URLhaus Database

You are currently viewing the URLhaus database entry for http://77.91.68.249/fuza/foto2552.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2723294
URL: http://77.91.68.249/fuza/foto2552.exe
URL Status:Offline
Host: 77.91.68.249
Date added:2023-10-23 11:41:06 UTC
Last online:2023-10-26 00:XX:XX UTC
Threat:Malware download Malware download
Reporter: viql
Abuse complaint sent (?): Yes (2023-10-23 11:42:04 UTC to abuse{at}altawk[dot]net)
Takedown time:2 days, 12 hours, 23 minutes Poor (down since 2023-10-26 00:05:57 UTC)
Tags:Amadey dropped-by-amadey RedLineStealer link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-10-25n/aexe 28ccdd5bf3bb1b17f7a6ec3cd59659eb28d8258ba655dc33c70ff7d882331721n/a Amadey
2023-10-25n/aexe 4204ff8746e53d568892e5c136763b1a8f84402957a2f4451eea03b880bb7e08n/a Amadey
2023-10-25n/aexe 66109085a168113e335e97e4b0bffe826ba4f55d09f638a6d4390a8cc8eb6d02n/a RedLineStealer
2023-10-25n/aexe 37984d744b7d4452011e12fe82d212b5f0f20a5e92ac6f088c723fb85f5678fbn/a 
2023-10-25n/aexe 614b87eaeddbba9e18642325fafc5f551bb0ae68dd130e40bd38f450d5148309n/a RedLineStealer
2023-10-25n/aexe 624337d4d57e366c677e791a73085b565e648398e14ecf628eb94d11f711ea38n/a RedLineStealer
2023-10-25n/aexe 7f4722e7fadbedb2216c44c315525aa51842950af0031ac0adea3f7319bc6f2an/a RedLineStealer
2023-10-25n/aexe 05a4efd8a23daaf90824cde7de26ab07ebfc1481d5291975fbd8097cee6ce900n/a RedLineStealer
2023-10-25n/aexe 28cf7fdf39db49d655ebaf824f2dc21d84e84be5057ec0eae5b984f87e1d0c60n/a RedLineStealer
2023-10-25n/aexe 728232d2834326b19683d24c46d2bad5c85e6a590db8eef91b71576eca2a7e2dn/a Amadey
2023-10-25n/aexe c08296eb9031064fe8144e0a3e199697b5b60eb7819cac1fa1b30ebc1b2baf49n/a RedLineStealer
2023-10-25n/aexe da688d82938f36811af75a3d7b87e20708cba2ce07c41f6cbaed528f6dd5f82cn/a RedLineStealer
2023-10-25n/aexe fc55215044da76fe9094b8937599ef7af22a0d235afa260584bb1f24194f9f3fn/a RedLineStealer
2023-10-25n/aexe 362bd0e9f5346c3885529917b20385a865cae8420317575347ae7154044fb929n/a RedLineStealer
2023-10-25n/aexe bbed5b4c8b031edfaed049a1ef19de3f1f52512b742eceb4b58c849be40cd3a2n/a RedLineStealer
2023-10-25n/aexe ed91f4d5aa0763609feb822037e51adeaaea2d94c3696a8e94e61e61a9520ef7n/a RedLineStealer
2023-10-25n/aexe 6fba85a3ad00bdc60f80352aaaf227e4924b59fb5fbe20384afcc674ea0cfc4fn/a RedLineStealer
2023-10-25n/aexe 90a61b19ad2e536467f86cb71ade24f461b4f5e7378f00a30fb1480a10ca67acn/a Amadey
2023-10-25n/aexe 1c85f5f84a7b42a17eef74dbf860034e60a173b03686d7c5e46ae64673d42ae0n/a RedLineStealer
2023-10-25n/aexe b43f0d64758c7fff2f6f82ab8fc8d8be5cdf9d6ecd55112d983ed65c5fd34ad0n/a Amadey
2023-10-25n/aexe 497d0e4a5bdc129b36093d57042a1bbf3f10db3a419f5e49485b67dcf007b6d7n/a RedLineStealer
