URLhaus Database

You are currently viewing the URLhaus database entry for http://31.41.244.10/duma/nome.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3276760
URL: http://31.41.244.10/duma/nome.exe
URL Status:Offline
Host: 31.41.244.10
Date added:2024-11-05 07:28:11 UTC
Last online:2024-11-11 01:XX:XX UTC
Threat:Malware download Malware download
Reporter: abus3reports
Abuse complaint sent (?): Yes (2024-11-05 07:29:09 UTC to dl{at}redbytes[dot]ru)
Takedown time:5 days, 18 hours, 22 minutes Bad (down since 2024-11-11 01:51:35 UTC)
Tags:exe MarsStealer RedLineStealer link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-11-10n/aexe 7dc134cbf475f604d7dfb75e4dd2c5685c4b91a0f66760ff7cf7ea74393d9d57n/a CredentialFlusher
2024-11-10n/aexe 3d9bdab96130952bd3c187be7e22ca2d4e9f5001357a200927ac6f586ca4b305n/a CredentialFlusher
2024-11-10n/aexe 1f647270d978bbd2c3b1db4864cabc2c6cdd0b569ca87374aafb55770701dfdcn/a CredentialFlusher
2024-11-10n/aexe 501c55e2c25baf9c2fee842e0412960d09589926e98da19c985bee9044aad7a4n/a CredentialFlusher
2024-11-10n/aexe c0e60df9dd1df506595e9ce8570cd278c70351c41cf4a477b172b2e9458122bcn/a CredentialFlusher
2024-11-10n/aexe f85ea1f3e1c8f9016a601defa37b9155ebd2e686d12b00116f64e1acc15b8234n/a CredentialFlusher
2024-11-10n/aexe c2ec79c5944633e25a11947e4369e8788603964f663d4191c2e348c73aa08595n/a CredentialFlusher
2024-11-10n/aexe d0dc543cc94212345e6c91424449c89c3996e2b501ad57492ae533d0b04d0e16n/a CredentialFlusher
2024-11-10n/aexe fe6f934aa7e17d73dc202d5d4c91b36308fafcdc829e936bca91e09df70393ecn/a CredentialFlusher
2024-11-10n/aexe 91fc87d86fa233c056f2e2aaf2e815122cecf683455b4ba271943dbe699efd3an/a CredentialFlusher
2024-11-10n/aexe 80e2a8b8cfa7d61f14a8610345ae55f17cf8269cc0643da99b0d1d53515629e2n/a CredentialFlusher
2024-11-10n/aexe f5f2db2f5165743711eccb344ad5f9f213ec79b9f45b10618fcbffa29ff64116n/a CredentialFlusher
2024-11-09n/aexe 5282edb4601d289e218eebd68d038ba3f1458de36a11ed7975241bdb2b0a0334n/a CredentialFlusher
2024-11-09n/aexe daff8620c87cbb955155fca938112c36b59ee50cc8fc671b5344f3dff4682f18n/a CredentialFlusher
2024-11-09n/aexe 9a0f105b66d88e78fffed665fc5bd1cdb7c114fd9ba7d63a2a3bdb9503c6e3b1n/a CredentialFlusher
2024-11-09n/aexe 4015af5cc5497f4c30c3451c526b22747c21ea2e6770b74bc50f3fbbf7fb2868n/a CredentialFlusher
2024-11-09n/aexe a5165db6d972ac88680506724bce40fc44df3cd07818e8548ab2dd2f203479ccn/a CredentialFlusher
2024-11-09n/aexe a63c632dc0f5202e8d73b29c1d67e635f592192bb39caa8465730706e747ae8fn/a CredentialFlusher
2024-11-09n/aexe 956e79c3207958791123768bfa0832490fd4f62cf2bf1ee933bf9e000c9134a6n/a CredentialFlusher
2024-11-09n/aexe 244dca7414a340179e3d18143324571707111211ba2e2684e54f8c486406254cn/a CredentialFlusher
