URLhaus Database

You are currently viewing the URLhaus database entry for http://5.42.64.10/api/files/software/s5.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2714986
URL: http://5.42.64.10/api/files/software/s5.exe
URL Status:Offline
Host: 5.42.64.10
Date added:2023-09-29 08:43:05 UTC
Last online:2023-10-08 19:XX:XX UTC
Threat:Malware download Malware download
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2023-09-29 08:44:05 UTC to abuse{at}lethost[dot]co)
Takedown time:9 days, 10 hours, 35 minutes Bad (down since 2023-10-08 19:19:38 UTC)
Tags:exe gcleaner link RedLineStealer link Stealc

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-10-08n/aexe 72ad7d023a7c581c83fb0ed4c3cbc04ee99d9811063b2a651fcb924b076e4564Virustotal results 38.89% Stealc
2023-10-08n/aexe e7152b36a562f24e6d301fbcbd168fb606e5b384424100e2395155ff2647f2c8Virustotal results 40.85% Stealc
2023-10-08n/aexe ab7d569823bb696782342a2ceab841d7f1f28b51751f0e6e3b4246ac4fc0aaa2n/a Stealc
2023-10-08n/aexe 267ccbc5a091d9f0df63826c68c4db5962d5fe5ff403c5f6e8fb9fce8c71c681Virustotal results 40.28% OnlyLogger
2023-10-08n/aexe 24c8ed229ff0005ce435e501ab91dbbb60a754bb0ac19305a27ef33213060784Virustotal results 40.28% Stealc
2023-10-08n/aexe 6df2f50859678fd320edaf27819b7a352c7926d45019fe3afd513ab2ee2d4d3an/a Stealc
2023-10-07n/aexe 678e9d73f1afbb97826b2733531d791813f0d23022086ac2b2a1ed405db61dc7n/a Stealc
2023-10-07n/aexe a04b96539814a9832af4e6f47a87054b255d5fa24afd06ebc0dfbb6f1466bd14Virustotal results 38.89% Stealc
2023-10-07n/aexe 9a9d77bd8ef1b96c3ea14f45d50d22f2d09b075416731a4b1a65fbfac001a257Virustotal results 41.67% GCleaner
2023-10-07n/aexe 3d0ccea3ff32e8b7334d09acda98558d3a54e967e9a9250982f985bcc8f2745dVirustotal results 36.11% GCleaner
2023-10-06n/aexe 485857e3aea94a69753f0c9a7c5d2cb0029b5e648fbe954388501419db2c71cdn/a GCleaner
2023-10-06n/aexe d06fbec5d3f866dac8126a4f7be201a228873165779d987714745ca56a77cae2n/a GCleaner
2023-10-06n/aexe f1fe64569eb3987fd8b828fcd251bd394521980c0580bf9c94620b740b777b49n/a GCleaner
2023-10-06n/aexe cfb3c8b8ead646d1528aa3b8342c5436087f4e02c15c024eb258e8fc4f089aeaVirustotal results 45.83% GCleaner
2023-10-06n/aexe 5bc976c7cfb48dd41cc2262d5f1ca41b7f9291f652a8f95a4dd1df75d3b1357dVirustotal results 48.61% GCleaner
2023-10-05n/aexe cc52ee754ae49718a49352cab0d0f4c44876e46241f7801aa3a911670361e2f1Virustotal results 46.48%GCleaner
2023-10-05n/aexe c1914894e6e67a643e782c48a06ce290c5e42f3fff52862cee6ca41a683d61acn/aOnlyLogger
2023-10-05n/aexe 0100c9710e141be644e51d53a9af213194a4d6009e9e92cb0a54267f5c87584bn/a GCleaner
2023-10-05n/aexe 5104a49a3e404daa359715d68601ec5a5923e0e10259d9ca3b66476b802b5803n/a GCleaner
2023-10-05n/aexe a36c56105e98c5a96afd837ea5d07bb1f44dd5facc73400b53dad0964ecbcc35n/a GCleaner
2023-10-05n/aexe 54e325a72006f941def72ec6c2b3187c324dd4a9d65863e9264b83af340140dfn/a GCleaner
2023-10-05n/aexe 158cc60f8458ba1273561809d46dd8cacb390d4cfcee83cb7d9be3de5625eccen/a GCleaner
2023-10-05n/aexe b1424c5839940359e0efdaffc4b366bd03042684e3d3d41777fec2cd5b1b5544n/a 
2023-10-05n/aexe d82c45f69039c845e06a293aa727223bc715ecdeb5fe1df0a7e3a7d30b1a818bn/a OnlyLogger
2023-10-04n/aexe 6c946788950bba1fbed9212df610e2cc91ef014343413be6407ac73ef4693113Virustotal results 45.83% GCleaner
2023-10-04n/aexe 5e89d8a9b19c40d194ca85db9d1df408b6771e0343a708de58d4e418f31ab697Virustotal results 44.44% GCleaner
