URLhaus Database

You are currently viewing the URLhaus database entry for http://5.42.65.116/rise1106.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2885967
URL: http://5.42.65.116/rise1106.exe
URL Status:Offline
Host: 5.42.65.116
Date added:2024-06-13 04:54:08 UTC
Last online:2024-06-18 23:XX:XX UTC
Threat:Malware download Malware download
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2024-06-13 04:55:09 UTC to abuse{at}lethost[dot]co)
Takedown time:5 days, 18 hours, 17 minutes Bad (down since 2024-06-18 23:12:48 UTC)
Tags:32 exe RiseProStealer

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-06-14n/aexe 00bb335318bc7964d7d8f58e4e3688d340431a5f38998ee257898c88874b0797Virustotal results 32.43% 
2024-06-13n/aexe f379b03757e987cbe9b2b147b6a5d979f8cedc5508cadf82d8a375a13dbac487Virustotal results 41.89%RiseProStealer