URLhaus Database

You are currently viewing the URLhaus database entry for http://193.233.132.139/dacha/rules.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2816524
URL: http://193.233.132.139/dacha/rules.exe
URL Status:Offline
Host: 193.233.132.139
Date added:2024-04-18 08:28:06 UTC
Last online:2024-04-20 17:XX:XX UTC
Threat:Malware download Malware download
Reporter: Bitsight
Abuse complaint sent (?): Yes (2024-04-18 08:29:06 UTC to abuse{at}sunhost[dot]ltd)
Takedown time:2 days, 8 hours, 56 minutes Poor (down since 2024-04-20 17:25:44 UTC)
Tags:dropped-by-PrivateLoader RiseProStealer

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-04-20n/aexe be415a71239eb422f82aff9cf48b9427384d7f992b0f8d772dc7e9fe15f7d8d5Virustotal results 42.25% RiseProStealer
2024-04-20n/aexe 020913a62c80e6f11bcdc016895944cbbd891ee9700f632c27360a0f97348beeVirustotal results 41.43% RiseProStealer
2024-04-20n/aexe b0af0df9623813b3427b671dad06b6b915b69e83483d392bcd50801ace4cbeb8Virustotal results 49.30% RiseProStealer
2024-04-20n/aexe 7ccc8fc332d115dc10fe1eba5298dae839dc28da75ff568b38e0f3cdb2b2097aVirustotal results 49.30% RiseProStealer
2024-04-20n/aexe c3df990259c3993caaea124039f9d99d8cd5f2b95f4df85b80034144eeda0497Virustotal results 46.48% RiseProStealer
2024-04-20n/aexe 1a6cf9aa24099fbc37fac9b157a5dc41fa7003279749512314daf8fe6157b27bVirustotal results 45.71% RiseProStealer
2024-04-19n/aexe ebc6b20afa951c45af4c2c77ab0ca6130d3a5eafd941df5e0a403ee3566dc13fn/a RiseProStealer
2024-04-19n/aexe 47eff993e8f333d5b1a69ce66eb9c276f02dd7b4cfce9c6a69af93701fd58d97Virustotal results 50.00% RiseProStealer
2024-04-19n/aexe 2d5d1d3fa1844ed6383f804f829c0cb49204d4ccc7414c24e3f442a8c65bd793n/a 
2024-04-19n/aexe be7e912d8ed4425d407ed7d9df22d846abf41849dddc022a809ebb7ae69915ffn/a RiseProStealer
2024-04-19n/aexe 32a9b9beff2a1260642b3178310149fd5c4d0254346e7e3c50ff4b084c29ccffVirustotal results 40.85% RiseProStealer
2024-04-19n/aexe 6f8ab7215d8a624da5a38750e18164d3a92160ab7c0f84373805452ed6a7222dVirustotal results 40.85% RiseProStealer
2024-04-19n/aexe c6f25a581ea0ad8c074062ae48df1e4fd686af081f29e5c62ec39f63503faa11Virustotal results 42.86% RiseProStealer
2024-04-19n/aexe 94f72e192826c66f682cb17a194496d7fda87892ddcd231faa94c6de71fec752Virustotal results 52.86% RiseProStealer
2024-04-19n/aexe fa3ed3a546ea21f8970ba80011a750f80914883e65d42868039d27b816e92f6fn/a RiseProStealer
2024-04-19n/aexe 09c9e09ef1371e9bc9292abce47d8bd0fdae9cb9fecc42ccfd51f983f43e2bdfVirustotal results 46.48%RiseProStealer
2024-04-19n/aexe 0b3426b896216bef3528006f1ebf23594c7e073133f19015f492c4ab67ed0b76Virustotal results 30.99% RiseProStealer
2024-04-18n/aexe ee877a4caec81c88ddd006c50a8196eadabe873cc6456ecf0d93150e839bc915Virustotal results 47.89% RiseProStealer
2024-04-18n/aexe af00e8715b01fa8ca3567658c59dd702574ceee5a6eab709db9739b7d165a462Virustotal results 32.39% RiseProStealer
2024-04-18n/aexe b9b059d9a129497f9b496782970a9a846902d9d50ae82b7a0184fcf55cf346b6Virustotal results 35.21% RiseProStealer
2024-04-18n/aexe d2ca10c4b6deb03a84c5b1287dd96c97d31b2f5fa90b7ca10f0a3a6d2de4e86dVirustotal results 32.86% RiseProStealer
2024-04-18n/aexe 264bfa4846341f228f7a272cb711f23fb5992c8dbc3946fd9e126be4c03b8d3eVirustotal results 36.62% RiseProStealer
2024-04-18n/aexe 2aa9961f83318b5808889d5a6e1a24d9859bebdc0fa281c7152683647402f432Virustotal results 35.21% RiseProStealer
2024-04-18n/aexe 45997f8e00db5755850182c91461490ec895fc4e4f47b4aec196cafe3d03ed0aVirustotal results 45.07% RiseProStealer
2024-04-18n/aexe 948d096a3931a22f116b93ffeefb3a374834d8eb578620c0ffc83f3e468eed81n/aRiseProStealer