URLhaus Database

You are currently viewing the URLhaus database entry for http://185.215.113.46/negra/vegan.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2806857
URL: http://185.215.113.46/negra/vegan.exe
URL Status:Offline
Host: 185.215.113.46
Date added:2024-04-10 04:27:10 UTC
Last online:2024-04-11 06:XX:XX UTC
Threat:Malware download Malware download
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2024-04-10 04:28:05 UTC to automatic-abuse{at}eliteteam[dot]to)
Takedown time:1 day, 2 hours, 4 minutes Poor (down since 2024-04-11 06:32:33 UTC)
Tags:32 exe RiseProStealer

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-04-11n/aexe dd2b13a30900705b1621272574e1582adfae981544e65dffed8ed5b7221f57f8n/a RiseProStealer
2024-04-10n/aexe 18dcdd5f689cac6a57439a05f256f213ac5547b2cbef6aa50d2eec82e07f44d4Virustotal results 36.62% RiseProStealer
2024-04-10n/aexe 8f31bbfe2d8212ff2145a8aeb75a208cc59b9e0bc1d218c4a7c2a910b9a63ab8Virustotal results 32.86% RiseProStealer
2024-04-10n/aexe 9ed4bd8d903d10e11dfafb67c3d932f804ac661677a50e2823e7533a4da016c8Virustotal results 33.80% RiseProStealer
2024-04-10n/aexe 091bb59199572c24d1591fd695b4b3262d225dd5e14e00340295a4d8fe9ecbedVirustotal results 34.29% RiseProStealer
2024-04-10n/aexe 48ba5590ccb8749a975e88e529bc28c996f12ff27081acff6d3d4e8c7cbd74e1Virustotal results 61.97%RiseProStealer