URLhaus Database

You are currently viewing the URLhaus database entry for http://193.233.132.139:30468/moder/levan.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2785131
URL: http://193.233.132.139:30468/moder/levan.exe
URL Status:Offline
Host: 193.233.132.139
Date added:2024-03-17 13:27:07 UTC
Last online:2024-03-20 05:XX:XX UTC
Threat:Malware download Malware download
Reporter: Bitsight
Abuse complaint sent (?): Yes (2024-03-17 13:28:04 UTC to abuse{at}sunhost[dot]ltd)
Takedown time:2 days, 15 hours, 56 minutes Poor (down since 2024-03-20 05:24:43 UTC)
Tags:Amadey dropped-by-PrivateLoader RiseProStealer

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-03-20n/aexe df248d2ba07dc85eebba703d42580a4b5adcb2a8974ebeba2a5056404f62f6c9Virustotal results 31.51% RiseProStealer
2024-03-20n/aexe 36205d69f9695aeefd8b49060e51c3af18c6d322cd471fddeba5321e081d35f4Virustotal results 32.88% RiseProStealer
2024-03-20n/aexe 5f088902b0be5fa7c9cb8ca2966e9adcd431bf60debab5468b79d92d95bf3a9bn/a 
2024-03-20n/aexe badfd0d020635341c048af3bed0eb7ee0b6b41b17e11c969895d4ae019a15286Virustotal results 34.25% RiseProStealer
2024-03-20n/aexe 48ca25a481b812f736ef32172c6db097e2c031f88fc3cb28d4feba8773ff7011Virustotal results 31.94% RiseProStealer
2024-03-20n/aexe 2b4fe8a7d22aa0619e53feb3f8962fcd5bc78b7b7e7915cd2f1407ce0992b2c4Virustotal results 33.33% RiseProStealer
2024-03-20n/aexe 029b1706dc4224f567371dbbf242e13c039853bd3b54b223a2811f9a27dc5ce4Virustotal results 31.94% RiseProStealer
2024-03-19n/aexe a40a66973948e86e9e457dd944056cf7dd151403595f9ec119666f990dabc98bVirustotal results 34.25% RiseProStealer
2024-03-19n/aexe 3465b8401f4a4fdf430a1d9b290fdc5eb0b14c65e59f1a8d22d2326e6b8901ccVirustotal results 30.14% RiseProStealer
2024-03-19n/aexe 0407103b4cb0423da0c0a8e925ce4c2a0d921aab30a185b7e7fcae04d9a0cf4eVirustotal results 30.56% RiseProStealer
2024-03-19n/aexe 891cf130316a75eec8699db09fa4ed002fdc73cb91caa38143a17b98f4bd0448Virustotal results 32.88% RiseProStealer
2024-03-19n/aexe 9ea4bad2e6a61d1acdf283d72666d0f6fa328078969ae4eba022fd8b148020b4Virustotal results 31.51% RiseProStealer
2024-03-19n/aexe dad393e9b7ba7c5d4c77a5f1f5b92fcb11d4c77eaeb05ff3e170847fd47edcfbVirustotal results 34.25% RiseProStealer
2024-03-19n/aexe e21adcd90659d8b6e0545dc459ce69173625361c1b0f838c7e2cb07057806e8dn/a RiseProStealer
2024-03-19n/aexe b0d3eca83e58b7dce0834c17acef85dbe75f4bf42320c9ac78988d1a241250f7n/a RiseProStealer
2024-03-19n/aexe 3e97398ad10149d1aa5ff965d5d195173cec2414178796c83758a8ebb8c36c7fn/aRiseProStealer
2024-03-19n/aexe 7a410ea5ba07d756ef3114466cad99a49f71b433a1080c8c8fdf4c3f196a84f8n/aRiseProStealer
2024-03-19n/aexe 5628c8670baa68adc4ddff618a8c30b8532b429227a8e94433342a504c521aefn/aRiseProStealer
2024-03-19n/aexe 5e1a1b2e2c20bc50b54e02393fa6f26a2b8c2f4d87f2abdecaca73472b5c5dbaVirustotal results 50.68% 
2024-03-19n/aexe a36d5e790ca17fb6f70884942d868d29c6854054f2db79ed8f4e2d0d16ef1647Virustotal results 51.39% 
2024-03-19n/aexe 7072ab5130e9363ddd1113da878eaf0ccd401baa90a3386af361139bf217d6a0n/aRiseProStealer
2024-03-19n/aexe 9017d75a6a7437cc78a05a96f6a773ce8427a0ca649e460d8bba434ba9a3e234n/aRiseProStealer
2024-03-19n/aexe a78513831b47f4b35ee9063aa167bf5d05c61559b2ac7f8fb93fa966a36e34d2n/a 
2024-03-19n/aexe 9d540839e75daf4f31eb36271fef6eb16a913446384d07e4d8dbb2602f18bf0fn/a 
2024-03-19n/aexe c7a40fb4aa017a0d17b535c1857d51f95b7ed8684a1ea860294bf5d897667839n/a 
2024-03-19n/aexe 556dd03a027878d11a4bab58577785baa9ddeae1f18e0c23d0bdfbdcfbc71aeen/aRiseProStealer
2024-03-19n/aexe 19c98cba0d8037a36b00d2c11cc24d25e1f388ba5093a4b6e9017508371fb34bn/a 
