URLhaus Database

You are currently viewing the URLhaus database entry for http://185.215.113.16/inc/BattleGermany.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3112844
URL: http://185.215.113.16/inc/BattleGermany.exe
URL Status:Offline
Host: 185.215.113.16
Date added:2024-08-17 21:13:08 UTC
Last online:2025-04-28 14:XX:XX UTC
Threat:Malware download Malware download
Reporter: NDA0E
Abuse complaint sent (?): Yes (2024-08-17 21:14:10 UTC to automatic-abuse{at}eliteteam[dot]to)
Takedown time:8 months, 13 days, 17 hours, 26 minutes Bad (down since 2025-04-28 14:40:23 UTC)
Tags:exe RedLineStealer link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-03-14n/aexe 2fe76c224e2fbf3c52946e9d77e454d5e8ca29baf3d7264443d9f378a669a412n/a 
2025-02-28n/aexe 70b9151cbce98ba036316933df9e90da0b30a2abf7e926ab182626d49c089340n/a RedLineStealer
2025-02-26n/aexe 642ac79fc6b9b009ed96f89cdfa9d6c4dbb2db8a47dfd72b93b104f472aaae43n/a 
2025-01-25n/aexe 01b8e3bfce0ea482b6a3235a596924fe4dd5455ad00919c1f527c16526728aa5n/a RedLineStealer
2025-01-20n/aexe 11b3f55a947ff11435278175e2b1d858ff3ac30042db541f9c3d86c072de7e87n/a RedLineStealer
2024-12-23n/aexe 14c8ede936c54f1b618c2df81d65cf9a8fff7e3dcf7dedca62d23fa174723ff6n/a RedLineStealer
2024-12-15n/aexe 48a48c7cf401b5cc156fb2c6505cac9c15ad60dbe5be71a84b9e842ab0835a99n/a RedLineStealer
2024-12-12n/aexe af9946ffb432459ef1503fcc00736583f5281fdad55ad095931ffe593d132d74n/a RedLineStealer
2024-12-03n/aexe 73d2f938ff00e043370b3290389205a38269ab9315e3e2e7fd24655640575e8dn/a RedLineStealer
2024-10-31n/aexe 6367849d33d1660d1a25c0fb4b6304f0570ea6846ec5a616d432a8636e1b1c87n/a RedLineStealer
2024-08-17n/aexe 7636d2367079eabd9da2bb40935df3da580affc47473fd93ed3b2e01ee6c46e5Virustotal results 17.33% RedLineStealer