URLhaus Database

You are currently viewing the URLhaus database entry for http://5.42.64.10/api/files/software/s2.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2716172
URL: http://5.42.64.10/api/files/software/s2.exe
URL Status:Offline
Host: 5.42.64.10
Date added:2023-10-03 16:07:04 UTC
Last online:2023-10-08 19:XX:XX UTC
Threat:Malware download Malware download
Reporter: andretavare5
Abuse complaint sent (?): Yes (2023-10-03 16:08:05 UTC to abuse{at}lethost[dot]co)
Takedown time:5 days, 2 hours, 57 minutes Bad (down since 2023-10-08 19:05:08 UTC)
Tags:dropped-by-PrivateLoader gcleaner link Stealc

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-10-08n/aexe c6b4a6006232a333a1241d858bd89422ff3fe70bf848a74b0af94295a1f6fcc2n/a Stealc
2023-10-08n/aexe d40dda84e95e9e0f1f378bb0150d3db143f66fe54d7fb70bccef48b5d3f7fbedVirustotal results 40.28% GCleaner
2023-10-08n/aexe 10772f8eccc708617a6c82a512984ed60d06acc6d9d0333336f4d0bbdaee3888Virustotal results 37.50% Stealc
2023-10-08n/aexe b093414aad6957101087f92efbe33d79611d6eb28e4133072121e303366a2fc6Virustotal results 40.28% GCleaner
2023-10-08n/aexe bc0e1ce27f71d46bfbd3f6feb947392d3769ea6f746b6b86af7c3d3707766450n/a GCleaner
2023-10-08n/aexe 92f8faa5180fb698b2313532039b120227e32255dfacf2b3139a4b3734a1fe0cn/aStealc
2023-10-08n/aexe 318d9c5b06becd9d9a6dd45163aa92be55d2e211479249c99206903ccbe88c04n/a Stealc
2023-10-07n/aexe 53d10bf98c4e290949b6efe10418a674c737c837ad85fcd47baeeaaa8d72ddcfn/aStealc
2023-10-07n/aexe 030c0eab77f63f34b1d09730a8d01a6e5c128c564f75e8f24dddf1a9c1917507n/aGCleaner
2023-10-07n/aexe a4f2367e3e2e9a8ce919fde4522d4a347e30fa7625ff391b082a5c830acb1a76n/aGCleaner
2023-10-07n/aexe 6eaf95c07c3036475991203e7e5138e1d22ddbd327260b0976d87127b27d009fVirustotal results 37.50% GCleaner
2023-10-07n/aexe 77ce8c4b29d27000e2e3cb3d59c560fdefd60d8aa1056a8c8be2008c6a8b1513n/a GCleaner
2023-10-07n/aexe cef065a905c9f89d84359863479242f5712db9cf51375429fc48ded1e94661dbn/a GCleaner
2023-10-07n/aexe abc972e09625b5f1a131561e3a5ea26bad66898d57daf84df32122e70753c170n/a Stealc
2023-10-07n/aexe 12cd64a6d63eb4c7ae10c011a65ea69f9ce0022197d39cb454cc63fc7e147f78n/aStealc
2023-10-07n/aexe 87c9f6da1bde1c4762477b55c8fbd4f821464f23669c08eef59df00adc438a37Virustotal results 46.48%GCleaner
2023-10-06n/aexe 8b0714565b074620b76ed5051c5141f847942bb28826481853d96226945109c5n/a GCleaner
2023-10-06n/aexe f2edb84d865f8222cdd4c1344d0398850e08ce010c61c2120049cd297134fb75n/a GCleaner
2023-10-06n/aexe 14d42fb557734c871234ea059f6ac42d8412f3604e673c80e92cbba6f5e4fb63n/aGCleaner
2023-10-06n/aexe 12bdf206891fbe0e025c20a03759b0e4f2e70e891d961534a30678dfc4230883n/aGCleaner
2023-10-06n/aexe 6106eadef2eb944c12ddf37279f4a235f619c4c261b0195c89ab835737ed4f9bVirustotal results 38.89%GCleaner
2023-10-06n/aexe be4fc8e087a990d1732d2fc16e88cb0b7dacf0ef55554f16dbb06b64ec22bc55Virustotal results 39.44%GCleaner
