URLhaus Database

You are currently viewing the URLhaus database entry for http://193.233.132.139/padla/fiona.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2830446
URL: http://193.233.132.139/padla/fiona.exe
URL Status:Offline
Host: 193.233.132.139
Date added:2024-04-28 19:15:11 UTC
Last online:2024-05-01 12:XX:XX UTC
Threat:Malware download Malware download
Reporter: Bitsight
Abuse complaint sent (?): Yes (2024-04-28 19:16:08 UTC to abuse{at}sunhost[dot]ltd)
Takedown time:2 days, 16 hours, 46 minutes Poor (down since 2024-05-01 12:02:40 UTC)
Tags:dropped-by-PrivateLoader RiseProStealer

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-05-01n/aexe d1aa79e5bea9e90188f52461fabd2a87c499ae9e7ae0406ccd41a3d8cf3e7124Virustotal results 34.72% RiseProStealer
2024-05-01n/aexe 4513cc2c68352382da2b90a7a2f6b3426dcee708825228ccf566b1969318c5efVirustotal results 34.72% RiseProStealer
2024-05-01n/aexe b59b771242b295cbd93375820b7af7e4e3a609ab537bf64cabb5c6931d189d72Virustotal results 31.94% RiseProStealer
2024-04-30n/aexe 275817dad4ecf52069db0bf56c8ab8e3ed28f9c9fe6b723a125724db89afcf03Virustotal results 28.99% 
2024-04-30n/aexe d99c537fb1a205cf41978311ce28b545382f2d1d6dacb11ca65fb655e2030430Virustotal results 44.44% RiseProStealer
2024-04-30n/aexe fb9ce8b0938392c815eba9b2cbcf273a41094e2527a3b8a3cde9812b10cba19en/a RiseProStealer
2024-04-30n/aexe abd5a282d69ddac637713e9633233f767c2d160e2088b008459591878d4b462cVirustotal results 45.07% RiseProStealer
2024-04-30n/aexe 333b9b96779c42ea782cf88a932b8c2e60361167595982808d58831564420345Virustotal results 48.61% RiseProStealer
2024-04-30n/aexe fbf5e7f4b75f0d009447248e4104298b3c1abc657fe0fe3aad69845c292c7d61Virustotal results 45.83% RiseProStealer
2024-04-29n/aexe cfb48f1ebab8ef98987ee976cfdd01ecc848598b305cb327e2f4e16b915c7d88Virustotal results 44.62% RiseProStealer
2024-04-29n/aexe a9c8114cd09ecc25383b71c0520e14ac25f8a7d13d9fd6df2de4de0a84cbb790Virustotal results 47.22% RiseProStealer
2024-04-29n/aexe e311c757aca2e68a9c70ced0b4fbaf67953746ed5048f947f5b2c24893dbf233Virustotal results 42.86% RiseProStealer
2024-04-29n/aexe a0a63af7fd2e799a89955cfbb6d0a388362713cdc906517c6c2b9147d1cf8f49Virustotal results 40.58% RiseProStealer
2024-04-29n/aexe 1f20237dad17d7dbaf2e36e60f8f60048254f438547757653c05f9b77bff4a21Virustotal results 45.71% RiseProStealer
2024-04-28n/aexe 84236711fad8c7dbf8ebea4e06c8643ca17101f9c4ae97a67286b794039f0a2dn/aRiseProStealer
2024-04-28n/aexe 8e6ca2e37a6505fdb48988473d107e1340f462b748b2a74555d051c596df4971n/aRiseProStealer