2023-10-25n/aexe 8bbe3fa405043c2ebddd791b5f1ec531d4489f1e5d502059e30017a11c165900n/a Amadey
2023-10-25n/aexe 5430c0397fe39a5bdc5c41913cf1f9deded10061f7af505f0da8be32bfc80133n/a 
2023-10-25n/aexe 47ebaaafc29326ca3dc7f6d26cb214c9c25798223c02131756c39a1e01987678n/a Amadey
2023-10-24n/aexe 17be37777183e33fadc5d22711c5ab5be91a457fc9f9562f442a3eaeb18d776bn/a RedLineStealer
2023-10-24n/aexe 9c128853978bde2d5a6917f4af1460c978d29395096ce31966f1925a1357171dn/a RedLineStealer
2023-10-24n/aexe d341561baf8070ad2d550fea3f194c897a2356374414e419f44707c77962b165n/a RedLineStealer
2023-10-24n/aexe 3ad8d509c7a9772fe0e2dfb3a0e358ae1c8f218e589bf36cbfe19f78f0da8421n/a RedLineStealer
2023-10-24n/aexe 83adae7572a6e19cf86a60273f80ff8c8df5430e7292c4c2e28d0fd5dacf5343n/a RedLineStealer
2023-10-24n/aexe b9a19325dde2d7358c03008da20cd6d949c7713a70a8e25569df7b7c26e4eb89n/a Amadey
2023-10-24n/aexe aa334e5cee77f4d317b54206f5c96224660c5ed62e69b6b60a64b4e6da59daean/a RedLineStealer
2023-10-24n/aexe ff0b1e6cf38edb7866416f298246eaa00fe3cff3c2e061acb18827f352cb6cd6n/a RedLineStealer
2023-10-24n/aexe a2fddc32168c22aa93cc01ea91415be84634af47fc7fdce06e6fedbfa18c913fn/a RedLineStealer
2023-10-24n/aexe 14b477c86ce6cf6784616525ff66dcfdc0937154f074b1d991664256709343c0n/a Amadey
2023-10-24n/aexe ed57ea049f112b776d93c297c02315e5c97ae68eca18d9c834909ad84915bbcbn/a RedLineStealer
2023-10-24n/aexe 649930edd854fe0c49d65096148d489ad4823717a31869789f96052368562090n/a Amadey
2023-10-24n/aexe 66c7d6f4c35e961dc09ff52e968af4f221cd87d63d60e3efe9b0a40a1f430bean/a Amadey
2023-10-24n/aexe 42d044b44f602e020fbce69783eea71d8a92fef6ce0f019ebc06540dd01f1a8fn/a RedLineStealer
2023-10-24n/aexe 8910c865cc2f368e2272f48b55656bf12ca421d7c6d25aabf51a0c09925f4232Virustotal results 64.79%Amadey
2023-10-24n/aexe 31370e376b43ec5c9ca08e233d2e0788edd5966fb3a9e9afc9fc5d8e8d98a106n/a Amadey
2023-10-24n/aexe e1538f04482893bab777c4a7dd075f5852105724eb1cb0a0947fab5590924f3bn/aRedLineStealer
2023-10-24n/aexe ef4d9c26f08090991b22c1516d84600bc1d90e6283e95314b43e7276ed844fb7Virustotal results 63.89% RedLineStealer
2023-10-24n/aexe 0da921990e3adf5f4e1e222e4de086733839772aabd9caa954600baa797968c4n/aAmadey
2023-10-24n/aexe 4e2e290bc5dd794e1b7d7c546baecc13f7d7d72e18851d2014b698c01ebf48f3Virustotal results 63.89%RedLineStealer
2023-10-24n/aexe a9aecb7abf79d5b5055113f69dba8cc2679067b1344610961251f8391931326bVirustotal results 58.33%RedLineStealer
2023-10-24n/aexe 0734eb4e932f17bd1fa178dd0d19d8133edba8b7bf3be8ce3bc4de42d7d27185Virustotal results 61.97%Amadey
2023-10-24n/aexe 2a23adc1358d4c8fe27501ffa5321aff351f3d6483761124919193a42e7e6141n/aAmadey
2023-10-24n/aexe 52bd35e92b25fa394ef3811f27f4d1bc260d51b515d9fea78fed85efc885fb7en/aAmadey