2024-11-09n/aexe 00f6423614c7a6ede7bba408cbbdeee29e7c0feaec56c3b325a85f762f4f75a9n/a CredentialFlusher
2024-11-09n/aexe d45e69779258093428a8f260e338fab770f8d245aaade37bd77f32824b014288n/a CredentialFlusher
2024-11-09n/aexe 049324f40cff08068d96f7d149b7b14227a59ec10d0f8d924174f91a3c6f3c95n/a CredentialFlusher
2024-11-08n/aexe c5eda83d0eb59332c4beca1c28935247a2f9d4ea7b3e1e2f6c3977438c447d56n/a CredentialFlusher
2024-11-08n/aexe ddded603df90dcfc5b14681a867cea72fe416bbcfe9dbb00e3cd209ed18e5588n/a CredentialFlusher
2024-11-08n/aexe ea48eeb32b51e99a87438bc4aae90f2525b8cc323090f36d523e1cd6ed42db4dn/a CredentialFlusher
2024-11-08n/aexe aafc4aab87dc557e55b78d0f15c7eb79df667d65dae05b4ff154a72642046ee5n/a CredentialFlusher
2024-11-08n/aexe ae3eb216bcb918a3358ad13470bdaddffdda7e2d35cc4332722f9b0696e22e78n/a CredentialFlusher
2024-11-08n/aexe 1dcf0dd19de0956e8a9ef69c825ca1d093c387e0aa88e4790cc57b60ff660344n/a CredentialFlusher
2024-11-08n/aexe 591686baa6b6ee33297775a07defbb8d5a391dcb96315d32991f9ba9283babc3n/a CredentialFlusher
2024-11-08n/aexe 8c9d34a72092fa532c23777a898ae575eb7680c0de4d470b4321c340a04eb56cn/a CredentialFlusher
2024-11-08n/aexe 2163b4382dde07bf2a67b1c3dfd643fa17c75372eb1d0c2c03574430b4feb09en/a CredentialFlusher
2024-11-08n/aexe cfd819493a8ecbe9f8095b2bddaa34ef049fecd87574d28b6b284a4e195b5e15n/a CredentialFlusher
2024-11-07n/aexe 7741ae777097a8cec6869cd6b7584c78696b70b9f52bd4471f10a42fe24e1e1fn/a CredentialFlusher
2024-11-07n/aexe 823cb8fae9dd1fab5327569ce1851dd935001def022ae0330891ae94f86e17aen/a CredentialFlusher
2024-11-07n/aexe 5aa47e342483cbf1379164875c5131f896ce3ca562d37135e8baed56fc6486a0n/a CredentialFlusher
2024-11-07n/aexe e94444b9858e8444f45a707b3b3d028674a2a3f7727414d38371cf5f3224dd40n/a CredentialFlusher
2024-11-07n/aexe 7b355ec73489aeac5f98a766c972183513c5a1c955f0c12fab3b27d3c926b3caVirustotal results 61.11% CredentialFlusher
2024-11-07n/aexe 5b33263b2d376105d3acbc18e001b55611b39ddf27fd5bedf10e547fae3c1a81n/a CredentialFlusher
2024-11-07n/aexe 066048b484a01f17fabdd9c33427db935012341f42987ffeeb2fdef7e29306d5n/a CredentialFlusher
2024-11-07n/aexe 9c3748b52a29c68ce473bc92557f57d67c9a67d7f140bb959e91619b7626d26fn/a CredentialFlusher
2024-11-07n/aexe fce3e333499d76aab0a1f02f5359b356478fbf155d4cf300c300e2708db01316Virustotal results 56.94% CredentialFlusher
2024-11-07n/aexe 3d7f7ab09d0bc79f998d382d07f9e835d76c038464a3637332ba167e87435ae7Virustotal results 63.89% CredentialFlusher
2024-11-07n/aexe bea1364ec547bb343356b96bc3ce932ec0bdbcfcf7dd6f077442b785c14d40e1n/a CredentialFlusher
2024-11-07n/aexe c61eb5fc428cae5abbe88dadf0be6d8225ced8654906e92d629799f08b70abcfn/a CredentialFlusher
