cn/a RedLineStealer
2023-05-24n/aexe 57f26e2076bb3d3ecba467fcc6c600492c25df33616c6e1913cd5d5ee63eb4ccn/a RedLineStealer
2023-05-24n/aexe 70d398d791e29c994140517550623ce566f028aa0b058a9102ff647ff80d1f02n/a RedLineStealer
2023-05-24n/aexe afb994c438e75c914ec0f2ffcc3973972e307178e4120e3a4358a62e2584f8c9n/a RedLineStealer
2023-05-24n/aexe 0aa5bc495da0e57c075de5850083d7ad53cd12b46cde5db4a67e1623a5b81b18n/a RedLineStealer
2023-05-24n/aexe 71b8f3276bca025394502518903cbdf853d8895ac598f9674da63bcee618e535n/a RedLineStealer
2023-05-24n/aexe bde21724d4d00b72e854db38882590ef1f94bde700cb73f02b152d05590e1c2an/a RedLineStealer
2023-05-24n/aexe 8ee0edaabbf73abff602a38467a7f7a670c23e1c8585aa7622dbf97a6f67aa16n/a RedLineStealer
2023-05-24n/aexe 82c44320e1e695e364855313b8af7fbe29fb8a4c59313b766d79d41251b833adn/a RedLineStealer
2023-05-24n/aexe 0abb7663de0765ec0ca688cd7d3f62647bbf7221323f21d8c4a03bed1b4ceaaan/aRedLineStealer
2023-05-24n/aexe 43e2853afe3a432b74b0a981d4f5d4a0a35baa491d4cd234bd464cd5bcd0ee9an/aRedLineStealer
2023-05-24n/aexe a851f216607870f44a80c88d1adf1401e0267c22aa24d50bf4267a2981d59306n/aRedLineStealer
2023-05-24n/aexe 52f245edc26e1c188bcff019fe4c876bc68dfa8363c940ffc1acc256fb16cd42n/aRedLineStealer
2023-05-24n/aexe a57497c0b5d62040ae26c0af1bb1bd176df87ded8ea3428ff2a0a03ac2bf6602n/aRedLineStealer
2023-05-23n/aexe 72e2fbfa02491cd14d725127115a6b58036b1b985490a79c1311572fd5d26064n/aRedLineStealer
2023-05-23n/aexe fa41430611f42cd57163f8d7576526aec770485fc0fd0fb45ad9e5e58bbfa663n/aAmadey
2023-05-23n/aexe bc6427c3a0718dca2938a10770e736ae7c56423f4a93682270fb5780e2281a84n/aAmadey
2023-05-23n/aexe 9bac83c29b6b653d582b995c0fdcabb46de535c80ded7b84e3e7dd115b67806fn/a 
2023-05-23n/aexe 48082da80847e58585e043ab9686c490ef4422986cb46d2ea7e61773bf45e056n/aRedLineStealer
2023-05-23n/aexe 530e5d64197cdeac5daa951026325eb080c7391c11c111d6d0e3b99a21618403n/aAmadey
2023-05-23n/aexe 57c0fec56534617b9a3cacfc89ef6c3ef2584e3c4b0fda238d4ddc30fa04ee07n/a RedLineStealer
2023-05-23n/aexe 0bcb2a91f3a2ac63b2f95a29d79e7de45e04768eb6b688baa10e4bc00ef42bc3n/aRedLineStealer
2023-05-23n/aexe fd2cd72b07983c8e56cd896db3124fddd289dc2ee811b3b82dac10f1652bd159n/aAmadey
2023-05-23n/aexe 3cf911483225d549abb875406306c1d3c9961b6889444e8a7c9cc90dcafd4721n/aRedLineStealer
2023-05-23n/aexe d02eea14bca5deebe54bb5ad1d865a27d91c3e56f314c1fa5a576b74d4e6a013n/aRedLineStealer
2023-05-23n/aexe 4633834cdd34ec82066cd295e969e67721139049d975635a8d6ebff6bbb8b04dVirustotal results 50.70%RedLineStealer
2023-05-23n/aexe 93735c886f181d6e324bde5828ce65eada30ef259b8606ad28e64baabdce669dVirustotal results 53.52%RedLineStealer
