URLhaus Database

You are currently viewing the URLhaus database entry for http://77.91.68.78/lend/asca1ex1234.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2714985
URL: http://77.91.68.78/lend/asca1ex1234.exe
URL Status:Offline
Host: 77.91.68.78
Date added:2023-09-29 08:41:04 UTC
Last online:2023-10-22 14:XX:XX UTC
Threat:Malware download Malware download
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2023-09-29 08:42:04 UTC to abuse{at}yeezyhost[dot]net)
Takedown time:23 days, 5 hours, 27 minutes Bad (down since 2023-10-22 14:09:04 UTC)
Tags:exe RedLineStealer link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-10-01n/aexe a744a3c6231d68eb30fd4ec1c1deb3830b13b36d3c4bae9ebf03c3d1380b0f79Virustotal results 35.21%RedLineStealer
2023-09-29n/aexe 53bc1e571f46bd27d5eb5130efb564ffaa9644d1f8b5bb23e24e0f1d006ec14fVirustotal results 33.33%RedLineStealer