URLhaus Database

You are currently viewing the URLhaus database entry for http://109.107.182.38/sota/merso.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2755571
URL: http://109.107.182.38/sota/merso.exe
URL Status:Offline
Host: 109.107.182.38
Date added:2024-02-02 17:06:09 UTC
Last online:2024-02-04 22:XX:XX UTC
Threat:Malware download Malware download
Reporter: Bitsight
Abuse complaint sent (?): Yes (2024-02-02 17:07:07 UTC to abuse{at}altawk[dot]net)
Takedown time:2 days, 5 hours, 15 minutes Poor (down since 2024-02-04 22:22:47 UTC)
Tags:dropped-by-PrivateLoader RedLineStealer link RiseProStealer

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-02-04n/aexe 5990afc9e913df4f819c8875f330a65d284528fc6a32e4393bcf4338d57dec83n/a 
2024-02-04n/aexe 85b29992d7614d3e8d6fb5b7c1edb469f895cc64ddf19abd0e4843225aba8612n/a 
2024-02-04n/aexe e964c08b25b2a14fa98469e4c48e77f43e526b66609de556e8b048c0c2eb5366n/a 
2024-02-04n/aexe d35678f08297863e84f8273a0229219aba8b4ffbc0da30dca27b9d75cbc592bdn/a 
2024-02-04n/aexe 68ddb928d7865b44b7a400c36b4889c1154c4bff0f80a6cdcc85f8f641f2bdfan/a 
2024-02-04n/aexe 047786eec7c6a85d2323a72d6dbb0c3b736851f292f639fb326201d9f68619c3n/a 
2024-02-04n/aexe 07c6597269c8d9e36de57afb7863ec53df5e20ecad7b963c113f7229ff6af005n/a 
2024-02-04n/aexe fa5ef8c71c46fa7c3651cc2bad3d80f0fb2905fdd7d530eb32f66e267bffc7d9n/a 
2024-02-04n/aexe f7ebb6b80a91523cecf3d56e63a9c2a24f13788325db15afecdc4eb058babf5fn/a 
2024-02-04n/aexe d6cea6a7b3ae62ed7b8da188dc88552778621b5d18b6052eca82f7070a6b604fn/a 
2024-02-04n/aexe 2dc9d78770383a116db6328d1381435ac778a99563a6d60c52f6f5306994f2c3n/a 
2024-02-04n/aexe 286662fd3bbc564e1221381fd2085c07e6e018716ef045c9f5378006a01cedd3n/a 
2024-02-04n/aexe 9a0fa04d1b4fc11c06edd3f80a4ba0284e585b983bbfbbc6b35db9d3fa5b75b6n/a 
2024-02-04n/aexe 44a9262abec1a51f1ce09363e96a1c62d347fa1dae743fd6a1220ba290661358n/a 
2024-02-04n/aexe 6225695c0eb1e413a1207a46395318ac7237a8b3a831bca41031f8a3de1d2455n/a 
2024-02-04n/aexe efb2f8ef25b96aa6311f2b3cb06b9c73cff99c48115bce71bfd1106980010dd0n/a 
2024-02-04n/aexe a767757cd489e39c2ff25ce6fae06e3d273d4105116ba497dd6644600dc583cdn/a 
2024-02-04n/aexe fbcb586957edd1e4045a3c84a8c688269c3589ed72d95c8f083b68c975249ca6n/a 
2024-02-04n/aexe af003d48694cd31a9703aa7d3dbd574910d2154674dbe78ac6bdb42ca3d2a5b6n/a 
2024-02-04n/aexe b426f7fdf0f220afb0180b737ca40e5a1c2b1903a1c12dc0c68934947132b7a5n/a 
2024-02-04n/aexe 372520905ceeed960d315f7501d2e0e27602447c7eb622916bf33612a38ad0aan/aRiseProStealer
2024-02-04n/aexe d82bbe85dd91b585355a379d4ce2bb9d2c917743f416cf3d3895bf9e33c23832n/a 
2024-02-04n/aexe 5bc0b906d010a10f47e7072611072fdba4cd82f318ff28c6c70523a5f4ae11a6n/a 
2024-02-04n/aexe 8c45d912e4f2c67d9d6b7af99f67aec1698c92ea0731564a8511ec9515a769b0n/a 
2024-02-04n/aexe 10984881b04269a14ceeb015f661ca42b2ef3788537f3dbe4161a0102fdfc3e2n/a 
2024-02-04n/aexe ed7c32ae3793a927af3a2ada9c7814d93e1a7904c8b2a402b53603c4bf01ee9fn/a 
2024-02-04n/aexe 687b1c2a89f8c1224699002e9cc51f85f95b7ec8045dfc0e26c10c2308ee240an/a 
