URLhaus Database

You are currently viewing the URLhaus database entry for http://185.215.113.68/mine/plana.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2756522
URL: http://185.215.113.68/mine/plana.exe
URL Status:Offline
Host: 185.215.113.68
Date added:2024-02-04 11:48:10 UTC
Last online:2024-02-04 17:XX:XX UTC
Threat:Malware download Malware download
Reporter: e24111111111111
Abuse complaint sent (?): Yes (2024-02-04 11:49:19 UTC to automatic-abuse{at}eliteteam[dot]to)
Takedown time:5 hours, 28 minutes Good (down since 2024-02-04 17:17:56 UTC)
Tags:RiseProStealer

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-02-04n/aexe f6cce8efbf189bf6b98f20b41b1dfe577be5e2133133b43ddcbffc3298a2cd38n/a RiseProStealer
2024-02-04n/aexe 5f32549616fba46ef9b16b78c804280b8d6a446f022da559d650e89aa2dda22an/a RiseProStealer
2024-02-04n/aexe 6a3e16b4e94e108622e821d539f743ff032dbb7c972b89dc60952a1a6854ca2en/a RiseProStealer
2024-02-04n/aexe 0ac2a6cde03a9d8ca7da7ed84c9c2ed12318ec8cb47b02f831b89b7d8c54f1c7n/a RiseProStealer
2024-02-04n/aexe ab54ceae720c53e642ff4b75eb1b0e7922ce24d0191e440a6f7bccf8de93c350n/a RiseProStealer
2024-02-04n/aexe fd1248862f73d88f1f61bcea5df50f46a07442eeba51badb0dd3183aea50ff97n/a RiseProStealer
2024-02-04n/aexe b30fb03f5943b72acf146eee845d69440753a560a11be32e4e66200cafda5a96n/a RiseProStealer
2024-02-04n/aexe 1452c77fdb3ef05ddea321c86f3e4504dab58d7b31a12068d729daedeb457eabn/aRiseProStealer
2024-02-04n/aexe 55084d4504488fd72355cee1879de8307e02a1ba35d9ba8317df5687fa585ccdn/a RiseProStealer