URLhaus Database

You are currently viewing the URLhaus database entry for http://112.74.185.5/3R%BC%BC%CA%F5.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2895457
URL: http://112.74.185.5/3R%BC%BC%CA%F5.exe
URL Status:Offline
Host: 112.74.185.5
Date added:2024-06-18 12:09:11 UTC
Last online:2024-11-28 16:XX:XX UTC
Threat:Malware download Malware download
Reporter: BlinkzSec
Abuse complaint sent (?): Yes (2024-06-18 12:10:14 UTC to anti-spam{at}list[dot]alibaba-inc[dot]com,abuse{at}12321[dot]cn,abuse{at}alibaba-inc[dot]com)
Takedown time:5 months, 13 days, 4 hours, 9 minutes Bad (down since 2024-11-28 16:19:49 UTC)
Tags:exe FlyStudio

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-11-273R¼¼Êõ.exeexe 970443794fe51537518466ef990c42f8058d222fbb1a882c42aa11468a020f40n/a Adware.FlyStudio
2024-11-213R¼¼Êõ.exeexe c725731279b72fe24a2e932b1251726336cfe60d2c61e69453a96bb17b5a5f6en/a Adware.FlyStudio
2024-10-173R¼¼Êõ.exeexe 1bc0a37eed8993628d2e89fddb655cc08b77c4e2afd92240861a7457b3dac354n/a Adware.FlyStudio
2024-10-163R¼¼Êõ.exeexe 1fdec6e586a3570a3be8bd855a328200100abf6306a4010a86cfc4876fba6805n/a Adware.FlyStudio
2024-10-123R¼¼Êõ.exeexe 8c8a3af31d8e49d95782b82a0eb9247d8b16e61d6575d1891318f3c2044f97d0n/a Adware.FlyStudio
2024-10-103R¼¼Êõ.exeexe f37cee858c6f2600c41f89c45297206302e40073d9bf4f57047a7ecf8bfc0427Virustotal results 57.53% Adware.FlyStudio
2024-10-063R¼¼Êõ.exeexe a324237cfa6dc49b9723af708a0ab0cb4e1905e8dbaa6d008fad4d09c9da869bn/a Adware.FlyStudio
2024-09-263R¼¼Êõ.exeexe abf5bda7c2cf8a0f7b57b9e0abecee531818144c30d0f11a68b794cd2c3a6371n/aAdware.FlyStudio
2024-09-253R¼¼Êõ.exeexe 64c0a798048631665d2c1938ac197a0d39b408783b075ad1305bcdb9cdb8447en/a Adware.FlyStudio
2024-09-243R¼¼Êõ.exeexe 5e3608a661be6c5775a51de9174af99bcf57ea7239023d3d89d08cbf3e5c69den/aAdware.FlyStudio
2024-09-223R¼¼Êõ.exeexe 83df8d830e5521915f611841a04646164a4898c4429ae2ee6f1c2366fcec64b8n/a Adware.FlyStudio
2024-09-213R¼¼Êõ.exeexe bc5e834ad2432881e511d58fceeee5aa7df025977f22b248fcf6436f20575475n/a Adware.FlyStudio
2024-09-183R¼¼Êõ.exeexe 0709f5fc4cb2566e6b17d480c8f074864a59c4d603985bb7856a3b178e8ac129n/a Adware.FlyStudio
2024-09-103R¼¼Êõ.exeexe da4d580c724ce4a9bddb567ddab6dc5b6cbaa5a4a1ce050d4cd028760b6cac4an/a 
2024-09-053R¼¼Êõ.exeexe f087ae57d3fbe6cf610fb07ee85b0354e99ac3609dc918a6b90d362efd660025n/a Adware.FlyStudio
2024-08-273R¼¼Êõ.exeexe e94dee076cff8b86826d92bbeb2a3a430bcaa7d3e52b3099449a2e7ea5baa5dcn/a Adware.FlyStudio
2024-08-183R¼¼Êõ.exeexe 05a4fa900b0a19e32024f3e18e27d83a093a670feeebc4598eec0526ac18e51dn/a 
2024-08-163R¼¼Êõ.exeexe 70560b4d630c0a00e88adeb4aacf3d15f7e6d02843f04fd9bdfa7fc49221c34dn/a Adware.FlyStudio
2024-08-023R¼¼Êõ.exeexe 0b21e8201ae2918a89d779710c1fc6659d98e4b3083e5f175b1f2990efa408adn/a Adware.FlyStudio
2024-07-263R¼¼Êõ.exeexe 717071886d89aec7114bb7b289cd3676a4ac4452a25c08aed7cb4e8055d48cd0n/a Adware.FlyStudio
2024-07-233R¼¼Êõ.exeexe 51e786d6e8d8c6864ea061266e319fd38f06250757e67cf4ae4be7763193f77an/aAdware.FlyStudio
2024-07-223R¼¼Êõ.exeexe 80a74f269d2cdb7f48a182cb0654dc6617d9c9b92567cf1ef64c934b0ac7b40dn/a Adware.FlyStudio
2024-07-163R¼¼Êõ.exeexe 22b7b18f10f4e2a7d501baebd9e8c6e040d650b526f5875e4cd2119ffd725fc1n/a Adware.FlyStudio
2024-07-163R¼¼Êõ.exeexe 581878ed07369981663751c25421057716d3bc5a741a36ea623ac9ed769d9debn/a Adware.FlyStudio
2024-07-023R¼¼Êõ.exeexe c04e7129864bd3e267f7a8e3e6ad61154fbb51ad0019df0facacc799bf22abfbn/a Adware.FlyStudio
2024-06-183R¼¼Êõ.exeexe 06f592fc63e163ed95a3ed797c64f4a029e95a90f8af1c4078be07f07215648bVirustotal results 62.16% Adware.FlyStudio