URLhaus Database

You are currently viewing the URLhaus database entry for http://77.91.124.31/anon/an.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2684641
URL: http://77.91.124.31/anon/an.exe
URL Status:Offline
Host: 77.91.124.31
Date added:2023-07-17 19:58:05 UTC
Last online:2023-08-02 13:XX:XX UTC
Threat:Malware download Malware download
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2023-07-17 19:59:07 UTC to abuse{at}altawk[dot]net)
Takedown time:15 days, 17 hours, 31 minutes Bad (down since 2023-08-02 13:30:11 UTC)
Tags:64 exe FruitMIX RedLineStealer link Rhadamanthys

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-07-29n/aexe a717bafa929893e64dbd2fc6b38dbeed2efc7308f1bc3e1eaf52dfc8114091adn/a Rhadamanthys
2023-07-27n/aexe 79bcd1456826ac8e36a6a0caf78600609f2cdb7d4b991e63313bc5651dbc4e93n/a
2023-07-26n/aexe d24cac5596825fe9f802f9aa40201452c16f40fea1b4c46b5a23423c13d7f180Virustotal results 15.49%
2023-07-25n/aexe dad6626f880fa91d5ff97eb4cdecb43bb660222a90f7dab9b331f8c2f36cde1cn/aRhadamanthys
2023-07-25n/aexe 211809c137b352584707b7d3b254df7e9b80302615f758ff8060b535d8804945n/aRhadamanthys
2023-07-24n/aexe f0054a6c8112d1bd14324523d25d3877b7d06a2319100af62c5ba5a7f6417bf9Virustotal results 15.49%Rhadamanthys
2023-07-23n/aexe 737a4e3c0bc536fddc9f55099a01736da0b5ecb543d62b55ec3f29650a1305d8n/aRhadamanthys
2023-07-22n/aexe 4942affd9f46342eef2682c4e23cdc0e2af16a22e9dea23aeaf4489a7386beffn/a 
2023-07-21n/aexe 59d487045a1fd887ed3cac435e7bfaba490385259a7570d5e70883eb43a38ca8n/a 
2023-07-20n/aexe 9e8545b4bffd2204b337d0cbf8a98be20326ae239802899cb0725948dff457eaVirustotal results 21.43% 
2023-07-20n/aexe a1464d56a5e5875be43509bb86c5125d7249c40e3257ef87f1d69e48c145da42n/a Rhadamanthys
2023-07-19n/aexe 2f3ccea0f4726f0d795d4b176c59639fe9d11be7d15f0970b3a7682c4e582fb3Virustotal results 27.14% 
2023-07-18n/aexe b6a1f7a46ead00ddc8691bc83782d299934ef81a8dd9517d09aadd4296120ef3n/aRedLineStealer
2023-07-18n/aexe 772b9bb527943f418efc93641ac7d2c010bdbbcc5e08847074a7175f711e0b43n/a Rhadamanthys
2023-07-17n/aexe 1f345a1671523926cf7c62e3f4a85b19a2559a6117519eab5f44aad967072357Virustotal results 30.99%Rhadamanthys
2023-07-17n/aexe 1f9608369e65dd661a77e6f7ba62ff9435061a7be179bd1602a55893e754e1ccVirustotal results 36.62%Rhadamanthys