URLhaus Database

You are currently viewing the URLhaus database entry for http://5.42.96.78/files/file300un.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2845856
URL: http://5.42.96.78/files/file300un.exe
URL Status:Offline
Host: 5.42.96.78
Date added:2024-05-10 18:23:09 UTC
Last online:2024-05-26 17:XX:XX UTC
Threat:Malware download Malware download
Reporter: NDA0E
Abuse complaint sent (?): Yes (2024-05-10 18:24:06 UTC to abuse{at}sunhost[dot]ltd)
Takedown time:15 days, 22 hours, 37 minutes Bad (down since 2024-05-26 17:01:59 UTC)
Tags:CoinMiner exe glupteba link PureLogStealer RiseProStealer Smoke Loader link Stealc

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-05-21n/aexe 0cc554da4091787ab6a991fdf760fd7a44eef3f8df372531027c19803a29a8ebVirustotal results 9.46% Stealc
2024-05-20n/aexe 0702315c2af23584f8ef1febc660651c052eb448819d4c7432e51148ea8db5a5Virustotal results 18.92% RiseProStealer
2024-05-19n/aexe 79bb1f7b467bbceed03d27d325a0c076943f57d696d96d0d1178a2b750a931a8n/aSmoke Loader
2024-05-18n/aexe a9b9d561de00ab8645f09b17e997cd8cb71a05d7ba1f98b02f054cd3a6f9d6ecn/a 
2024-05-17n/aexe b05176b5e31e9e9f133235deb31110798097e21387d17b1def7c3e2780bbf455n/a Smoke Loader
2024-05-16n/aexe 4736228698b5bb9b7dc86f4dbfe539e54fe5f5153be6c4aec7b8269e34c7a84bn/a CoinMiner
2024-05-16n/aexe 4736228698b5bb9b7dc86f4dbfe539e54fe5f5153be6c4aec7b8269e34c7a84bn/a CoinMiner
2024-05-15n/aexe 7fdb767399b8fbdc5c2957039b5b6913d3b7c6781d5055e2be365d136530f2a3Virustotal results 9.72% 
2024-05-14n/aexe 21aaa33d1cd4d9f0de4f60a35c4694ba926e7e01118a8c14b2fd8856a71774c9Virustotal results 8.57% CoinMiner
2024-05-14n/aexe a1ff4c7841e7fe8016de6605fe621e1607dcff3cf5ef8578994fbdd686a1a66bn/a CoinMiner
2024-05-14n/aexe 2ee72a295a2863fa2876d7978c3c0ef7a80a557e2cb7850685c00c680f08837aVirustotal results 8.22% Adware.Neoreklami
2024-05-12n/aexe ca58a17fe665c5997d673e7e5317d2a70dc2225ced1dbeea010888874ae48a81Virustotal results 36.99%PureLogStealer
2024-05-11n/aexe a94db0a466893661cb536296f2f12ca0799d6fc796829584f5141ad0adee3fccVirustotal results 2.78% CoinMiner
2024-05-10n/aexe 716741d85859c7c4747395deb709dc0b4b2741a0d15850aa3a706cc05d61bf6dVirustotal results 24.66%Glupteba