2024-02-04n/aexe 45e0f38345d72ded449e01619ee87b2da9dc3f28d724011d652515f7aa94fa9dn/a 
2024-02-04n/aexe 14e8147ac38a51ae32d88f4955355bdab0fab566c258e82506d0173b18742bf9n/a 
2024-02-04n/aexe 5da8c3ff5bcc5344af6a63942b1b6b091e45a6d22ac9a7563dc8c07aa59963edn/a 
2024-02-04n/aexe d135214a5eab17dc18154af516bd4c03c2cbaccaa2674d6f88d958ec4d314b4bn/a 
2024-02-04n/aexe fa1f84edd938be93e49757e5bf7d64427d6e74c73e85b4eba489658a3cee17d5n/a RedLineStealer
2024-02-04n/aexe f2345c3ad2c07fed439eee4657a883d757a107ce49a7c39e9b8a80e28acfcf1dn/a 
2024-02-04n/aexe b852674475ad5e13174092dc071d3016c0df12012ec61a219e9129555a89e7e8n/a 
2024-02-03n/aexe 91595f74fb446c3c7caaf1f8b1f9e0c75d47a1fe8ec4280d542126fb4cf25787n/a 
2024-02-03n/aexe 2bc707672bc6312406898b547c865f9f138ceabc804411cc1b3b02c6caf61047n/a 
2024-02-03n/aexe 92c0b26a95a35b169c3c79a97daa44fe5c40927a86e02fc655bd8ad157d3a78fn/a 
2024-02-03n/aexe 7560b4741f3460f7f1baeb2d602ba1f6225e824db9ae282d20adf20b249ba16dn/a 
2024-02-03n/aexe 69b4a0f157e9723216254376d4b589edf2d27d7e5356e05c3acea0f7caf20a4dn/a 
2024-02-03n/aexe 220307e8989f9b67ccbb2c33874efe745fba5e515c1babb6d6cadc3fbcadc308n/a 
2024-02-03n/aexe cff3ee2afb642ac67a327b3db8ee209d9ac05c8d266c862bb604c63682b8f7efn/a 
2024-02-03n/aexe cb1d2c763d093eb6b17797df321ba8e923e2e672c49a8da29dc0274c595d0d0fVirustotal results 59.72% 
2024-02-03n/aexe ba38c776f45e470c8a6ffb7bb3f65fb6da3e5f34d7a9fe60c6bd339cdd91fa14n/a 
2024-02-03n/aexe 55675c9dcad644a3c84484b423327d8f07a7968eb5c284decb712490567591afn/a 
2024-02-03n/aexe 795144c0d0e9d0d82e5cd0c29cca65b9fa40c01d86214cb4c4386a32348ab6dfn/a 
2024-02-03n/aexe 1c29ace5b0260710cbd87b9b15ff789e617d589c21a1f41ba0d058ae8f01355cn/a 
2024-02-03n/aexe 0385dfa4178df8e7173ab73e935b390c1586db85a4ec44436adaa90556065966n/a 
2024-02-03n/aexe e53eb959482b6d164b9412a357ab0da336a0784db57572e73f4f7b3b66ae9d5fn/a 
2024-02-03n/aexe 0d511bcfffa1a789d3f1ef699bc2bc3b492383962592e539a5691edc778bd414n/a 
2024-02-03n/aexe a811cc86e3045edbf4de4ace266fa19f73fc1c4e93b6bfe9eb3dd0cbd4d7512dn/a 
2024-02-03n/aexe cb5e4032a6c908362643bb40801066edfbff7e7bbae1df1fc5d9547dcd126d0fn/a 
2024-02-03n/aexe d7e290d21e9bfa0d5f3c3137edf0c01d3d33d12801183a318019609dc71564d6Virustotal results 56.94% 
2024-02-03n/aexe a8f056f88a239ac0437cd4e7a9d25c3b5f58b2c50aaa52903a0025d1562a23a5n/a 
2024-02-03n/aexe 4541fdd52f5c4cf6db3f9eb5d99902d3ff7d7c81f696cb7bbac089e20fc100b0n/a 
2024-02-03n/aexe 1d38bac753eef7bd72408dec0417bba494655e56411632fdd9f8770a70381285n/a 
2024-02-03n/aexe a0467fd867f5d9c9d7eee287e65e0fdde5b55cd1fe804d742701cd8927cfec0cn/a 
2024-02-03n/aexe 6d9f05d28ce2b1a2003cbbcad6724ee3d1756a2aa0c847ce4ee2f2a6de7d3dfen/a 
2024-02-03n/aexe 6472263efcb2897db814c097c466562c3af6a89c55b4bcc3ed6296091d386be4n/a 
2024-02-03n/aexe f8b044cd1bb5c65c9b4b4f734e2c55f069690dd665fbdc23b007ef3d0ce0a453n/a 
2024-02-03n/aexe 8f335fab6785ce5fbc56d68d7479b10bd419217c20d99b8da15ed6770342df66n/a 
2024-02-03n/aexe d201e0c72f788a985cea866966727b999d82884f74c8b975a74903185062797dn/a 