2023-10-06n/aexe d5e9383c7d7c9847fb5217435377191d966b1f231f3c330c79e03f9be2b9798bVirustotal results 40.28% GCleaner
2023-10-06n/aexe 53ecd65a59dc07825bdfffda2171c09320aaf88155184e854c2c2434f0a6e5feVirustotal results 43.06% GCleaner
2023-10-06n/aexe 58e3dc752e35eba94c696c71b2e8ef1b9f467d5f7ce9a1c67c4d2ac059f66922Virustotal results 43.06%GCleaner
2023-10-06n/aexe ef2873711a07ecccc67b2c718651a8ce4b23404aae1e77c9d3766d62c554b37bVirustotal results 38.89% GCleaner
2023-10-06n/aexe 4d5bab7147d74203c4fd47583c7ac3e3b1427bfac80a22c4473700cab181cbb6Virustotal results 38.24%GCleaner
2023-10-06n/aexe 27b57ec9015a42bffd3ba9ada2b69802e77051909726b17dee69438f850abe77Virustotal results 48.61%GCleaner
2023-10-06n/aexe 3d03eed9848645fde88610e9d0b08070dfa6713264111e1eea6911dfa2bef751n/aGCleaner
2023-10-05n/aexe 095a2bb6539c034a60a7a07f4d507764adde59588e22952b387af48801f042f0n/aGCleaner
2023-10-05n/aexe 3c384c9d8c7d64f86d8506f713191cd90b83ec734a19137ce86f13067bbc426cn/aGCleaner
2023-10-05n/aexe a8d931c66b621cfb5fb7e504cba80dd3f543b9464e382980663afab49cb64ecfn/aGCleaner
2023-10-05n/aexe ca61a90899c2ae559f5b0ffd4cba6b68b8472ad22d582b2c9199626af97faf8bn/aGCleaner
2023-10-05n/aexe a631321bcd5918689455e3c2d2f17538192a27e056b2f2255a68578fceed8492n/aGCleaner
2023-10-05n/aexe b482d79969e96500849a0ba17134ce8df366d7ada84949c23f75b4053f4fdbf3n/aGCleaner
2023-10-05n/aexe 8dd45c3deaa091c3bdde3456ffde09709d17802c57d4d6dbdf6fc5d5d1e3c8fcn/aGCleaner
2023-10-05n/aexe 081312cf1c09e5a743ce3d72e3d656be5be621d810163f829394821c2aedddc6Virustotal results 43.06%GCleaner
2023-10-05n/aexe a36f57a8a85068b665998f143867ff57a4cad4e24f66acf48cef697df2e9ec86n/aStealc
2023-10-05n/aexe 134a9c039c8bd677ce4cb6cab52ee0a1d52a4fe3ff21600871ee38b9a629789bn/aStealc
2023-10-05n/aexe 55df033fe62f9b849870c10e28db0432cb4287e278cfc80acc3d113a6887513dVirustotal results 42.25%Stealc
2023-10-04n/aexe 5e67e7c2573fa5e6522517d3f97cc38b79d47f4e0b16d4d1b9448ba72626d355Virustotal results 45.07%Stealc
2023-10-04n/aexe d0c12de8d2a6fbe5508aee9868550ec7927270bf824d0151e01cc7e6f01bbc66Virustotal results 41.67%GCleaner
2023-10-04n/aexe c093df19539455619b30408268030ba22b4fbba44e6872115f58642e626b494dVirustotal results 44.44%Stealc
2023-10-04n/aexe d37b53f23353eede338e7d30afadc73cd4ca9e1f010367925e70502c4c27bd95Virustotal results 43.06%Stealc
2023-10-04n/aexe 42db432af6bb66a8db4da5e46f3e6574b18fc93d6f11f370cad0d116f745085bn/a GCleaner
2023-10-04n/aexe 1837622fbafa47eb30d479df4f4c97e41e54c9f65c99859b9b4ef195fa9bcdbcVirustotal results 44.44%Stealc
2023-10-04n/aexe dbee3dbe90cbe6fefd612f476a0f8e34f0f74bdd4785db3adc424efaff3f3ac4Virustotal results 47.22%Stealc
2023-10-03n/aexe 6e75be092dacc4f00da72baf4ea2d7fcc84220ec04f213e0b14eed89004f4ae0n/aStealc
2023-10-03n/aexe beca325649a048fb9d8517b206b82f94a0663138725660ee957b75e8d5ebe494Virustotal results 43.06%GCleaner