URLhaus Database

You are currently viewing the URLhaus database entry for http://185.215.113.16/inc/octus.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3242595
URL: http://185.215.113.16/inc/octus.exe
URL Status:Offline
Host: 185.215.113.16
Date added:2024-10-19 08:58:05 UTC
Last online:2025-04-18 12:XX:XX UTC
Threat:Malware download Malware download
Reporter: abus3reports
Abuse complaint sent (?): Yes (2024-10-19 08:59:18 UTC to automatic-abuse{at}eliteteam[dot]to)
Takedown time:6 months, 1 days, 3 hours, 36 minutes Bad (down since 2025-04-18 12:35:20 UTC)
Tags:exe teslacrypt

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-10-20n/aexe f430f588aad57246c8b1cd536bc9ae050a4868b05c5dfaa9b5c555f4593a4b33n/a 
2024-10-19n/aexe 4ae1ad34591e55c2f2a6c73e9255cada22b86c6300d60629403bf997c34ef1edVirustotal results 48.61%Teslacrypt
2024-10-19n/aexe c7386fde4d6b42bc322682a7cb465122859d67804c2f51eeec0d581bfae110d5Virustotal results 64.38%Teslacrypt