2024-11-07n/aexe 61f4563f36ac673b169cec6695298cd8a051b6b23af32b087290cb738d11ffc7n/a CredentialFlusher
2024-11-06n/aexe 6f94d6476598cd87ce7da5c42a81bda51127144165175a11b65622eb26d3bb05n/a CredentialFlusher
2024-11-06n/aexe 582a1ab61d49ff669efe0b209083c640c216041aa8d05b02b19c97fba3f8fd50n/a CredentialFlusher
2024-11-06n/aexe 10619938f0de2f85572d65566e80a34af1db73e3c582fcd5239d3d57d8b04655n/a CredentialFlusher
2024-11-06n/aexe 0c14104ee0f0153dbcdad60a88871161a5aebd1c01cf552a10b48bbb0696ea62Virustotal results 61.11% CredentialFlusher
2024-11-06n/aexe e2d0b78b54799f00142f26dfa7bcd3b5ef2bdfb685c87ea93544716182e7c424Virustotal results 56.94% CredentialFlusher
2024-11-06n/aexe f627c5c8edf647d5f01d443fa16f44a0cf2e59e094679532c54244ce5f5be1c4Virustotal results 62.50% CredentialFlusher
2024-11-06n/aexe bf69da913de8c880c27894bc4c0c8e5527e21dd8c30db608523ea41f6dc66ff6n/a RedLineStealer
2024-11-06n/aexe 634b6ee927bc835d1c7c251bb57c8dc64ab532b9a20545e173e57ccd0170214bn/a CredentialFlusher
2024-11-06n/aexe 161a189e6dca4dddb8e1ca398ef7b4133a212908233ac151e2a512a20ef78aa6n/a CredentialFlusher
2024-11-06n/aexe 275f1e2e2919fe43d093bd690c1357ce19e3c06b15e8dbec6c678a2bd549e5d9Virustotal results 60.56% CredentialFlusher
2024-11-06n/aexe d3bac412e6866b1d1a2df8f3d765a08648eabe856e741b65a5b6bcc3c7cf777dn/a CredentialFlusher
2024-11-06n/aexe efe32131f9db8a1023a605ab77936939d9f1b1280f8e4a0f6028d3b40d8b1cfcn/a CredentialFlusher
2024-11-06n/aexe 5b09c694ec61e5f335700ec8dd6e10ef24af1d206f2daceed70bc6b2d4b57d00n/a CredentialFlusher
2024-11-06n/aexe 1def794784440aed915ef195eb67b51bb079d7df7fa45b87dec5b9c6c5c9f4e4n/a CredentialFlusher
2024-11-05n/aexe c6c94b0f93b512f6f4471c9f9f01e4da4d5eb642feb71dcb940bf0b190eadaefVirustotal results 58.33% CredentialFlusher
2024-11-05n/aexe 767b6471dfb0efa62976fe92a31525d5053f9474600526020b80dbaed2c94ec4n/a CredentialFlusher
2024-11-05n/aexe 2290dc072554872b01ca61d077123b6cdbd54d5d4abc7eef5fbead92bc719ec9Virustotal results 59.72% CredentialFlusher
2024-11-05n/aexe 80f3c256ca9948a1c4bec03e37cf67dbb86d72af1e9830c9f56b91fc05cd13e8n/a RedLineStealer
2024-11-05n/aexe 792ca88d4dc2d4b6070e0cb738f6b9d466308bec6345a8fff23e45d1e229e4f8n/a MarsStealer
2024-11-05n/aexe 401c279b75ab842417d215e5f7201e0f872f408e9f7a3c3f3df0a560b1770bddn/a RedLineStealer
2024-11-05n/aexe e07ccec486fc2e4591f6542c4c36c773891d7625de1edc2c363eb7eaf4c8ddb4n/a MarsStealer
2024-11-05n/aexe 7e97296f809f0f0404c85666da8d485274074108792a22507d34e546286f7912Virustotal results 51.39% RedLineStealer
2024-11-05n/aexe 9dbe6deb8353066e2b268719fa8ebea44009b31eec6d80775e56c630fa45528en/aRedLineStealer