URLhaus Database

You are currently viewing the URLhaus database entry for http://5.42.65.80/latestrock.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2727385
URL: http://5.42.65.80/latestrock.exe
URL Status:Offline
Host: 5.42.65.80
Date added:2023-11-03 06:56:27 UTC
Last online:2023-11-16 16:XX:XX UTC
Threat:Malware download Malware download
Reporter: Casperinous
Abuse complaint sent (?): Yes (2023-11-03 06:57:07 UTC to abuse{at}lethost[dot]co)
Takedown time:13 days, 9 hours, 55 minutes Bad (down since 2023-11-16 16:52:37 UTC)
Tags:dropped-by-SmokeLoader glupteba link Smoke Loader link Stealc

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-11-13n/aexe c2bf118e4b933b8a54ac5841c280231320182cce5e2e3af28e5db089b6198e4dn/a Smoke Loader
2023-11-13n/aexe e5a7a57457a26d720ea4e758528da46c8b327bd8e31e5aff0999366898650d37n/a 
2023-11-12n/aexe 81632ed8cb54c19688b06bf33f49214f259454d8be8d41a0a54632b32472c156Virustotal results 61.11% Smoke Loader
2023-11-12n/aexe 8f6ac0c963a5642c211bc5d6bb47da885562908f716c98c21560e29acfe6e42en/a Stealc
2023-11-12n/aexe 471e7356f5688b05ab5ae1608a09f1af680ed17b7b857138f404a6321dcca7e2n/a
2023-11-11n/aexe c646664de8fc9fee5af83d716642be363f0965fa3d95958b433719bd3e73a778n/aStealc
2023-11-09n/aexe ace19af274a8621575b615838a1ea1ebca87ef0917fa4fba4c94251c9cadd31cVirustotal results 59.72% Smoke Loader
2023-11-09n/aexe 8e45063e1a145b4615ebed660283c782c83ed9a8887f0ad5d5323fc605af2f35n/a Smoke Loader
2023-11-08n/aexe 3896ce0e1c5303b2a1e3fd68b483da076de04d757ea5226e6dac5429e25f7a66n/a Smoke Loader
2023-11-06n/aexe 611e6e42c48a86177c0bcb9cbde807ad275d13440e1772a7eaf29d3891db3f3bn/a Glupteba
2023-11-05n/aexe 12e23f7064f23cfda81e75f0b778e2fbdc508372d26de1e283b6e36988afc26an/a Glupteba
2023-11-05n/aexe 3397a524da79660589f2c4ff107d9018d01d2918feeba20f5d7e4c87b4a9edb4n/a 
2023-11-04n/aexe fafc3b0e8af66f908427a0213f414344712ad4f9afa4fb2d0a7bd58aec091a30n/a 
2023-11-03n/aexe f24d47bd9cc9daa71c869a1d06551801395ba2bbbff0c33a102e79d32c0a630dVirustotal results 59.72%Glupteba
2023-11-03n/aexe 54349953542084ceceb6de40c4edc6124bf69ccad39051a62d8e2be651acb9dcVirustotal results 61.11%Smoke Loader