2024-03-19n/aexe b1bb37dd8373d6658ee5d8cec09797d6a3c4ebbf7238cc7dee40945323c2827bn/aRiseProStealer
2024-03-19n/aexe 5be32d6d85e5216b2f6812e517052360c740651f221d18ef7c5fc5d368082426n/aRiseProStealer
2024-03-18n/aexe 3501c754e9a3c9c84475dba26ca0b5237938c13d7780ef107e3f1fbea14acec6n/aRiseProStealer
2024-03-18n/aexe 0209ad899018583d27fc6d22f01bb9f5bc6893d1787ad5f2da6cdd19cb99ae63n/a 
2024-03-18n/aexe d2688d2e32631d2d1aaeab66046c14669d5d9f2256da1a3c72cd9cb5dcc7775cVirustotal results 43.06% Amadey
2024-03-18n/aexe fc674611050e87e20bce5c866335d3fe6b2b6a68b6bfae0309d99a48a3e80563n/a 
2024-03-18n/aexe 6bc9d8e439d32f00214bfb6c7d0ed52292bd38fcc7f19f2bec0a0ed0c73ae0c0n/aRiseProStealer
2024-03-18n/aexe bdb562f030eda48e5fa1076030dafedac0b80009a6bd068ce1d2c9c0f70e96bfn/a 
2024-03-18n/aexe 30baf54d50379893b23b24203611da331d436dfc35f2d0a805bac4da0d310489n/aRiseProStealer
2024-03-18n/aexe c48eb226b641b382fd4155f10c96aacc585c6e65814865cd762e88b8a5cffd14n/aRiseProStealer
2024-03-18n/aexe 2431139ec6a88ea1f9b7dfe9eafcc6aa17dbe61182532a951a9b8263f4107bffn/a 
2024-03-18n/aexe 31215385743b9c4cf4b4dc60abd57b301ead1516c3c8d7be6de1edbc73e30fa9n/a 
2024-03-18n/aexe f1a7ba38d5e707563fa4b0ecd4ffe7ea4c4d7fb0e9601f7e2e7c3b60d54b814an/a 
2024-03-18n/aexe b7e932dec8438393a6bbe3c308f8c998bb5ac70db0e78489bd6d2fa05c55b966Virustotal results 36.99% 
2024-03-18n/aexe 41d3c27b5af1df20f581b881506184825ff5b6f46beb927bfcabb061f5896812n/a 
2024-03-18n/aexe 13b90233534364324ebd5d3f5799a44643683a1dc8d67342347028bf50047552n/a 
2024-03-18n/aexe 9b91cc480bd1aeb67ec0311f90a90bc54baa8e7aeea0ba0fb2de3345e8a4b929n/a 
2024-03-18n/aexe 799bf8d7262553ae20d891314830d43d158474ade5ec0770fc8c508412868104n/a 
2024-03-18n/aexe b96e8a304a5509b58ebb878e3a21387f6fc6ce2f70af1335f78e1de6d3888ba2n/a 
2024-03-18n/aexe 6d2e9c6579c826b0a863c8d43e69be7739e4c84f1f07acbead2938d123e9054fn/a 
2024-03-18n/aexe 236f2548ed683d3d5c6ac8582062678825d2d9b6a4048c08faf7e8ed260243d8n/a 
2024-03-18n/aexe 96a48c2fed3513d0415cd106095857d6fc55630416a939ec9073627972bb996dn/a 
2024-03-18n/aexe 8e78c547b27762e3e2d1414b02bd6ae4a05a92bb4ba6b49d498a40cffda63358n/a 
2024-03-18n/aexe 40148739a22c9a18cdd6dcd5c66d5e8e62d47eb3a39e1d8a69e2bc59e2f3d212n/a 
2024-03-18n/aexe ebd455630b4d22035737310eb4ff162716e2414b6a18f7da0ba126d78bfd1359n/a 
2024-03-18n/aexe 7ce9d2a0bd8df5d673d2b06a178ad9ce6f982d128b331d06157bba7de590d425n/a 
2024-03-17n/aexe 223ca31f57ae2a9b8a4cd1e7eaa6c9b9d5506e8d6ab53e56ec976bf88465a39en/aRiseProStealer
2024-03-17n/aexe b39b838fc01f8b7921b9043cda00ad029a34abbf8abab3060420eb352e20ff2an/aRiseProStealer
2024-03-17n/aexe 20ecd28a422a64231508e8b3edc128e2408a1b7d039aeeab8d171dfdb12bc991Virustotal results 43.06% 
2024-03-17n/aexe e439486ff55b8e3daf4753427bf83e6c1af097ef21a74dd6f158b0cf724c73c0n/aRiseProStealer
2024-03-17n/aexe 9904fa9cfebbd4dd4e8a3d4e9c3e82c73c154c2f40c874997b6d14b97ad555b0Virustotal results 43.84%RiseProStealer
2024-03-17n/aexe 0c91ff2aaea6a39f39bdebb800c1fccae6bbc572a4a739d050f7829c79bb9c09Virustotal results 42.47%RiseProStealer
2024-03-17n/aexe b4832c1fbbb05a087bed8aef6fcb37ac8c0d330a05da2b11070aa6cf73afb5d7n/a 
2024-03-17n/aexe c73a29220f3b1eca3dbad47ebaaf38489188e1edfed2185fa2f8050770c0692fn/aRiseProStealer
2024-03-17n/aexe 4f437f42f396b42c28698a98c3b7400b2e48eb0ce5a3d374be42aa8a83096743Virustotal results 42.03%RiseProStealer
2024-03-17n/aexe c953de647ee1e8ffd71cd61cee38691a0b95b64e105f35c168b819af32897d00Virustotal results 38.36% 
2024-03-17n/aexe 54457d0453c24e72c1faecce15df7c04f19500bf5c52ba0859a30892f3adab7cn/aRiseProStealer
2024-03-17n/aexe 06310ac4f0f5bd745ef86d8c4b7b21cd01a080b139171e29494db1eccb3aa88cVirustotal results 42.47%RiseProStealer