URLhaus Database

You are currently viewing the URLhaus database entry for http://193.233.132.167/lend/Ama2.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2785518
URL: http://193.233.132.167/lend/Ama2.exe
URL Status:Offline
Host: 193.233.132.167
Date added:2024-03-18 07:13:08 UTC
Last online:2024-05-01 21:XX:XX UTC
Threat:Malware download Malware download
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2024-03-18 07:14:05 UTC to abuse{at}sunhost[dot]ltd)
Takedown time:1 month, 14 days, 14 hours, 14 minutes Bad (down since 2024-05-01 21:28:14 UTC)
Tags:32 Amadey exe

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-03-19n/aexe 15710cf1352496cac66759304dc674760577c1ff11f42cee6cd07bd2fd1e43fcn/a 
2024-03-18n/aexe 5f2c06b34f1d8411d19b77ff20a475cb5077a43434d93454a8dffc0d3b5a84e9n/a 
2024-03-18n/aexe 4ec88c9d9d7242d613a5ab279b851d95d4744e89570d5326e12e27c996a18481n/a 
2024-03-18n/aexe 5edf686e646728c40a9107c1fabd527e5c6c2bf1ac6ec7326fe77fcb19e35ab7Virustotal results 53.42%Amadey