URLhaus Database

You are currently viewing the URLhaus database entry for http://5.42.66.10/download/th/getimage12.php which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2799388
URL: http://5.42.66.10/download/th/getimage12.php
URL Status:Offline
Host: 5.42.66.10
Date added:2024-04-02 19:40:12 UTC
Last online:2024-06-27 16:XX:XX UTC
Threat:Malware download Malware download
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2024-04-02 19:41:05 UTC to abuse{at}lethost[dot]co)
Takedown time:2 months, 25 days, 20 hours, 35 minutes Bad (down since 2024-06-27 16:16:33 UTC)
Tags:32 exe RedLineStealer link RiseProStealer Stealc Vidar link zgRAT

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-06-2612.exeexe d4bb27b97d23f58ee46c678d3dd00bf38b593059177bf9c19b95b899a2a1b1faVirustotal results 15.07% Vidar
2024-06-25defaultsoft12_Protected.exeexe 207fb4aeffd47811049fe5c6366f09f70b859c6987883dcd9244a915af91a342Virustotal results 13.70% Vidar
2024-06-23defsoft12.exeexe 21b015e3996945e8e28e443337fdf52e5f03bee7d7575ea432dfcb9a28ef0d5bVirustotal results 21.62% 
2024-06-22defaultsoftware12.exeexe 7e87bb624ca8aebac6a71494ac7d190e1266ad509ce872c0cecf7695eccfe657n/a Stealc
2024-06-21defaultapp12.exeexe ec50736bbeddacd140955bcf607087360471e88d9166655905c1e3e3bf6fb2eaVirustotal results 17.57% Stealc
2024-06-20default12.exeexe 2a1ad1edcd3d0cf806ecc5cacb6e21f30674e918294a35e5fc81c1a3ae757d5en/a Stealc
2024-06-19defaultsoft12.exeexe 1e5ae623d5d328e48149f954fb43d3a36cabe967e330abe3505e4a1d54fe12bfVirustotal results 20.27%Stealc
2024-06-17Default12_megapack.exeexe f27ff17af74e3528a67f417753df42b31324025bde1ca94e53b7f76f853b2dd0Virustotal results 13.89% Stealc
2024-06-17default12.exeexe 758dde0dcc0ffb46e47457b8a8fea81f5c920542591c55af1d32f30e481f9e81n/a Stealc
2024-06-15default12.exeexe e185b5ac05bf0947b5fd19b8f0892afa4fcbbceba5fc76ad52ae3fdef2045829Virustotal results 17.57% Stealc
2024-06-14Default12_newpack.exeexe dae1412cddc24c46fb6fa756fed01269f6fb9608bb1b5e4ba342918b7d1aacd6Virustotal results 13.70% Stealc
2024-06-14DEFAULT12.exeexe c1bce25d24862af99673bfd1f77ffa1a48a87191bea825754ac4c7be58cd7da4Virustotal results 26.03% Stealc
2024-06-11app_default12.exeexe 030ece50eafa2fa41417fee9a6a7f3dd12ca1d39b008ff535af09106891a30c6Virustotal results 30.30%RedLineStealer
2024-06-10default12_file.exeexe 8d784af9aaae89867e78c0f3749789dbaf1026e56184c4c40f31c8e5a0af57c0Virustotal results 30.43% 
2024-06-09default12_new.exeexe 0b482e2ab1e7617208c8c1efb813fa9068ffef7e6838a4e3480306556a9a8360Virustotal results 22.54% Stealc
2024-06-08default12_reclama.exeexe 1f7153ff895f18fa3b381938771aeaf0489873390aded699ff3a1befd5350c0dVirustotal results 26.39%Vidar
2024-06-07default12_civilization.exeexe b92c358be49f5b4f8956381cb5bacdf193b311b9b83ac5e27ee3c1f471684024Virustotal results 22.54% zgRAT
2024-06-06default12_v1.exeexe e7a62ef8e97da46f9e698ddba1a0463b53bbf223e4cecfac0c2549caa41a522aVirustotal results 45.21% Stealc
2024-06-05default12_vdrsoft.exeexe 2465604febdfc5a23b19ed097498f5c1bbe3c08dba68a3b174fb18e57052b7f2Virustotal results 26.09% Stealc
2024-06-03Default12.exeexe 2df2ff176196ec4fa48618db8bab360be69405ac1da1a0cd8ce3db77390312caVirustotal results 20.55% RiseProStealer
2024-06-02Default12_packs.exeexe 8874fb20a8e228dff563cc9663efbd2f8f0e021da64bc4174e9cd3bdd005b540Virustotal results 20.55% RiseProStealer