2023-05-23n/aexe e8d3453ee1b6a418821e08d3cf7934fffb397cf36ec779bdbbfa83aeaaafc638n/a RedLineStealer
2023-05-22n/aexe a78877ee39c91f199c46e5457b83fc164fc8faa41a63fdf478a070ab86900441n/aAmadey
2023-05-22n/aexe 6fc49fd3bdf9fdb2b93c3b8cf53b80bb6bdfbf8ff1c2b71a26f862cb3dee8838n/a RedLineStealer
2023-05-22n/aexe ed3eb509474197e8d36f48751bea1f624bc64243be708d2a5d636094becebfean/a RedLineStealer
2023-05-22n/aexe 5442a3928c43a081a96ab5ecc8d237c789a7ed83e1307c38f00620b211ddb030Virustotal results 50.70% Amadey
2023-05-22n/aexe 56996546acb4a5cbec092f24bf9f7489b926b376c05cdd83815cbc470c01a7b9n/a RedLineStealer
2023-05-22n/aexe 286cb731b7a9af369298611d289fbd4952fbbb2003d198b72c259e66ef957affn/a RedLineStealer
2023-05-22n/aexe 32e5365ff5d68adb25016b54126a457acf8798bf4b228b0d63bed43b2ca8d79an/a Amadey
2023-05-22n/aexe 1049e8fb60835a084a7c98a0d1aa76a159ac0051559f6d1307670765dd67822bn/a 
2023-05-22n/aexe 3dd428c88cd7a71e76d5e518d6765df22bfc908421dd9e867a49033e50b43ba5n/aRedLineStealer
2023-05-22n/aexe cc24a372dbb83bb829d20bb1089d094839812576990218c0508dd4f12208eca2Virustotal results 52.11%RedLineStealer
2023-05-22n/aexe aaa3f775755052a29acf6d0a4234e19582962a3cfb41566c458283aa8fb71b49n/aRedLineStealer
2023-05-22n/aexe 06888515fa289da2d63fff92fe3c17efb0f35409a2a19df9c45b705ff5fdf4a3n/aRedLineStealer
2023-05-21n/aexe 662e1fb3e275beafe8711b0ac158aac7e905e27add3871929ff433e2420cd427Virustotal results 50.70% RedLineStealer
2023-05-21n/aexe 6ceb43d53d43670fc4eeb39ba6544b6af92f422a6bdd41302c5e1b029766772bVirustotal results 50.72%RedLineStealer
2023-05-21n/aexe 20acd5b0c8fb6a6a7d566bc909a004666108d624a492bf055baeff22eb41093fn/a RedLineStealer
2023-05-21n/aexe 1c58b88c090a05964ed672b5e592371fa354b53423fccdce703a0f9b9411ef0eVirustotal results 53.52% RedLineStealer
2023-05-21n/aexe 192a3eec4116b5275e148275a80237627b63e135ec24d11d948c6e946f1a160eVirustotal results 52.17%RedLineStealer
2023-05-21n/aexe dfe042f9b6e7d2f5846af79bf0d7741be1ae7ebc683e568424a8333b86c81c07n/aRedLineStealer
2023-05-21n/aexe b08511c0547ef99d31d874a99e26ea12986c05cd14e4cbb60c6c1a5aa2bb75bdn/aAmadey
2023-05-21n/aexe ff785ba0af1d34c94e30e03402009ad3117dbed00f154723f9dc5059d4ae2e3eVirustotal results 49.30%RedLineStealer
2023-05-21n/aexe 8c0bf1a477dc0ed73b1a592a8a71618d0e970b63c35cc7c61a537ed61a119b31n/aAmadey
2023-05-21n/aexe abd1e65d4d37946f766e2f7861fc50c731967dad6157099b02420219124647b1n/aAmadey
2023-05-21n/aexe 1fba179b4f5fc8d20f4a5a27f544199b9039c27989b861edf7dd530ee9874b54n/aRedLineStealer
2023-05-21n/aexe fc2cfebde30c40c17b2fa82b396332a77ebeaece58b2f59c897c51c6141c7abfn/aAmadey
