URLhaus Database

You are currently viewing the URLhaus database entry for http://5.42.96.7/teana/simon.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2836260
URL: http://5.42.96.7/teana/simon.exe
URL Status:Offline
Host: 5.42.96.7
Date added:2024-05-02 23:26:07 UTC
Last online:2024-05-04 18:XX:XX UTC
Threat:Malware download Malware download
Reporter: Bitsight
Abuse complaint sent (?): Yes (2024-05-02 23:27:06 UTC to abuse{at}sunhost[dot]ltd)
Takedown time:1 day, 18 hours, 53 minutes Poor (down since 2024-05-04 18:21:03 UTC)
Tags:dropped-by-PrivateLoader RiseProStealer

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-05-04n/aexe 5f95a081a8f5df81e9e618ab76e2f29d9e5dcc26795461235a4574e6fb17ae40Virustotal results 47.76% RiseProStealer
2024-05-04n/aexe 9e49de6ed1a5e530399b81c79411c7f02240be2e005c21819c5999a4157f2a18Virustotal results 50.70% RiseProStealer
2024-05-04n/aexe c3c4075074cece43a9571a3a595b0a22346af7b739c0a4c7db453be92e8dc9adVirustotal results 52.17% RiseProStealer
2024-05-04n/aexe 92e0563fbab51410dc4a88542e62d8eac65dcd2b31b8e2eef01e72f762592e91Virustotal results 50.00% RiseProStealer
2024-05-03n/aexe 8e2fb04e334931f75bb918eacc71fe6939b1755b099c9e8773aeef2444ffc740Virustotal results 50.00% RiseProStealer
2024-05-03n/aexe 6cb20d672e41533b96510df19eb28908e2ecfb7241e7d0480b16ba123e904b06n/a RiseProStealer
2024-05-03n/aexe 616579661d363587e9c7b43f908a6fcd8246da04d187cff213a23068fc4d10f3Virustotal results 49.30% RiseProStealer
2024-05-03n/aexe a43cea97621e3941fc0c76a0a9fac94d64a5b97a572b3c3b6ed788cc6eb08652Virustotal results 51.43% RiseProStealer
2024-05-03n/aexe 222cc3f3bc06828387dfa3ef41db89a5abe05abb840475508557304ac2ef583eVirustotal results 50.00% RiseProStealer
2024-05-03n/aexe f84db64409fb5faf6d474199daac5910ec3d83d1ad7e72d129da19bf79f1c1baVirustotal results 50.00% RiseProStealer
2024-05-03n/aexe bc85f6c9d136388898852a62309eef10a34b3118fd024281e14e468594c2ff9fVirustotal results 50.00%RiseProStealer
2024-05-02n/aexe 3d4f14601b29fae585157887a3fc30dfa95f1e01b380ae9d2b6d7b0f8fbe7b1cn/aRiseProStealer