2024-06-01Default12_guide.exeexe a7ab2c787edf99461181701edf67560d86c81c9740253c18e33b7bb1cc882209n/a RiseProStealer
2024-05-31Default12.exeexe de32982efd63483172ebb10102aceb72cd1d3d98f0dca2a047e71dc72d6f3be4Virustotal results 13.51% RiseProStealer
2024-05-30Default12_fortune.exeexe a4982bd88dd65a1ecfdfa9c32ed6c834e2ef5b69289fbdef8f05ad5b4665195cVirustotal results 19.18% RiseProStealer
2024-05-29Default12_bonus.exeexe de0d2e499cc6e747e65b53eb1c5aa0c578a72d7dae1dd7660c12fb7b34d1f43fVirustotal results 25.68% RiseProStealer
2024-05-28Default12_v3.exeexe fcdb6c41c1c2691c0dddbe27be7bfccad651c4ce495a62e2eeee00fe7ae8fee2n/a RiseProStealer
2024-05-27Default12_demo.exeexe 4f8ddf2f5c7b8e2ae42e99fca4216f772fbf893c91fe164846d2a579d6042b1bVirustotal results 27.40% 
2024-05-25Default12_route.exeexe 082dd397e5941bee9bbafdb3eaf95d2b042e442105178f676fa28edd6ecbfd29Virustotal results 33.33% 
2024-05-24Default12_s.exeexe f9b248763b1475633064c13b63ad6da16578daf75640bb92f0e7e0764877e2a8n/aRiseProStealer
2024-05-23Default12_v2.exeexe c6ec11a31d4c28480f4ee3cc744792e12d7919cfffff5b7ca86649c904b7abdan/aRiseProStealer
2024-05-21Default12_app.exeexe 221e24f4b004cca9a57843c3579a2051cf22fb2bfbd7d5effe840cea5f2da24fVirustotal results 32.88% 
2024-05-20Default12_mix.exeexe 8ba044871727dd7afb8eaa4a58d04b47ed3482d1d8a3e99700ca6f606fe45d59Virustotal results 27.14% RiseProStealer
2024-05-19Default12_data.exeexe 5a2505ddab0f9fcf2a84cc9e43057b9eaf979b080caefe7b0c19d252127b07a3Virustotal results 29.17% RiseProStealer
2024-05-17Default12_size.exeexe 7b4bf487d06a9e2dcfdffb02d457862145e75bab1fd5b2069499cfd0ed173f46Virustotal results 30.14% RiseProStealer
2024-05-16Default12_random.exeexe e3cf477f81b92aadec14dcee22db7f41c74fbcdddae110da05e3695e294a7ea7Virustotal results 27.40% RiseProStealer
2024-05-15Default12_city.exeexe 5e2644640898c78868ef829ad7dd2265d43987c2d2557b286556e58548a1b1bbVirustotal results 30.56% RiseProStealer
2024-05-14Default12_new.exeexe 2f0cb631f2378d7c53ecfba8f00cc9fd15e6e0a0fedcbd86443665448e92f3e7n/a RiseProStealer
2024-05-13Default12_one.exeexe 6ee3312b9fc43c0b9379d9cb6ab294c7d9742a2dea7b13bf15fb7fb81c313c81Virustotal results 27.40% RiseProStealer
2024-05-12Default12_pro.exeexe 3af14bca58ae3bc8fd7768bf85d2906593ab46f41ecf97e07303dd05a3086400Virustotal results 21.92% RiseProStealer
2024-05-10Default12_round.exeexe c9d7841834ca7a80a447b69a79fba2a3674ef043259cfa0a9f21a256aa210fe3Virustotal results 26.03%RiseProStealer
2024-05-09Default12_new.exeexe d10731ed80960b2fae5f0b589130e5b2f3c3f6c4e0cec16e68b361d6686334e8Virustotal results 26.39%RiseProStealer
2024-05-08Default12_moon.exeexe 79f98e0c8c9887d8eb1b18f8794d6d8a8c7e67a7f2802b928ac84d133500114eVirustotal results 27.40% RiseProStealer
2024-05-07Default12_ded.exeexe 36893bcd8584c6604956452794efa373f86b0ae8de5e90c21a04053f3af4a7b1Virustotal results 27.14% RiseProStealer
2024-05-06Default12_gun.exeexe aedbb15004812f2732d38508560f793e68e0dcc1aae9ecf0813264c5fbc3689dn/a RiseProStealer
2024-05-05Default12_data.exeexe b80f321306ad37291486992c88b656dec6dc9ce615410c1b2543b423040a9cd6Virustotal results 13.89% RiseProStealer
2024-05-04Default12_soft.exeexe a992426f62bad525066f29f8639045fee6f1c65561cf44a8562a26b1a6b7bef2Virustotal results 20.83% RiseProStealer
2024-05-03Default12_model.exeexe 5529fabaaaf6a077ffe9dd40550f733a4ada1c6fb0a92a9b15f9176f0f4eaf9dVirustotal results 18.06% RiseProStealer
