URLhaus Database

You are currently viewing the URLhaus database entry for http://195.20.16.46/download/RetailerRise.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2757109
URL: http://195.20.16.46/download/RetailerRise.exe
URL Status:Offline
Host: 195.20.16.46
Date added:2024-02-05 12:54:10 UTC
Last online:2024-04-22 06:XX:XX UTC
Threat:Malware download Malware download
Reporter: vxvault
Abuse complaint sent (?): Yes (2024-02-05 12:55:08 UTC to support{at}zerohost[dot]network)
Takedown time:2 months, 16 days, 17 hours, 30 minutes Bad (down since 2024-04-22 06:25:47 UTC)
Tags:exe RiseProStealer

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-03-19n/aexe bd81aacc34212fdc8bd7f0788e850e8e95cca31db5906ca926eb505cec8fcb9dn/aRiseProStealer
2024-03-18n/aexe f6dddbe18895719a899361ec8b464d9277c8cbe0d4aa44427fe76a617f8a3e54n/aRiseProStealer
2024-03-17n/aexe 1fcc89ab9a743b0dc86aa49b88dbce141f6ff0f31d7db527d3b6273f8d370580n/a 
2024-03-16n/aexe cff865d27b4ded60ae4fe74bc49a8bb7dc37506f5c4c19980f713bb4c53b0eb8Virustotal results 30.00%RiseProStealer
2024-03-15n/aexe 1096be85e27792ad45a0d085f4bd4036ba9cf5a98ca94dd41d4cfdce3dd10337n/aRiseProStealer
2024-03-14n/aexe d059f4d04c9b70923961d638dcbf9988e76becbb3aa246da9aa888c608ecfa8fn/aRiseProStealer
2024-03-13n/aexe 061f1db2c04541a579d45391d950510fbefcb3a80536dfd445f0f076765f627fn/aRiseProStealer
2024-03-12n/aexe d73bf02e574fc907ee25a373379532da515a089511755756d4792016d4c0b0dan/aRiseProStealer
2024-03-11n/aexe db1477d1a129930f87b3d8e321d4080f279117c5dfc1864bcbda64eea893a12en/aRiseProStealer
2024-03-09n/aexe 550306b5d87aa15c9b4a21bfa0e3c9857d9b3ed07e3ce9af2184e63430f3ebb9n/a 
2024-03-07n/aexe dd4a1ee600fd5b07e35d0c6953feade254da969e2b96bdd765df6fbbc561110bn/aRiseProStealer
2024-03-06n/aexe aa764a761fd512c5f6240c23abfaf3f96249053e98f6d2c0d6a0753ea73abcb6n/aRiseProStealer
2024-03-04n/aexe b5412f8b22ca32abaf8cb82466be9bc9bff18978ce7e95da286132f9323493b7n/a RiseProStealer
2024-03-03n/aexe 2cd717fff22a6aa8c3a933e5ddef3c2380a8319049df1fb68c84bcc2282d27e0n/a RiseProStealer
2024-02-26n/aexe c25a710cb692137bf2bfa758b4dd2bbcc3743c6eedff481581e16d4adbd9db53n/aRiseProStealer
2024-02-24n/aexe b9b8b4058e0cf7e9a9f8aac516026a587b84ce1612c244f3720de336d634f383n/aRiseProStealer
2024-02-23n/aexe 26547eefc12ad433a0f06eb2fbc2cecb17b2d31166d5a106c78d2158e417a439n/aRiseProStealer
2024-02-22n/aexe 1732cdc9324383adf6f36c868312ea8eb023b50c121899e9ef101bb65010fc7en/aRiseProStealer
2024-02-21n/aexe d4dd0ad08042d331b371efc97ee1e489fcb10020eb5612ba6a351bb1893a35ccn/aRiseProStealer
2024-02-20n/aexe 4f7aed014995fdbb666ed9773fef46800128929716862e2bb77e0eab7282e7ffn/aRiseProStealer
2024-02-19n/aexe a10d8066fd89c3c6568fde505a1c6c87f30ea927e92ceb1c387aa87cb3f8fb8dn/aRiseProStealer
2024-02-18n/aexe 90acd520c0672a8d46d2b2c376ca6098f08137a7379f461a82acca27ab07fc96n/aRiseProStealer
2024-02-16n/aexe 00d626937c00e5bb06c353f5724b53b80897de9df5789926c3403abc7ef723fbn/aRiseProStealer
2024-02-15n/aexe 1ba8ffaf9d90746deccc9a9d97fb6ffeea76fb222cd3e1afd8704032e1cf0badn/aRiseProStealer
2024-02-14n/aexe 01fa5d9465ab9c7793cc728cc75bb80f3edbc98454c6d5694fe370463fce4c66n/aRiseProStealer
2024-02-10n/aexe e426483523272b12ad20e3e8caae7c0e2a889266b0845cacbefa6ca5c7312388n/aRiseProStealer
2024-02-08n/aexe 932ecc04ecea3f864a5decb78562e8c7a2646b013d4476c6496df0a88f094c4en/aRiseProStealer
2024-02-06n/aexe 61405d360b3edf9d4a3c97d9fc49d0e86b4d869668e6eac3b2f3b98d3c45f325n/aRiseProStealer
2024-02-05n/aexe 4e4d4e52ad156dc7b32a4010134ba2b0fb56dea2d47c8bf562e5cc587a165faaVirustotal results 38.89%RiseProStealer