2023-10-04n/aexe 6d0d0bfb0234dfe8b53845a003af0e8dc32f3be55a93a5a0ac7850f24c6df80an/aGCleaner
2023-10-04n/aexe f57dab60885da9213f24b4896129182cb29ad3bd7be194685b68d61e6357188bn/aGCleaner
2023-10-04n/aexe 2c1479ddfb33b21f7e61e8aa6c71aa5d2077e85ef11d33d3861f866319c16a3dn/a 
2023-10-04n/aexe 4300aa50a991eff1632149b163ad460a593ecbbd3243c17e3152f56f14c3453en/a GCleaner
2023-10-03n/aexe 0b1141e52274e2f2107480a0170c44fa4504fa545a1c17207a25d6c5c25f560dVirustotal results 44.44% OnlyLogger
2023-10-03n/aexe 671f3800557c236cf6076bacfe0ffc2ca46d0aca4efc4460ca92a146b6e12fc4n/a GCleaner
2023-10-03n/aexe 0e3b97009d54a24bbe8cede9955e5e86926e354507db770e542438e51e752bc8Virustotal results 37.50% OnlyLogger
2023-10-03n/aexe 89e22c6f592ee5ddf95d0880ee9f1eb26fba95d9de4dbb0254da81dcbc914622n/a OnlyLogger
2023-10-03n/aexe a4103d3e23ccff37756871fef6da741f2a97c9d69bfc026a71ce9f9f91b1386fVirustotal results 40.85% GCleaner
2023-10-03n/aexe 6b4a1b0937d5207d410eebee1fccfee7976d7f869bc37385ac2d841ea502e41dn/a GCleaner
2023-10-03n/aexe f465912341744c0ef64c93ad1d70e79f01ef6fed05229cf78d45ba79bd6abe5bVirustotal results 44.44% GCleaner
2023-10-03n/aexe 024f21b0a3831da9ea2b420c3f763b3d1d726d1c1e414bd4eecc1272382caa2en/a GCleaner
2023-10-03n/aexe 8b7d1c8051d37473d24b4c0114b81e5bd5f67826528452063dac13bddc3a5409n/a GCleaner
2023-10-03n/aexe db23fd98d028ce7cac3b6abcc764492e6f4992cbfcba4172327d04cc8079ab60Virustotal results 47.22% GCleaner
2023-10-01n/aexe 076232500c999b75b351890a1d8230aba9a7423fcaff0825d1617473c85382e6Virustotal results 43.06%OnlyLogger
2023-10-01n/aexe 16b1a7cd37f26b787fa6bc8d87ca3fa2088c740feb7df95b8f7fe3a2b96b5113n/a OnlyLogger
2023-10-01n/aexe d6b84a0ad1380ebe7fa8dc749bc02ac6df8c50ffe73eea2e5f4a8a21075be884Virustotal results 41.67% OnlyLogger
2023-10-01n/aexe 2e3631a7fbae59c36cf3efcab73c5e8fded288fc6329b8bef04609c8806e78ddVirustotal results 44.44% RedLineStealer
2023-09-30n/aexe b1d22df553d6d054ee0ae2d70f527deec196efc32c6363dddaba444f77f2e04eVirustotal results 44.44% OnlyLogger
2023-09-30n/aexe f91635e25f83c2520158c3068a6a4161d3f85632db08ba623b3fbcce16c7d63bn/a OnlyLogger
2023-09-30n/aexe aee2c1373dd453203a13f89bb13051b979ec70e75e090b89bba5217e83acc265n/aRedLineStealer
2023-09-30n/aexe 45c39cc2d72cb20ae971af7bb01c2e4c304f4af305643c1d2fcb5c209a462cb7n/a RedLineStealer
2023-09-30n/aexe 37fe17534c17098f9d5ca99b7b84636674c0c8034f61a15cf694724fd59042f6n/a RedLineStealer
2023-09-30n/aexe 01a42949ecab2ac9c8a72a5449e4fce7a702cf7ec9e6ce56b4553db03077869bn/a RedLineStealer
2023-09-30n/aexe 098a2b1fc097b59c551364bdd6fddf13d80a0a62a9d621068a138d2270ca05a2n/a RedLineStealer
2023-09-30n/aexe a46bd2f3cae1f3b7c74869b77e1ada2733e31d7bf646f6a1685530be2714615eVirustotal results 45.83% RedLineStealer
2023-09-30n/aexe 7e914961459b5bd01ef884444629cc0a9026548317ee1308dfabdcfe59970b25Virustotal results 43.06% RedLineStealer
2023-09-29n/aexe 4aa6d50b08d427fc3b22ba7c0651f79d297e47ff3216dc8d5164b7f68e26b42fn/a 
2023-09-29n/aexe d6c13aee30d2fc43e511b64d7fb9a93366f0267aefcabd173dc081fb8a0f0cben/a RedLineStealer
2023-09-29n/aexe a91476d994d65d2a25e5663eeda502257c6e684ec8de25e89c15187dfa2e78b8n/a RedLineStealer
2023-09-29n/aexe 1abc82a0e714d6910ef072262ba8447fd04f94924cbf38191056ea9e9be6ea74Virustotal results 47.22%RedLineStealer
2023-09-29n/aexe 0e88d07913d6e07ea499cc4adca97c9ea6239303da8aa2740825ba5943ec922cVirustotal results 40.85% RedLineStealer