2024-05-02Default12_go.exeexe d29a2024e2cb2e1ad527cb65970679b7d8b34d54a39b79169de2a18cf4a51368Virustotal results 19.72% RiseProStealer
2024-05-01Default12_menu.exeexe 1ac3a9da4850225df4dc40ecc901c437e4893a1da7a2ea57f3c6ac8a2923d5bcn/a 
2024-04-30Default12_big.exeexe f863465eb55cffc0feada8789f825e7f597f3ffab0987dea31510f471961d461Virustotal results 16.67% 
2024-04-29Default12_bingo.exeexe 4bc23c5989f6d15046c4eb58f57325c8e938943eea5db106929d9bfdb7340258Virustotal results 25.35% 
2024-04-27Default12_new.exeexe f16e84b040744ab6f6d0d9af4099bbb3141ab21eca874f881fce9df6eefd1d7fVirustotal results 19.44% 
2024-04-25Default12_bro.exeexe 4733862d78d2d2d1c582a46817a3c2584617207ff45ddb38f17898bfb7a40afdn/a 
2024-04-24Default12_win.exeexe 35a958978c0aa265223805c85c41122e00c1922d8d54d9b10fbc7e394efbe4ceVirustotal results 29.58% RiseProStealer
2024-04-23Default12_my.exeexe 95f7f431c28583499275549466741fc3cd84fec65fd9bd1a53c7535bf5d6a62aVirustotal results 16.90% RiseProStealer
2024-04-22Default12_up.exeexe 1c80e79dd7cfc8b0dff6a94ab5859bd6fe913f4fc3b41c29c2042d1ef8375b0dVirustotal results 19.72% 
2024-04-21Default12_new.exeexe d31a4a299e1c137637e2a084b5d77cb9684df82e662e7edbec792ba0f76b9106Virustotal results 19.72% 
2024-04-20Default12_get.exeexe f2e10728d5f8266c9ca5950f1d08011b325404be0ac94856693e3f50bc9ec6eaVirustotal results 21.13% 
2024-04-19Default12_bake.exeexe 759d952e9f3d5985ee40f8c79e90ec327c8010a7ea40c36f24a773c25b31d143Virustotal results 33.80% 
2024-04-18Default12_team.exeexe 43c810e27af8bf4a41c5cbe94f39bcaa24b92c7f01760e41698156c52a6ff8abn/a 
2024-04-17Default12_pride.exeexe 6efd74303fb05fc978827215c95b2fe16f7f4859f63b21ada4830eba4aed7609Virustotal results 25.35% 
2024-04-16Default12_hook.exeexe d5aa86b4ca3179fd6276aa6198b5dbda26bf539e61fed1237535a51bdf95125fVirustotal results 25.71% 
2024-04-16Default12_hook.exeexe d5aa86b4ca3179fd6276aa6198b5dbda26bf539e61fed1237535a51bdf95125fVirustotal results 25.71% 
2024-04-15Default12_promo.exeexe 09949e70c26db70e2f15c29a95fe129b6827ae1d035eb62f66a9ef761f5c4a7cVirustotal results 27.14% 
2024-04-14Default12_pro.exeexe de85a9d32a73b1b970b12abffe64c6fab7a2bfce1d1da48bfd4196ad39cee9c0Virustotal results 26.09% 
2024-04-12Default12_save.exeexe cd64c502e76fdac255db45732105f8de6fc026e4378a6ca8d52a12a92a7bdf34Virustotal results 22.86% 
2024-04-09Default12_soft.exeexe 67ebbb63377239963d1fde9ad7f57c2f0f07f77e80ff770f32088055c8bfc5c4Virustotal results 25.76% RiseProStealer
2024-04-08Default12_ver.exeexe 45cce5d5d5171bdb22192fb091db3690889236dfad5a6ba9f256bd38a3ba8cbdn/a RiseProStealer
2024-04-07Default12.exeexe d94426b22da77ca2f735c6918158d0a6f9162e96a374fbfe5cd94047a31b5bd9Virustotal results 25.35% RiseProStealer
2024-04-06Default12_prog.exeexe f6aa42cca60fd35b46bc7b75869b6f5c5639af0a5b1b12a8601ca07955e2f83eVirustotal results 25.76% RiseProStealer
2024-04-05Default12_sup.exeexe 0a0ea20677d7f198852267514ceb997c5c9bc7b01d74d5e971573dd047c09830Virustotal results 29.17% RiseProStealer
2024-04-04Default12_get.exeexe 757ff75c77848f9a0f307993f1563b4fb288b92cc86037fc6bca7014d86e1b73Virustotal results 27.78%RiseProStealer
2024-04-03Default12_make.exeexe 6db008b33d9ce854571cb0e6c76756bd34ab3b8f6bd7808ced2a8d7bc220c12fVirustotal results 23.61%RiseProStealer
2024-04-02Arab.exeexe 9033c775f745a97799a7935194bb49b1bba024739a5688ce5c307571d3a76bedVirustotal results 28.17%RiseProStealer