URLhaus Database

You are currently viewing the URLhaus database entry for http://5.42.66.10/download/th/retail.php which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2799182
URL: http://5.42.66.10/download/th/retail.php
URL Status:Offline
Host: 5.42.66.10
Date added:2024-04-02 13:23:16 UTC
Last online:2024-06-05 22:XX:XX UTC
Threat:Malware download Malware download
Reporter: Bitsight
Abuse complaint sent (?): Yes (2024-04-02 13:24:15 UTC to abuse{at}lethost[dot]co)
Takedown time:2 months, 4 days, 9 hours, 0 minutes Bad (down since 2024-06-05 22:24:34 UTC)
Tags:dropped-by-PrivateLoader RiseProStealer zgRAT

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-06-04Retailer_prog.exeexe ae973d44c63b1057e21f61ea517d31e9ae1998d8ff074dc25fdf608cfc7664b1Virustotal results 36.99% RiseProStealer
2024-06-04Retailer_prog.exeexe 68f6621724d46e104f5689c82fae6cd7f3b8913aa64cf2297f073abfd0eb68d9Virustotal results 46.58% RiseProStealer
2024-06-02Retailer_prog.exeexe 4f309c8b91bbe04a501c49876ce7e17d351662554019fb0683c49e8fa0d2b9b4Virustotal results 17.57% RiseProStealer
2024-06-01Retailer_prog.exeexe d30f2e8e26f7ff70cb07b21b1b8496a1fdb16403e11de0e7ba842e36bca5c26bn/a RiseProStealer
2024-05-31Retailer_prog.exeexe 3fd3c0d4660cbe46f77c3bd91bff0367a2381990276b4c8a959c11bd85737fe1Virustotal results 14.86% RiseProStealer
2024-05-30Retailer_prog.exeexe 30facd273acbed99d5c4a67e35e357d353c8b252bbe1a0bc93492b4639824286Virustotal results 20.55% zgRAT
2024-05-29Retailer_prog.exeexe 21db61245cb23da9e43a21ddb5e5e348ab60f7c81eeae9fd004b4b9fa7aed1bdVirustotal results 27.40% RiseProStealer
2024-05-28Retailer_prog.exeexe 900d538361235d9c18bd3f253e7e89ece9d16fd155ffe7265326ea2665a6897cVirustotal results 25.68% RiseProStealer
2024-05-27Retailer_prog.exeexe b4840050f25da3b767e46fd1588ff15cff9053a236de74ae7a21fa25275a4a96Virustotal results 31.25% RiseProStealer
2024-05-25Retailer_prog.exeexe 8f74c86dbd36d90fde00cc06e2b18879fe758ac4552066ce26cb2098bfe8bd81Virustotal results 35.14% 
2024-05-24Retailer_prog.exeexe 1186878b54cd5ce32ffe84632051a57e9b62c7243187db25bbac6c57d2ad67afVirustotal results 28.77%RiseProStealer
2024-05-23Retailer_prog.exeexe c29001bbd0cda040ff0dc0639cb01c126b2caa96177f00703e1c82f70a74452eVirustotal results 28.77%RiseProStealer
2024-05-21Retailer_prog.exeexe fb24cf43a3384fa6212035d9d72d6966c51ea5cb46155ef19b264e0e16678bc3Virustotal results 34.25% 
2024-05-20Retailer_prog.exeexe 19c24c8da0318fbeea1a54a95d928285e4ffa40af5d2a583a833c5a9bb696974n/a RiseProStealer
2024-05-19Retailer_prog.exeexe 64f6bab6e4bb32a7fb6a1c5449b26769d3bf14bff539713f7261b1ccf7bf0888n/a RiseProStealer
2024-05-17Retailer_prog.exeexe 544a13b1d4a2c5da40503f5276ff0e4bc852fb15e36b162104707b8a136820eaVirustotal results 31.51% RiseProStealer
2024-05-16Retailer_prog.exeexe 70a0f8fd6eed4c25d8ffa4117f8b14bc289a18add0a6269e3eb698097085dce7Virustotal results 29.58% RiseProStealer
2024-05-15Retailer_prog.exeexe 487929a170778f1a0b83405417e3dd51ffc423c86ab21f77669070b6578ddf2dn/aRiseProStealer
2024-05-14Retailer_prog.exeexe daa5bc960bce56d7a5a8889409d3b92ffb31a9bdddd81e4d3c6e916a6a87747cn/a RiseProStealer
2024-05-13Retailer_prog.exeexe 46a251c26a1f037892b59099785e589022b2d58045e5bcbb91ae03ea4d3114f8Virustotal results 28.57% RiseProStealer
2024-05-12Retailer_prog.exeexe 01a9963b443eabd370119f71449b888dd1ba90d4811a71b35a81d5db13424dccn/a RiseProStealer
2024-05-10Retailer_prog.exeexe 27ddb70d8e8e61fdf6c2f372840ca134337dca0d1ab23d8e37de3921cae0488dVirustotal results 27.40% RiseProStealer
2024-05-09Retailer_prog.exeexe 4fe12af278c34e0adc04a4ae8f063039cfee39bee76cebdf82b99e399fb0bdf7Virustotal results 28.77%RiseProStealer
2024-05-08Retailer_prog.exeexe 43ca4e0625f7d301663ffdbd46b91726826d9e1f3bfe7c2af22c6a8858a309e8n/a RiseProStealer
