URLhaus Database

You are currently viewing the URLhaus database entry for http://77.91.77.82/sauna/neste.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2911644
URL: http://77.91.77.82/sauna/neste.exe
URL Status:Offline
Host: 77.91.77.82
Date added:2024-06-28 18:59:07 UTC
Last online:2024-07-01 00:XX:XX UTC
Threat:Malware download Malware download
Reporter: abus3reports
Abuse complaint sent (?): Yes (2024-06-28 19:00:18 UTC to abuse{at}sunhost[dot]ltd)
Takedown time:2 days, 5 hours, 6 minutes Poor (down since 2024-07-01 00:06:35 UTC)
Tags:exe MarsStealer Stealc

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-06-30n/aexe b913c38a5576306a5c2fe644b0ec7e56d3b20fd2b7beef0a6f16e9bd7d14a12bVirustotal results 43.24% Stealc
2024-06-30n/aexe 06902e21f593ee1506894387489dcd78adc3cf9176bc1640d7ce5fec98157698Virustotal results 44.59% Stealc
2024-06-30n/aexe bfa7a505e80c6729f6c3259f5a17fd32a3c48a54c49330fd21adda4bf7a93238Virustotal results 44.59% Stealc
2024-06-30n/aexe 53b3fd8aff7c2b7fa9a8fd4321e8e951c720166d6b7b600159ef148202d33ea3Virustotal results 43.24% Stealc
2024-06-30n/aexe 0f3dd40065569d334baa28f67143cec736c0b42dfa265b9034376cadf69acabcVirustotal results 45.21% Stealc
2024-06-30n/aexe 40f2617cfc50b6e9db64c830f38e25cca0d2bd2b2d27f155cdce68ed6c6b26fdVirustotal results 43.24% Stealc
2024-06-29n/aexe fad03c0fb57a6f4d3bd9af8d9d969c2f52b6e6f67a34ff01c1d57361d668e480Virustotal results 44.59% Stealc
2024-06-29n/aexe d1f04b4bea67cbc6f469855826505a16e706b514858fa73c123df263ad34a292Virustotal results 42.47% Stealc
2024-06-29n/aexe 4674ca5c3b61ba5f2335e76fe2e3ab40f6a2b3dd404cc131eebe2cbcfa10a653Virustotal results 44.59% MarsStealer
2024-06-29n/aexe b80697d7ff9270e262d1c1a1d4afdeca818a3918e75297523839e239e561e3f0Virustotal results 44.59% Stealc
2024-06-29n/aexe 248d0a48068c989868535721f8f65e5e86d269646f617b875e3c20c5e5303f09Virustotal results 42.47% Stealc
2024-06-29n/aexe 004c36d5a75d96cd6d275a135222353869f30bf7e12e8f6f7f93e3f6ed572493Virustotal results 44.59% Stealc
2024-06-28n/aexe 9c1c20db1d73c66795b9b49f39aff02d621dd06c05d7d3ea1007ac7bcbf3f3cdVirustotal results 43.24%Stealc
2024-06-28n/aexe 11f5b01983cd221e28aa672906d313ca45dc0ed41f351602779590576104c52eVirustotal results 44.59%Stealc