2024-02-03n/aexe 1fcf3d75ed7229181c91f1de27c624baec687a0215a2cec5745eb9f2667e6e00n/a 
2024-02-03n/aexe d55e35daf90c8a6639ee33aebd7efaabd5c464ef956bf5d5dc41094c50a728cdn/a 
2024-02-03n/aexe 064d83989357b30946ac89a746604794536d74c26cf1694c7137f71a209132bcn/a 
2024-02-03n/aexe 1cec165ac8b8909e294cb559d4693fc7667c45339dfdd9db1ff33ddf7edbbd65Virustotal results 54.17% 
2024-02-03n/aexe 06eaf90695b4fee625014c01771d03e32284edc09670833dd6ee94b41dbc5ba7n/a 
2024-02-03n/aexe 3146b4a482de60296dacfd115976b9a58a7f58be578a85550a7b1d484720817cn/a 
2024-02-03n/aexe a211cb1dfe8b14946b800bae1dcb96aa669374867adbdf52be66276d5f04d67cn/a 
2024-02-03n/aexe 1a9f85f2bb32a7d9c981436bc3c7e25fc7c5af91f16323deb8b2510282d5052bn/a 
2024-02-03n/aexe 5777c6e4ff4c24a2a968b9cc8e03aa78c52223131b31b0af4cf76ec8cb1458ban/a 
2024-02-03n/aexe 79636601f77185db89ac7ba1c1e53218554d5c25c3774e609cc9b144b5c032fdn/a 
2024-02-03n/aexe 1ef335198c821ab1353b5f3230abd41515f094f87aed0ffd05767b40bd930e9fn/a 
2024-02-03n/aexe 6dea9fc1e5d5095cc57f27cf523e82b518225ca8b3f71cc4afdef9370fed56ebn/aRiseProStealer
2024-02-03n/aexe e2707747516a5c5e73ecbc7c5ff94e48f49dc46f838efaefab4702ea7ffb07e2n/a 
2024-02-03n/aexe e511f5f150604b743cc65dc107c2204d9bbe72f55a87c8bdadcf24f10ee9515cn/aRiseProStealer
2024-02-03n/aexe e67d59bdccd0a723648e585caf8628475526afe73549f67b8cb7f5ba40acbf4cn/aRiseProStealer
2024-02-03n/aexe 9e1d007a7ec13ebf445f34f317d1590cba403dc52de4ddaead251a189edc34c4n/a 
2024-02-03n/aexe ec9a6dd52345083e9aaf73f460c6532a6f78f70a58f9d41b796cc69755f00620n/a 
2024-02-03n/aexe e1c7c8176ce2ca8422416e3af4e036de32144ca03dea74a5c499983ff0b67561n/a 
2024-02-03n/aexe c3b743cb733580b6e77345601ab6f4a8360be6ee001b89197da764e0c5dd9a06n/aRiseProStealer
2024-02-02n/aexe 5147157e74165a0e20fb52e8c724868d4ba6bdf53a5fd51fd6a2ea2121de0b97n/a 
2024-02-02n/aexe eeed7ff69fd813b5d177f9d15863c8b4de68b4f818fec0eb9f8a9c771fe436f2n/aRiseProStealer
2024-02-02n/aexe 8404bad0fcbc38f0c76d1cfaf0e382453562a9f3ce552d26e43d930710fe7e09n/a 
2024-02-02n/aexe 4673e26a480f6687f1401d09d30ec74629f2075d0c4ef036aed088ec5592e5d0n/aRiseProStealer
2024-02-02n/aexe 1f5bdeca95e56f530d84301ac656c0516996e991a61002b22ed3e56d324659c3n/aRiseProStealer
2024-02-02n/aexe 4890155cf90a5ae13fad71b3d31a24a4766a173041f0d01d942c8207fab2e0e6n/a 
2024-02-02n/aexe 8d0fc5466871d00f5e11f077b7db26a4e828ae9d8479daab8b1ff490d05e3e5fn/aRiseProStealer
2024-02-02n/aexe bc9ae116520c770a784fca59cdbb89320f1cbae7399c946cc9517f64b729772cn/a 
2024-02-02n/aexe c4d4e753b728a7a677b76270cd1a8c16e47fcc7fbf69575185e1c4e288ea43a3n/aRiseProStealer
2024-02-02n/aexe 39373218987192dc12b52c5500039229150dc91434c1e42cd2a37b14725e9391n/aRiseProStealer
2024-02-02n/aexe b1be593f6f3d015a6261826b26d2baba7c5f3c86507509ac6d261357d5920113Virustotal results 54.17%RiseProStealer
2024-02-02n/aexe 0c1473ede56542701bc67d44549f7e4681538c20846ecc5c8a95282ad37a449en/a 
2024-02-02n/aexe 653073497245824044b8a565f862764535a57b498001283c536236da4395e226n/aRiseProStealer