2023-10-24n/aexe ded9f5fb621a660c9a661d58f6941d2f66bc9a06514ccbe70042ce4e9664ee86n/aRedLineStealer
2023-10-24n/aexe 6da4a7251f13fc0a3eb28de0e976f647f5edbb0731a94141862a39fe49650d83n/a RedLineStealer
2023-10-24n/aexe e623023d0263f3ac2fe11f5046d653925b3b9741b6813758e87267ca0ab1c0a5n/aRedLineStealer
2023-10-24n/aexe 1077bf79f52c20297fc4135e02ace624be02881f389ad8480f14ad004fed890bVirustotal results 62.50%RedLineStealer
2023-10-24n/aexe 73c3e3e0ed3c2444fd7e46aa07a04e82ffdd5d6f96f74a8b77a95613b30470adn/aRedLineStealer
2023-10-24n/aexe 6cf84c958ae5f37196b207b97dbd5d9f7dadccbe918635900460ae65a6841ac3Virustotal results 61.11%Amadey
2023-10-24n/aexe 6278860fe2d59ace0fa7fe4304729a15de2168311a5eca5dfb35762c356840e3Virustotal results 63.89%Amadey
2023-10-24n/aexe 338d500e5fcec627fb114a604e32c5577c5da39deea810452b3878dd3a6ea9bdn/a RedLineStealer
2023-10-24n/aexe a795d00c903047a7ba64e18bd70b253a4bb52767cd3256484861e38d79e17237n/aAmadey
2023-10-23n/aexe 8590cb8ac7e04bc7b5fb4a31fc266b790a1ca382778fbcac2747f4659c31d110n/aAmadey
2023-10-23n/aexe b34a85e9379d7b57570c0ffc353d754c51879da12c5acb3d8771450d5e37839bn/aAmadey
2023-10-23n/aexe 81a4ae1d234a6b34935dc6aa3d76065be24a52a900a0b5704cb8544903eeb740n/aAmadey
2023-10-23n/aexe cbf29f4859bb81364703892811c013476ee634ebd31ae55511df99bcab0d98fan/a RedLineStealer
2023-10-23n/aexe 8e2be0390780a6aa42633d3ffdb616e950bac13e3c0636345bbe586b998b0043n/aRedLineStealer
2023-10-23n/aexe c0b315c6bdf1a347016aae16ba26417560e7cee805d22bc44676bea4017059f2n/aAmadey
2023-10-23n/aexe 73585aafdaff1676cab8eddf54bf26806a664e5346b8d221634fc17de11360a0Virustotal results 56.34%RedLineStealer
2023-10-23n/aexe bcd6049754df54d8d9d7ee272b934db97400e53e719b1970afd6e4b5bb7fde61n/aRedLineStealer
2023-10-23n/aexe 68b57b46c5fa97ebb136c1ed1853a4bc1f762451e9ebffc26e91b46af75e1a1dVirustotal results 59.72%RedLineStealer
2023-10-23n/aexe 16f72e18e82b49e6e5fb73c127ca02d84abd538f3b0b78b9729f8ccfa5f9ad96n/aRedLineStealer
2023-10-23n/aexe fef07ec95d0cc32be0fef7bb7bdc8881fa3abaadbf0f90f670768920c99d77a0Virustotal results 55.71% RedLineStealer
2023-10-23n/aexe 9173aaa7878972c28468353c8df3fa6be2e0df8dd9748be19753b4dc629d882cn/aRedLineStealer
2023-10-23n/aexe 1420ebf3abfc176294ee36beef4448a1f48465da81c1474d413337f835e23771Virustotal results 58.33%RedLineStealer
2023-10-23n/aexe 277d615e4dec06b13d7b1d8bbc729827c995771e3bca0a9c34fe67183bcbf10eVirustotal results 61.11% 
2023-10-23n/aexe 7626d2dd4407af235355482ddb811843a11e1355ee50f029cbcccdf1b4bb0907n/aRedLineStealer
2023-10-23n/aexe 613e735191106de1515ecf0317f1bc32ed151f55826397012ad75b17217167c8n/a MysticStealer
2023-10-23n/aexe 08a083c10103806fab4082c3e9587972cd9228bbd9f900dfef4236963531c977n/a MysticStealer