2024-05-07Retailer_prog.exeexe 43a65c238fbd165b788425f4a6ffb4aa7ffd8212e767eff8140927781720e927Virustotal results 24.66% RiseProStealer
2024-05-06Retailer_prog.exeexe fba5bc25110d14e268b88ee05ee747ca4f49a651b910fadc24c5650d3cbd735fVirustotal results 21.92% RiseProStealer
2024-05-05Retailer_prog.exeexe e3eea6ef7ef2314970047b0a887c67d780eed12d40d5931e0a3e72061de5e746Virustotal results 18.84%RiseProStealer
2024-05-04Retailer_prog.exeexe 5ba07e81b410e0fba8a307dd78bfd55d84f2cf71ab45f38aa2a830792395574bVirustotal results 18.84% RiseProStealer
2024-05-03Retailer_prog.exeexe 552e1591193abad69450ae096437f3cc35f73c3c7b673781aba6c87a8fb0529fVirustotal results 17.46% RiseProStealer
2024-05-02Retailer_prog.exeexe 6425325f9b0a42de80e9d01132704f279c5bbd8d4876944baafaed481e5e9e84Virustotal results 19.44% RiseProStealer
2024-05-01Retailer_prog.exeexe 78c22b3f538154a69005679fd3bbc3dde64e86e1ad304611581f12dec806c3acn/a 
2024-04-30Retailer_prog.exeexe 763bb457dff3beaea55f0957757c01248d2c67acfe08c8b5f691e7500e66b80aVirustotal results 16.67% 
2024-04-29Retailer_prog.exeexe 755bfe7ffa2b1514c41905d405f6d729c66e81bb29767dd1e7a2f52885f17f8cVirustotal results 27.78% 
2024-04-27Retailer_prog.exeexe 9c51cf022c30a213be00dd998993863a258ab33dfa07c73aaacfe93efccd3dc0Virustotal results 20.83% 
2024-04-25Retailer_prog.exeexe a411f79466c5b91feae82cddf2cff3cd20130cec9955bf5003f0ce1febd5143fn/aRiseProStealer
2024-04-24Retailer_prog.exeexe aa3165277b5b1634fa571fe2aa1496cd5f8c3f07aa1de638aae77925a13c704aVirustotal results 26.76% RiseProStealer
2024-04-23Retailer_prog.exeexe 1ba8e0298b47f5a9c4a5f67d65d044310011bb9411243774abe1700720299c74Virustotal results 18.31% RiseProStealer
2024-04-22Retailer_prog.exeexe 6d574da23123c2048d12a4d710fc8b284ae8d3e16fd9e3bdbb949a8b7e528077Virustotal results 21.13% 
2024-04-21Retailer_prog.exeexe 90d5d95b3abb09600ea39b9a58968705967cf7747dd18208fb8220c249002725n/a 
2024-04-20Retailer_prog.exeexe 7729b2ed03cca1153854c35ac85fd23c1e0d34347be0e29a8a6aecbba088a95fVirustotal results 21.13%RiseProStealer
2024-04-19Retailer_prog.exeexe b59ee5c11bc18bb750059d836aa6a6f980ffc96d1925ee218725dac105ee1e8cVirustotal results 30.00% 
2024-04-18Retailer_prog.exeexe 9c86c08e27b93bde1e12ca865877f4af82c558940ba77a4c9d0cd24361244e70Virustotal results 25.35% 
2024-04-17Retailer_prog.exeexe 7b666403c010094ab5c0ab81309df5954eb62a7f694c36bcfff5bfbadb36fa9eVirustotal results 25.35% 
2024-04-16Retailer_prog.exeexe 5ab25740d1ee32145c6df17d000e1a621d5a8debc474f763f9d219d22ce3f5feVirustotal results 27.14% 
2024-04-15Retailer_prog.exeexe e00b8d0cc4d5e1444d525389c8b06fe41ce8e913fc2a5a24239074748d54026fVirustotal results 24.29% 
2024-04-14Retailer_prog.exeexe bfb40b536a1aed0789b7ebb4640ee9fca38e84f514e8a6393026b9b8e5edc9f8Virustotal results 24.29% 
2024-04-12Retailer_prog.exeexe ce1ce257c0d0d1ef6d87a336865067f21890ca5f8e838500a2d39f151f7d6aceVirustotal results 22.86% 
2024-04-09Retailer_prog.exeexe 538f359fbe8a044fcec6a9962a39922608bc416c4fd6b3e15a2a659a689e9f56Virustotal results 23.94% RiseProStealer
2024-04-08Retailer_prog.exeexe e7d0715cf26299410027ceb06f4825efc011acc32897bb59a1b8b94f3fd7645aVirustotal results 25.35% RiseProStealer
2024-04-07Retailer_prog.exeexe 844d9d6802415011c004bb08fd9531f08234dc93c0139a5b9ddbceab2f488546Virustotal results 22.22%RiseProStealer
2024-04-06Retailer_prog.exeexe 77efc862d1be4cab256689fd19a1ad0e7491d29e712e02c679620534f5e78592n/aRiseProStealer
2024-04-05Retailer_sup.exeexe fd161ad40ccc7145d0f5c57de0270b07d66897062cc71a12aa8ed95ad409aeean/a RiseProStealer
2024-04-04Retailer_get.exeexe 90b05090c9b890eab41e099167ce5da26e86e889b6a27753966cefdb7aeca0b9n/aRiseProStealer
2024-04-03Retailer_make.exeexe c9c863c5340122fe82dad55c1ec42b2f4e9208595e5f381c7f455f028b99a6f1n/aRiseProStealer
2024-04-02Retailer.exeexe 007b625dbf26d9e0c83eabe4a77317bf7aacb1aebd26799b494308ef28a6fab8Virustotal results 26.39%RiseProStealer