URLhaus Database

You are currently viewing the URLhaus database entry for http://91.92.254.184/penza/loster.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2759307
URL: http://91.92.254.184/penza/loster.exe
URL Status:Offline
Host: 91.92.254.184
Date added:2024-02-10 22:46:09 UTC
Last online:2024-02-11 11:XX:XX UTC
Threat:Malware download Malware download
Reporter: Bitsight
Abuse complaint sent (?): Yes (2024-02-10 22:47:05 UTC to abuse{at}limenet[dot]io)
Takedown time:12 hours, 40 minutes Good (down since 2024-02-11 11:27:42 UTC)
Tags:dropped-by-PrivateLoader RiseProStealer

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-02-11n/aexe 07984ef1be8a0e83bcca7599fbec767afa3c0096a96d283db70086e10d36b85en/a RiseProStealer
2024-02-11n/aexe 77bbd3419d0ab712128c7093301cb6de7fe23d117e75b6e811af7feef408c474n/a RiseProStealer
2024-02-11n/aexe 14e9f58fc4cb3249b8566eb4d56a11db0b95d699d4b39cdc306102d07d2febe0n/a RiseProStealer
2024-02-11n/aexe fb2350861b423321342c433a263442cf767b75479ecb6c3498f9b72322ebcbe4n/a RiseProStealer
2024-02-11n/aexe 96121293b7e70f84efc7153e392ffe7183425b3341279931ae916675e231aa60n/a RiseProStealer
2024-02-11n/aexe 17cf47f342efaa1201c6c9f98e7a200241483b3b4bf77f95d28e824671842c15n/a RiseProStealer
2024-02-11n/aexe 758cf80567cbaba984a2141e8789ebc05b58e23b39be41bd422ec252d91bdae5n/a RiseProStealer
2024-02-11n/aexe 249259300866281baea3ccbfb3f9c14751646299ad34b98cfab59292c640f861n/a RiseProStealer
2024-02-11n/aexe 20132dbe248ae106d0c05ae07136286a642656af771a178ddcf73746b5121a22n/a RiseProStealer
2024-02-11n/aexe c5ce55e0a2f80cd5172588784127d5f7b539b67e46fa6d99e899b083d2001c76n/a RiseProStealer
2024-02-11n/aexe 09f1fd35c0646296b631d9af9873f4817105227e01a47709dd2be6d21c36d0cbn/a RiseProStealer
2024-02-11n/aexe 3f82e9ab5772ee193ec9c7499811e857f23df6cbb75845f520b56edd6071a7b1n/a RiseProStealer
2024-02-11n/aexe 967be4d62562f07789ebed365d33cadd530447cddb50cd4a45d6cb9cb5bfb052n/a RiseProStealer
2024-02-11n/aexe 30a5f57c53c5d0f47e3596723922f28d2e22878e583377ed6fd333b86d594ed5n/a RiseProStealer
2024-02-11n/aexe ebedcaf080590f3af66036258f2493d63985eae3f7d9f2c61e4f586070c84c72n/a RiseProStealer
2024-02-11n/aexe fb9e546f7d28e277a46af3ffa8258e692cb7aebe8d1a09100ac5e4e202f705b9n/a RiseProStealer
2024-02-11n/aexe 8d1900a45aa69496462fcc03edeacaf2f11abf91e114f55b5386148ad5a9b167n/a RiseProStealer
2024-02-11n/aexe 708bf4d2f784b9e25e1caece1f22232fabb32c47e1f9a132a0ec68ed099fd43en/aRiseProStealer
2024-02-10n/aexe f60de73720434f0a8a96dea4e1126ff7f726da511fb5befa4166bbdfd11bca56Virustotal results 45.07%RiseProStealer
2024-02-10n/aexe f3b57149cb73853ec6d879614de3022bdbc5c98d35756eeb949d67b3e93139e8n/aRiseProStealer