2023-05-21n/aexe 2c87c3e54bc56e5ffe9485d08c491eb939ab48a634649fcb57439eae91c08a8en/aAmadey
2023-05-21n/aexe 383247a2a5215734d9ad338cd72839783bf363e639ebf973b448820db7007e1en/aRedLineStealer
2023-05-21n/aexe cef04a12b89179984e26be1a3feb090a66def4619eb3f3338df434ed26110c4fVirustotal results 52.11%Amadey
2023-05-21n/aexe 58f9d44697d52e51f01912f4f6a27a2e4519e4dcc0afb6a27ab517800a54ab9en/aAmadey
2023-05-20n/aexe dfa9ac3be93bc665397cd5ebeebefb36d35300daec213978a2083b7f444f4201Virustotal results 52.11%RedLineStealer
2023-05-20n/aexe 83343e308a48221f0e9b14ac70cff935f73677224535dd5487c99e8faebbbd5eVirustotal results 52.11%RedLineStealer
2023-05-20n/aexe 1f94732ba4e2d0f1bac134b1ff0bbfc8b1d19b637fda11b3998eba3eb50672een/aAmadey
2023-05-20n/aexe 1fe4e3816036b4cb60795b97c6b105f55d81906520c6c122fac2f8e551b34d83n/aRedLineStealer
2023-05-20n/aexe 5b5d9acb552540ed3e7d41c3758ffbd285caa8ebb7ed3efd3ed56f3e08acbb0bn/a RedLineStealer
2023-05-20n/aexe 2d668fa3bab421509eb905e47d73becc27f4e8aa1c71bf04141f5d4378b9dc09n/aRedLineStealer
2023-05-20n/aexe a190623bc05045735dd690eefa3c66144ac017a4c0c843d061aa3ee83b3e65e4n/aAmadey
2023-05-20n/aexe 0094e4d3d105a11c8f22fbb533b357da8bea5417cfe08fcbedee71f08bf1f172n/a RedLineStealer
2023-05-20n/aexe 8528332b0a69e4a8b5bb5426d628a0a7f5da320457522ba8ef2d8f836a42237fVirustotal results 49.30% RedLineStealer
2023-05-20n/aexe 555ff9dbe4a2f2a50ab8f1778776c0b0566705935e1e1f90bed38e711d9326d5Virustotal results 52.11%Amadey
2023-05-20n/aexe bd6fa46008cc86164efb7ffdd86f6494a9d3c55fe4fa979517146ad4944f76c4n/aRedLineStealer
2023-05-20n/aexe 02c1ca6a3be1f35fe454155eb5b362a73cd5864b1f190857a3f8333a206286ecn/aAmadey
2023-05-20n/aexe dfc87f5d501d1217086df7ebcb920f8a6635b2ebe5e3cccbf63487837ba4badbVirustotal results 49.30%RedLineStealer
2023-05-20n/aexe 5cc2a2492cf9bf949f0eea29121806e330d0cbd30ffc7efbc66d6766105630ecn/aAmadey
2023-05-19n/aexe 40286bb7f1f53e0409a8fdf0b45729f4a42d89c38b9d837ecc4109fae060d63dn/aAmadey
2023-05-19n/aexe d78dc99ab3b2ff457fe906fcb0135e372f7679c4387f8e065ce1a142cc4ca94cVirustotal results 50.70%Amadey
2023-05-19n/aexe 4aab7b9de862854e54be702e72840934fda39be1851bfcace4cac31bb315553bn/aAmadey
2023-05-19n/aexe 0f55f07211351f835d1c41a671cb73cdafc9cc8827ca9d89fe1a65432ff2bd4an/aRedLineStealer
2023-05-19n/aexe c4f487d44a5fb1a8e5c78b335d7b82c4e53bd5938ba0c392bd6aa49f6cf03781Virustotal results 50.70%RedLineStealer
2023-05-19n/aexe b0bc783e23acb38ad8bf6a556023e44488a076cf468f536d20271487a0ac3816n/aAmadey
2023-05-19n/aexe f066f4092a7a8d2d63ee96132e465168d38e53b2bb394a9a3e0026b991ada8fdn/a RedLineStealer