URLhaus Database

You are currently viewing the URLhaus database entry for http://185.216.70.222/trafico.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2717931
URL: http://185.216.70.222/trafico.exe
URL Status:Offline
Host: 185.216.70.222
Date added:2023-10-07 18:13:05 UTC
Last online:2023-10-24 20:XX:XX UTC
Threat:Malware download Malware download
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2023-10-07 18:14:05 UTC to matrixllp{at}skiff[dot]com)
Takedown time:17 days, 2 hours, 43 minutes Bad (down since 2023-10-24 20:57:31 UTC)
Tags:32 exe RedLineStealer link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-10-23n/aexe 54b583b42ee025cc4725671412ec720f99787082eea492121ba87c98bd2b597bVirustotal results 31.43% RedLineStealer
2023-10-21n/aexe 06af574de808d01d65f985b01f6d2910e627f95429bff8bcce246ee2525f1fe7n/a RedLineStealer
2023-10-20n/aexe 47a36c892fe6faa920c02f0bfe051fb9b3ae3cf11804ce7faca63d18841881adVirustotal results 29.17% RedLineStealer
2023-10-19n/aexe 0acd3472f850ef8d3e5867417f1551c1b061ad503f1c6accc9ffc87320386d05n/a RedLineStealer
2023-10-18n/aexe 07c4357e3f13e6603800a36e787d3c2aa1f73bf94185a8ac8de727986ab3799fVirustotal results 44.44% RedLineStealer
2023-10-17n/aexe 04ec519ce641c6986f15134d8c49fb1ccf21debab72b65e165cc8cb158ba7ec0n/aRedLineStealer
2023-10-17n/aexe d8bf54408381acafdb2cabd8f06e71f7b2c0357f430bf1094494aeef2650d089n/a RedLineStealer
2023-10-16n/aexe 8a0ce1dce56b91f1612ca22b2469fab9d34cd18313f67b960a34160e06f7a51bn/aRedLineStealer
2023-10-16n/aexe fd2501cf0d5d7b49db724be2562b994fdcde0a65f1e8fdd96cd6baefca30c634n/a RedLineStealer
2023-10-15n/aexe d77617d6633bee3d878ec0e24576868511d446f47bdb4ef644fdb8849ba7e497Virustotal results 43.06% RedLineStealer
2023-10-15n/aexe 5d8614a3f4e7a864fbd78d6996b185d1e8bc0e882683a22fa9bbf3ae7898173fVirustotal results 48.61% RedLineStealer
2023-10-14n/aexe 30499d8288a38c428dd0f99390955f1ae753210c382d58b86f29030fbdb04625n/a RedLineStealer
2023-10-12n/aexe 86d4b7135509c59ac9f6376633faf39996c962b45226db7cf55e8bb074b676f8Virustotal results 36.11% RedLineStealer
2023-10-11n/aexe 194475450c4a476569c4e00d985454eff049435fa95da39b44308a244e7b8bcan/a RedLineStealer
2023-10-10n/aexe 3b1af64f9747985b3b79a7ce39c6625b43e562227dc2f96758118b2acb3e5e58Virustotal results 43.06% RedLineStealer
2023-10-09n/aexe e72fe26531f2cd68a38a8f6dacbd333b0b24fa8d72a38098201241df1a6fcec0Virustotal results 48.61% RedLineStealer
2023-10-08n/aexe 88c4433841a3f22709ba3b3775add2ec137a2fa9b129c55e33c92cea478d47d5Virustotal results 36.11% RedLineStealer
2023-10-08n/aexe b15e8f35b848a0cb272a4d480235baec025dab7887409c0551ba810e3a15f7fdVirustotal results 31.94%RedLineStealer
2023-10-07n/aexe 90e574804204b26a7a56a54d56f44660131015bd4f4dbd58e42717634cc442aeVirustotal results 38.57%RedLineStealer